From c0fa01206a5c5d8d62b407575385c63b8dcec4dd Mon Sep 17 00:00:00 2001 From: jvoisin Date: Wed, 28 Aug 2019 16:56:32 +0200 Subject: [PATCH] Ignore yet an other jackson vulnerability --- airsonic-main/cve-suppressed.xml | 5 +++++ 1 file changed, 5 insertions(+) diff --git a/airsonic-main/cve-suppressed.xml b/airsonic-main/cve-suppressed.xml index 0c3a358e..466bbb11 100644 --- a/airsonic-main/cve-suppressed.xml +++ b/airsonic-main/cve-suppressed.xml @@ -213,4 +213,9 @@ .*jackson-databind.* CVE-2019-14439 + + We do not enable default typing for jackson + .*jackson-databind.* + CVE-2019-12384 +