From 8260fed1b3cb97339fcaca840c025a83474adcf0 Mon Sep 17 00:00:00 2001 From: jvoisin Date: Wed, 7 Aug 2019 01:57:54 +0200 Subject: [PATCH] Ignore CVE-2019-14379 --- airsonic-main/cve-suppressed.xml | 5 +++++ 1 file changed, 5 insertions(+) diff --git a/airsonic-main/cve-suppressed.xml b/airsonic-main/cve-suppressed.xml index ce449ee7..ca6481df 100644 --- a/airsonic-main/cve-suppressed.xml +++ b/airsonic-main/cve-suppressed.xml @@ -203,4 +203,9 @@ ^javax\.servlet:jstl:.*$ CVE-2015-0254 + + We do not enable default typing for jackson + .*jackson-databind.* + CVE-2019-14379 +