CVE-2016-3720: XmlMapper is vulnerable to XXE attack
(updated )
XML external entity (XXE) vulnerability in XmlMapper
in the Data format extension for Jackson (aka jackson-dataformat-xml) allows attackers to have unspecified impact via unknown vectors.
References
Detect and mitigate CVE-2016-3720 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →