Dec 6, 2019 7:01 pm EDT
Categorized: High Severity
Share this post:
IBM Watson Discovery for IBM Cloud Pak for Data ships with versions of FasterXML jackson-databind vulnerable to serialization gadgets.
Affected product(s) and affected version(s):
|ICP – Discovery
Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: https://www.ibm.com/support/pages/node/1126395