CVE-2022-42004 | FasterXML jackson-databind up to 2.13.3 Array BeanDeserializer._deserializeFromArray resource consumption (Issue 3582 / Nessus ID 213676)
A vulnerability, which was classified as problematic, has been found in FasterXML jackson-databind up to 2.13.3. Affected by this issue is the function BeanDeserializer._deserializeFromArray of the component Array Handler. The manipulation leads to resource consumption.
This vulnerability is handled as CVE-2022-42004. The attack needs to be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.