CVE-2026-86511 | java-json-tools jackson-coreutils 2.0 JacksonUtils.java BigDecimal.toPlainString resource consumption (Issue 65)
A vulnerability was found in java-json-tools jackson-coreutils 2.0. It has been classified as problematic. Affected by this vulnerability is the function BigDecimal.toPlainString of the file src/main/java/com/github/fge/jackson/JacksonUtils.java. Performing a manipulation results in resource consumption.
This vulnerability was named CVE-2026-86511. The attack may be initiated remotely. In addition, an exploit is available.
The project was informed of the problem early through an issue report but has not responded yet.