[
https://issues.apache.org/jira/browse/TIKA-4805?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=18101679#comment-18101679
]
Tilman Hausherr commented on TIKA-4805:
---------------------------------------
https://nvd.nist.gov/vuln/detail/CVE-2026-50193
This vulnerability is fixed in 2.14.0.
https://mvnrepository.com/artifact/com.fasterxml.jackson.core/jackson-databind
There is no 2.22.4 version.
> upgrade jackson-databind to 2.22.4 to fix CVE-2026-50193
> ---------------------------------------------------------
>
> Key: TIKA-4805
> URL: https://issues.apache.org/jira/browse/TIKA-4805
> Project: Tika
> Issue Type: Improvement
> Affects Versions: 3.3.2
> Reporter: Dhoka Pramod
> Priority: Critical
>
> jackson-databind needs to be updated to 2.22.4 to fix CVE-2026-50193
--
This message was sent by Atlassian Jira
(v8.20.10#820010)