Zum Hauptinhalt springen

Patch 2025.2.10 / CVEs

CVE Jackson-Databind

Two vulnerabilities CVE-2026-54512 and CVE-2026-54513 have been disclosed affecting jackson-databind, which is used by the INFOMOTION Data Management Center (DMC). The DMC package ships with Jackson components that are used across all deployment options.

We are therefore releasing an updated version 2025.2.10 of Data Management Center that includes a patched version of jackson-databind.

(since 2025.2.9)

Container Image: infomotiondmc.azurecr.io/dmc@sha256:ff015d956aac9964fea382af1ccf88a2a4037b8c564e6fa2aa6f4cd135ccfcd4

WAR File : https://dmcwiki.blob.core.windows.net/dmc-releases/2025.2.10/dmc.war (sha256: 0161c75aaa3c2de7ceeda13d836a280bbf6221c4a321b28b9423795585d803e1)