StackRadar

CVE-2026-77310

Medium

Advisory

Published 28 Sept 2026In the index since 29 Sept 2026
Severity
Medium
worst across findings
CVSS
5.3
base score, highest
EPSS
0.003
22nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
965
of 17,939 indexed, latest versions
Container images
956
deployed by those charts
Fix available
1 of 1
affected package

jackson-databind: Incomplete fix for CVE-2026-54514: eager DNS resolution (SSRF) still present in InetAddress deserialization

Carried by container images the latest versions of 965 of 17,939 indexed charts deploy, on 956 images.

Affected packageAffected versionsFixed inImages
jackson-databindmaven2.0.5, 2.2.3, 2.3.0, 2.3.3+112 more2.18.9, 2.21.5, 2.22.1, 3.1.5+1 more956
OSV records
GHSA-vvgp-rfg2-7rr6
Trending
Rank 4 in indexed charts, since 29 Sept 2026. See the ranking →

Charts affected

965 by stars
ChartLatestAffected imagesRadar Score
mod-configurationfolio-org0.1.341 of 1See more

mod-configuration folio-org 0.1.34

1 of the 1 container images this version deploys carry CVE-2026-77310.

Container imageDigestPackageFixed in
folioci/mod-configuration:latestdd0cdc89670a
jackson-databind@2.18.6
2.18.9

Open the chart page →

716
mod-copycatfolio-org0.1.31 of 1See more

mod-copycat folio-org 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-77310.

Container imageDigestPackageFixed in
folioci/mod-copycat:latest1513fad2b799
jackson-databind@2.18.6
2.18.9

Open the chart page →

1,474
mod-coursesfolio-org0.1.341 of 1See more

mod-courses folio-org 0.1.34

1 of the 1 container images this version deploys carry CVE-2026-77310.

Container imageDigestPackageFixed in
folioci/mod-courses:latest68ca414f5596
jackson-databind@2.18.2
2.18.9

Open the chart page →

1,541
mod-data-exportfolio-org0.1.401 of 1See more

mod-data-export folio-org 0.1.40

1 of the 1 container images this version deploys carry CVE-2026-77310.

Container imageDigestPackageFixed in
folioci/mod-data-export:latest0cc86bf09755
jackson-databind@2.20.2
2.21.5

Open the chart page →

1,425
mod-data-export-springfolio-org0.1.41 of 1See more

mod-data-export-spring folio-org 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-77310.

Container imageDigestPackageFixed in
folioci/mod-data-export-spring:latestf1d7caf4544b
jackson-databind@3.0.4
3.1.5

Open the chart page →

1,258
mod-data-export-workerfolio-org0.1.151 of 1See more

mod-data-export-worker folio-org 0.1.15

1 of the 1 container images this version deploys carry CVE-2026-77310.

Container imageDigestPackageFixed in
folioci/mod-data-export-worker:latest1ad1811c9b37
jackson-databind@3.0.4
3.1.5

Open the chart page →

1,244
mod-data-import-converter-storagefolio-org0.1.341 of 1See more

mod-data-import-converter-storage folio-org 0.1.34

1 of the 1 container images this version deploys carry CVE-2026-77310.

Container imageDigestPackageFixed in
folioci/mod-data-import-converter-storage:latest3028f333778f
jackson-databind@2.13.4
2.18.9

Open the chart page →

2,492
mod-ebsconetfolio-org0.1.31 of 1See more

mod-ebsconet folio-org 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-77310.

Container imageDigestPackageFixed in
folioci/mod-ebsconet:latest3ae8cb99daa3
jackson-databind@2.20.2
2.21.5

Open the chart page →

1,210
mod-emailfolio-org0.1.341 of 1See more

mod-email folio-org 0.1.34

1 of the 1 container images this version deploys carry CVE-2026-77310.

Container imageDigestPackageFixed in
folioci/mod-email:latest79ea8e2e7ebf
jackson-databind@2.18.2
2.18.9

Open the chart page →

871
mod-erm-usage-harvesterfolio-org0.1.341 of 1See more

mod-erm-usage-harvester folio-org 0.1.34

1 of the 1 container images this version deploys carry CVE-2026-77310.

Container imageDigestPackageFixed in
folioci/mod-erm-usage-harvester:latest2d6767933c59
jackson-databind@2.18.6
2.18.9

Open the chart page →

567
mod-event-configfolio-org0.1.341 of 1See more

mod-event-config folio-org 0.1.34

1 of the 1 container images this version deploys carry CVE-2026-77310.

Container imageDigestPackageFixed in
folioci/mod-event-config:latest0192adad3897
jackson-databind@3.1.4
3.1.5

Open the chart page →

421
mod-feesfinesfolio-org0.1.341 of 1See more

mod-feesfines folio-org 0.1.34

1 of the 1 container images this version deploys carry CVE-2026-77310.

Container imageDigestPackageFixed in
folioci/mod-feesfines:latestfe3a7049f2fb
jackson-databind@2.18.2
2.18.9

Open the chart page →

667
mod-financefolio-org0.1.341 of 1See more

mod-finance folio-org 0.1.34

1 of the 1 container images this version deploys carry CVE-2026-77310.

Container imageDigestPackageFixed in
folioci/mod-finance:latest14450bc15430
jackson-databind@2.21.4
2.21.5

Open the chart page →

538
mod-finance-storagefolio-org0.1.341 of 1See more

mod-finance-storage folio-org 0.1.34

1 of the 1 container images this version deploys carry CVE-2026-77310.

Container imageDigestPackageFixed in
folioci/mod-finance-storage:latest4bc4057abaea
jackson-databind@3.1.4
3.1.5

Open the chart page →

414
mod-gobifolio-org0.1.341 of 1See more

mod-gobi folio-org 0.1.34

1 of the 1 container images this version deploys carry CVE-2026-77310.

Container imageDigestPackageFixed in
folioci/mod-gobi:latestc58c989dac44
jackson-databind@2.20.1
2.21.5

Open the chart page →

599
mod-inn-reachfolio-org0.1.71 of 1See more

mod-inn-reach folio-org 0.1.7

1 of the 1 container images this version deploys carry CVE-2026-77310.

Container imageDigestPackageFixed in
folioci/mod-inn-reach:latestcc8584e43382
jackson-databind@3.1.4
3.1.5

Open the chart page →

513
mod-inventory-updatefolio-org0.1.21 of 1See more

mod-inventory-update folio-org 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-77310.

Container imageDigestPackageFixed in
folioci/mod-inventory-update:latestba84812b4d58
jackson-databind@2.18.2
2.18.9

Open the chart page →

883
mod-invoicefolio-org0.1.351 of 1See more

mod-invoice folio-org 0.1.35

1 of the 1 container images this version deploys carry CVE-2026-77310.

Container imageDigestPackageFixed in
folioci/mod-invoice:latest45b7b13e81e1
jackson-databind@3.1.4
3.1.5

Open the chart page →

571
mod-ldpfolio-org0.1.331 of 1See more

mod-ldp folio-org 0.1.33

1 of the 1 container images this version deploys carry CVE-2026-77310.

Container imageDigestPackageFixed in
folioci/mod-ldp:latestb55696fd9065
jackson-databind@2.15.4
2.18.9

Open the chart page →

1,929
mod-licensesfolio-org0.1.321 of 1See more

mod-licenses folio-org 0.1.32

1 of the 1 container images this version deploys carry CVE-2026-77310.

Container imageDigestPackageFixed in
folioci/mod-licenses:latestcfd6109bf477
jackson-databind@2.18.7
2.18.9

Open the chart page →

1,787
mod-loginfolio-org0.1.341 of 1See more

mod-login folio-org 0.1.34

1 of the 1 container images this version deploys carry CVE-2026-77310.

Container imageDigestPackageFixed in
folioci/mod-login:latest88de493f86db
jackson-databind@2.16.1
2.18.9

Open the chart page →

1,160
mod-login-samlfolio-org0.1.341 of 1See more

mod-login-saml folio-org 0.1.34

1 of the 1 container images this version deploys carry CVE-2026-77310.

Container imageDigestPackageFixed in
folioci/mod-login-saml:latest5f3358ccaa0f
jackson-databind@2.21.2
2.21.5

Open the chart page →

1,097
mod-marccatfolio-org0.1.301 of 1See more

mod-marccat folio-org 0.1.30

1 of the 1 container images this version deploys carry CVE-2026-77310.

Container imageDigestPackageFixed in
folioci/mod-marccat:latest1b57d690d568
jackson-databind@2.9.4
2.18.9

Open the chart page →

6,993
mod-notifyfolio-org0.1.341 of 1See more

mod-notify folio-org 0.1.34

1 of the 1 container images this version deploys carry CVE-2026-77310.

Container imageDigestPackageFixed in
folioci/mod-notify:latesta8c1a90005fc
jackson-databind@3.1.4
3.1.5

Open the chart page →

272
mod-oafolio-org0.1.21 of 1See more

mod-oa folio-org 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-77310.

Container imageDigestPackageFixed in
folioci/mod-oa:latestae3b069d4ba5
jackson-databind@2.11.1
2.18.9

Open the chart page →

1,735
mod-oai-pmhfolio-org0.1.341 of 1See more

mod-oai-pmh folio-org 0.1.34

1 of the 1 container images this version deploys carry CVE-2026-77310.

Container imageDigestPackageFixed in
folioci/mod-oai-pmh:latest5cd5ef063f2a
jackson-databind@2.18.2
2.18.9

Open the chart page →

966
mod-ordersfolio-org0.1.341 of 1See more

mod-orders folio-org 0.1.34

1 of the 1 container images this version deploys carry CVE-2026-77310.

Container imageDigestPackageFixed in
folioci/mod-orders:latestfc4528220fb8
jackson-databind@3.1.4
3.1.5

Open the chart page →

458
mod-orders-storagefolio-org0.1.351 of 1See more

mod-orders-storage folio-org 0.1.35

1 of the 1 container images this version deploys carry CVE-2026-77310.

Container imageDigestPackageFixed in
folioci/mod-orders-storage:latestceeaacc3bf16
jackson-databind@3.1.4
3.1.5

Open the chart page →

443
mod-organizationsfolio-org0.1.341 of 1See more

mod-organizations folio-org 0.1.34

1 of the 1 container images this version deploys carry CVE-2026-77310.

Container imageDigestPackageFixed in
folioci/mod-organizations:latest7dc9ccf3d937
jackson-databind@2.18.6
2.18.9

Open the chart page →

814
mod-organizations-storagefolio-org0.1.341 of 1See more

mod-organizations-storage folio-org 0.1.34

1 of the 1 container images this version deploys carry CVE-2026-77310.

Container imageDigestPackageFixed in
folioci/mod-organizations-storage:lateste46892405fde
jackson-databind@2.21.4
2.21.5

Open the chart page →

670
mod-password-validatorfolio-org0.1.341 of 1See more

mod-password-validator folio-org 0.1.34

1 of the 1 container images this version deploys carry CVE-2026-77310.

Container imageDigestPackageFixed in
folioci/mod-password-validator:latestb31d75f2bf7b
jackson-databind@3.1.4
3.1.5

Open the chart page →

395
mod-patronfolio-org0.1.341 of 1See more

mod-patron folio-org 0.1.34

1 of the 1 container images this version deploys carry CVE-2026-77310.

Container imageDigestPackageFixed in
folioci/mod-patron:latest5f213acfe2f8
jackson-databind@2.18.2
2.18.9

Open the chart page →

832
mod-permissionsfolio-org0.1.351 of 1See more

mod-permissions folio-org 0.1.35

1 of the 1 container images this version deploys carry CVE-2026-77310.

Container imageDigestPackageFixed in
folioci/mod-permissions:latest5363e98c6299
jackson-databind@2.18.6
2.18.9

Open the chart page →

1,223
mod-pubsubfolio-org0.1.341 of 1See more

mod-pubsub folio-org 0.1.34

1 of the 1 container images this version deploys carry CVE-2026-77310.

Container imageDigestPackageFixed in
folioci/mod-pubsub:latest0a4fa4ad5d72
jackson-databind@2.18.6
2.18.9

Open the chart page →

1,017
mod-remote-storagefolio-org0.1.321 of 1See more

mod-remote-storage folio-org 0.1.32

1 of the 1 container images this version deploys carry CVE-2026-77310.

Container imageDigestPackageFixed in
folioci/mod-remote-storage:latest4f12177123dc
jackson-databind@2.21.4
2.21.5

Open the chart page →

572
mod-rtacfolio-org0.1.341 of 1See more

mod-rtac folio-org 0.1.34

1 of the 1 container images this version deploys carry CVE-2026-77310.

Container imageDigestPackageFixed in
folioci/mod-rtac:latestc959b2d6142f
jackson-databind@2.18.2
2.18.9

Open the chart page →

669
mod-senderfolio-org0.1.341 of 1See more

mod-sender folio-org 0.1.34

1 of the 1 container images this version deploys carry CVE-2026-77310.

Container imageDigestPackageFixed in
folioci/mod-sender:latestd88a675dddf0
jackson-databind@2.18.2
2.18.9

Open the chart page →

822
mod-serials-managementfolio-org0.1.11 of 1See more

mod-serials-management folio-org 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-77310.

Container imageDigestPackageFixed in
folioci/mod-serials-management:latest571fa1ffe8c9
jackson-databind@2.11.1
2.18.9

Open the chart page →

1,735
mod-service-interactionfolio-org0.1.61 of 1See more

mod-service-interaction folio-org 0.1.6

1 of the 1 container images this version deploys carry CVE-2026-77310.

Container imageDigestPackageFixed in
folioci/mod-service-interaction:latestf53c327a48e8
jackson-databind@2.11.1
2.18.9

Open the chart page →

1,735
mod-tagsfolio-org0.1.341 of 1See more

mod-tags folio-org 0.1.34

1 of the 1 container images this version deploys carry CVE-2026-77310.

Container imageDigestPackageFixed in
folioci/mod-tags:latest6e8beeb70272
jackson-databind@2.21.4
2.21.5

Open the chart page →

343
mod-template-enginefolio-org0.1.341 of 1See more

mod-template-engine folio-org 0.1.34

1 of the 1 container images this version deploys carry CVE-2026-77310.

Container imageDigestPackageFixed in
folioci/mod-template-engine:latestd105c585da30
jackson-databind@2.18.2
2.18.9

Open the chart page →

822
mod-user-importfolio-org0.1.341 of 1See more

mod-user-import folio-org 0.1.34

1 of the 1 container images this version deploys carry CVE-2026-77310.

Container imageDigestPackageFixed in
folioci/mod-user-import:latest1807734472bd
jackson-databind@2.18.6
2.18.9

Open the chart page →

1,223
mod-usersfolio-org0.1.341 of 1See more

mod-users folio-org 0.1.34

1 of the 1 container images this version deploys carry CVE-2026-77310.

Container imageDigestPackageFixed in
folioci/mod-users:latest6f60033321b0
jackson-databind@2.21.4
2.21.5

Open the chart page →

432
mod-users-blfolio-org0.1.351 of 1See more

mod-users-bl folio-org 0.1.35

1 of the 1 container images this version deploys carry CVE-2026-77310.

Container imageDigestPackageFixed in
folioci/mod-users-bl:latest4e2d96c9340d
jackson-databind@2.18.2
2.18.9

Open the chart page →

1,329
demo-workflowsfrinx-helm-charts2.0.01 of 3See more

demo-workflows frinx-helm-charts 2.0.0

1 of the 3 container images this version deploys carry CVE-2026-77310.

Container imageDigestPackageFixed in
frinx/sample-topology:6.1.01a19658415b6
jackson-databind@2.15.4
2.18.9

Open the chart page →

2,662
frinx-machinefrinx-helm-charts11.0.01 of 26See more

frinx-machine frinx-helm-charts 11.0.0

1 of the 26 container images this version deploys carry CVE-2026-77310.

Container imageDigestPackageFixed in
frinx/conductor-server:6.1.159aa36c359f2
jackson-databind@2.13.5
2.18.9

Open the chart page →

44,191
sample-topologyfrinx-helm-charts3.1.11 of 1See more

sample-topology frinx-helm-charts 3.1.1

1 of the 1 container images this version deploys carry CVE-2026-77310.

Container imageDigestPackageFixed in
frinx/sample-topology:6.1.01a19658415b6
jackson-databind@2.15.4
2.18.9

Open the chart page →

1,213
workflow-managerfrinx-helm-charts3.2.11 of 5See more

workflow-manager frinx-helm-charts 3.2.1

1 of the 5 container images this version deploys carry CVE-2026-77310.

Container imageDigestPackageFixed in
frinx/conductor-server:6.1.0d01264a908c9
jackson-databind@2.13.3
2.18.9

Open the chart page →

9,378
accumulogaffer2.2.13 of 4See more

accumulo gaffer 2.2.1

3 of the 4 container images this version deploys carry CVE-2026-77310.

Container imageDigestPackageFixed in
gchq/accumulo:2.0.1c460bb587d6d
jackson-databind@2.13.2.2
2.18.9
gchq/hdfs:3.3.35ec58edbb2db
jackson-databind@2.13.2.2
2.18.9
library/zookeeper:3.5.5b7a76ec06f68
jackson-databind@2.9.8
2.18.9

Open the chart page →

17,617
gaffer-road-trafficgaffer2.2.12 of 8See more

gaffer-road-traffic gaffer 2.2.1

2 of the 8 container images this version deploys carry CVE-2026-77310.

Container imageDigestPackageFixed in
gchq/hdfs:3.3.35ec58edbb2db
jackson-databind@2.13.2.2
2.18.9
library/zookeeper:3.5.5b7a76ec06f68
jackson-databind@2.9.8
2.18.9

Open the chart page →

9,695

Container images carrying it

956 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
amazon/dynamodb-local:1.20.01ed00881c937
jackson-databind@2.12.7
2.18.9
1
amazon/opendistro-for-elasticsearch:1.4.06df71eb04639
jackson-databind@2.8.11.3
2.18.9
1
andrianrf/backoffice-be:latest6036614803d4
jackson-databind@2.13.5
2.18.9
1
andrianrf/bpjstk-service:latest46abe878d9d8
jackson-databind@2.11.2
2.18.9
1
andrianrf/bpjstk-simulator:latestb63fdb51d39d
jackson-databind@2.11.2
2.18.9
1
andrianrf/iso-client:latestba560086ce15
jackson-databind@2.11.2
2.18.9
1
andrianrf/iso-server:latest7da47f525c7d
jackson-databind@2.11.0
2.18.9
1
anguda/ant-media:2.5c435285fc241
jackson-databind@2.9.6
2.18.9
1
anthonyraymond/joal:2.1.37fc942567c564
jackson-databind@2.13.3
2.18.9
1
apache/bookkeeper:4.14.5a7d9970c148f
jackson-databind@2.11.0
2.18.9
1
apache/camel-k:1.10.43bb13d14f64a
jackson-databind@2.13.4
2.18.9
1
apache/drill:1.21.11f96558fd292
jackson-databind@2.14.1
2.18.9
1
apache/druid:29.0.10cef139b6bf1
jackson-databind@2.13.4.2
2.18.9
1
apache/gravitino-iceberg-rest:1.3.080136ae753ee
jackson-databind@2.21.3
2.21.5
1
apache/hadoop:3af361b20bec0
jackson-databind@2.12.7.1
2.18.9
1
apache/hertzbeat:1.8.075d48a62748f
jackson-databind@2.18.2
2.18.9
1
apache/hertzbeat-collector:1.8.0a2bab1be574c
jackson-databind@2.18.2
2.18.9
1
apacheignite/ignite:2.7.0d7deab68b8fa
jackson-databind@2.9.6
2.18.9
1
apache/iotdb:0.11.28647309f95d1
jackson-databind@2.10.0
2.18.9
1
apache/james:distributed-3.7.2660c0fa12ec2
jackson-databind@2.13.2.2
2.18.9
1
apache/kafka:4.1.0bff074a5d005
jackson-databind@2.19.0
2.21.5
1
apache/kafka:3.9.0fbc7d7c428e3
jackson-databind@2.16.2
2.18.9
1
apache/nifi-registry:1.14.0090b7f87ec7f
jackson-databind@2.12.3
2.18.9
1
apache/nifi-registry:1.27.063b8e3e40742
jackson-databind@2.17.1
2.18.9
1
apache/nifi-registry:0.8.0974efa2f21da
jackson-databind@2.10.3
2.18.9
1
apachepinot/pinot:latest-jdk110018bb04ced7
jackson-databind@2.4.0
2.18.9
1
apache/polaris:lateste66366e783f1
jackson-databind@3.2.0
3.2.1
1
apachepulsar/pulsar:3.1.016f9fdab3fa6
jackson-databind@2.14.2
2.18.9
1
apachepulsar/pulsar:2.10.03b262ab7a7d9
jackson-databind@2.12.6
2.18.9
1
apachepulsar/pulsar:3.0.79c9947de139d
jackson-databind@2.14.2
2.18.9
1
apachepulsar/pulsar:2.9.0d056c89b7131
jackson-databind@2.12.3
2.18.9
1
apachepulsar/pulsar:2.8.2d538416d5afe
jackson-databind@2.12.3
2.18.9
1
apache/ranger:2.7.076c176e8a0e4
jackson-databind@2.17.2
2.18.9
1
apache/rocketmq-exporter:0.0.2c8fb51195444
jackson-databind@2.13.5
2.18.9
1
apache/shenyu-admin:2.5.1e2be712fc4f4
jackson-databind@2.13.3
2.18.9
1
apache/shenyu-bootstrap:2.5.11bd5756f6273
jackson-databind@2.13.2.1
2.18.9
1
apache/skywalking-oap-server:9.2.0133d35d2c263
jackson-databind@2.13.2.2
2.18.9
1
apache/skywalking-oap-server:8.9.1b4ec8c18d079
jackson-databind@2.12.2
2.18.9
1
apache/skywalking-oap-server:6.5.0c1ee839ccad0
jackson-databind@2.9.5
2.18.9
1
apache/skywalking-ui:9.2.0295f1dc87d98
jackson-databind@2.13.2.2
2.18.9
1
apache/skywalking-ui:8.9.180530f0308a5
jackson-databind@2.12.2
2.18.9
1
apache/skywalking-ui:6.5.0a84f9d9b8067
jackson-databind@2.8.11.1
2.18.9
1
apache/tika:3.3.1.090b7fa1dc018
jackson-databind@2.21.3
2.21.5
1
apache/tika:3.2.2.0-fullffab324253ed
jackson-databind@2.19.2
2.21.5
1
apicurio/apicurio-registry-jpa:1.3.2.Final44eeddd3562c
jackson-databind@2.11.3
2.18.9
1
apicurio/apicurio-registry-kafkasql:2.1.0.Finala97d67487532
jackson-databind@2.12.1
2.18.9
1
apicurio/apicurio-studio-api:0.2.62.Final302d202ed149
jackson-databind@2.15.2
2.18.9
1
apicurio/apicurio-studio-ui:0.2.62.Final349c845270c2
jackson-databind@2.15.2
2.18.9
1
apicurio/apicurio-studio-ws:0.2.62.Final27a91978a388
jackson-databind@2.15.2
2.18.9
1
apimap/api:v1.8.11ae2b3ab00177
jackson-databind@2.13.4.2
2.18.9
1

syft 1.42.1 · advisories as of 29 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.