StackRadar

CVE-2026-83557

Medium

Advisory

Published 28 Sept 2026In the index since 29 Sept 2026
Severity
Medium
worst across findings
CVSS
5.6
base score, highest
EPSS
0.007
52nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
897
of 17,939 indexed, latest versions
Container images
888
deployed by those charts
Fix available
1 of 1
affected package

jackson-databind: Comparable missing from DefaultBaseTypeLimitingValidator's unsafe base types (incomplete PolymorphicTypeValidator denylist)

Carried by container images the latest versions of 897 of 17,939 indexed charts deploy, on 888 images.

Affected packageAffected versionsFixed inImages
jackson-databindmaven2.11.0, 2.11.1, 2.11.2, 2.11.3+72 more2.18.10, 2.21.6, 2.22.2, 3.1.6+1 more888
OSV records
GHSA-gx83-3vf8-gh7j
Trending
Rank 6 in indexed charts, since 29 Sept 2026. See the ranking →

Charts affected

897 by stars
ChartLatestAffected imagesRadar Score
flyte-devboxflyte0.1.01 of 14See more

flyte-devbox flyte 0.1.0

1 of the 14 container images this version deploys carry CVE-2026-83557.

Container imageDigestPackageFixed in
ghcr.io/flyteorg/flyte-connectors:py3.12-v2.3.6896fc7b18b1b
jackson-databind@2.12.7.1
2.18.10

Open the chart page →

8,624
keycloak-operatorfmjstudios0.1.21 of 1See more

keycloak-operator fmjstudios 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-83557.

Container imageDigestPackageFixed in
quay.io/keycloak/keycloak-operator:26.0.68e3a1a56346f
jackson-databind@2.17.2
2.18.10

Open the chart page →

1,320
edge-caiasoftfolio-org0.1.321 of 1See more

edge-caiasoft folio-org 0.1.32

1 of the 1 container images this version deploys carry CVE-2026-83557.

Container imageDigestPackageFixed in
folioci/edge-caiasoft:latestc3cfa89eee2f
jackson-databind@2.21.4
2.21.6

Open the chart page →

526
edge-connexionfolio-org0.1.51 of 1See more

edge-connexion folio-org 0.1.5

1 of the 1 container images this version deploys carry CVE-2026-83557.

Container imageDigestPackageFixed in
folioci/edge-connexion:latestb4863d135524
jackson-databind@2.18.2
2.18.10

Open the chart page →

1,140
edge-dematicfolio-org0.1.331 of 1See more

edge-dematic folio-org 0.1.33

1 of the 1 container images this version deploys carry CVE-2026-83557.

Container imageDigestPackageFixed in
folioci/edge-dematic:latest48c9b1d180d4
jackson-databind@3.1.4
3.1.6

Open the chart page →

526
edge-inn-reachfolio-org0.1.41 of 1See more

edge-inn-reach folio-org 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-83557.

Container imageDigestPackageFixed in
folioci/edge-inn-reach:latestc64e4d9dd3fc
jackson-databind@3.1.4
3.1.6

Open the chart page →

526
edge-ncipfolio-org0.1.281 of 1See more

edge-ncip folio-org 0.1.28

1 of the 1 container images this version deploys carry CVE-2026-83557.

Container imageDigestPackageFixed in
folioci/edge-ncip:lateste760dbb81d1a
jackson-databind@2.18.2
2.18.10

Open the chart page →

825
edge-oai-pmhfolio-org0.1.311 of 1See more

edge-oai-pmh folio-org 0.1.31

1 of the 1 container images this version deploys carry CVE-2026-83557.

Container imageDigestPackageFixed in
folioci/edge-oai-pmh:latesteedfcbc29792
jackson-databind@2.18.2
2.18.10

Open the chart page →

878
edge-ordersfolio-org0.1.301 of 1See more

edge-orders folio-org 0.1.30

1 of the 1 container images this version deploys carry CVE-2026-83557.

Container imageDigestPackageFixed in
folioci/edge-orders:latest1ef654ee9f23
jackson-databind@2.18.6
2.18.10

Open the chart page →

740
edge-patronfolio-org0.1.281 of 1See more

edge-patron folio-org 0.1.28

1 of the 1 container images this version deploys carry CVE-2026-83557.

Container imageDigestPackageFixed in
folioci/edge-patron:latest682b852e056d
jackson-databind@3.1.0
3.1.6

Open the chart page →

910
edge-rtacfolio-org0.1.281 of 1See more

edge-rtac folio-org 0.1.28

1 of the 1 container images this version deploys carry CVE-2026-83557.

Container imageDigestPackageFixed in
folioci/edge-rtac:latest15ef73b1abd0
jackson-databind@3.0.4
3.1.6

Open the chart page →

1,265
edge-sip2folio-org0.1.281 of 1See more

edge-sip2 folio-org 0.1.28

1 of the 1 container images this version deploys carry CVE-2026-83557.

Container imageDigestPackageFixed in
folioci/edge-sip2:latest86106f20ef51
jackson-databind@2.21.4
2.21.6

Open the chart page →

254
mod-aesfolio-org0.1.331 of 1See more

mod-aes folio-org 0.1.33

1 of the 1 container images this version deploys carry CVE-2026-83557.

Container imageDigestPackageFixed in
folioci/mod-aes:latest6d67e9564270
jackson-databind@2.11.3
2.18.10

Open the chart page →

2,284
mod-agreementsfolio-org0.1.321 of 1See more

mod-agreements folio-org 0.1.32

1 of the 1 container images this version deploys carry CVE-2026-83557.

Container imageDigestPackageFixed in
folioci/mod-agreements:latest29c3f233a498
jackson-databind@2.11.1
2.18.10

Open the chart page →

1,902
mod-auditfolio-org0.1.361 of 1See more

mod-audit folio-org 0.1.36

1 of the 1 container images this version deploys carry CVE-2026-83557.

Container imageDigestPackageFixed in
folioci/mod-audit:latest88f40730ed45
jackson-databind@3.1.4
3.1.6

Open the chart page →

267
mod-authtokenfolio-org0.1.351 of 1See more

mod-authtoken folio-org 0.1.35

1 of the 1 container images this version deploys carry CVE-2026-83557.

Container imageDigestPackageFixed in
folioci/mod-authtoken:latest995a25a33133
jackson-databind@2.16.1
2.18.10

Open the chart page →

1,567
mod-calendarfolio-org0.1.341 of 1See more

mod-calendar folio-org 0.1.34

1 of the 1 container images this version deploys carry CVE-2026-83557.

Container imageDigestPackageFixed in
folioci/mod-calendar:latest22f65982efd7
jackson-databind@3.1.4
3.1.6

Open the chart page →

416
mod-circulationfolio-org0.1.351 of 1See more

mod-circulation folio-org 0.1.35

1 of the 1 container images this version deploys carry CVE-2026-83557.

Container imageDigestPackageFixed in
folioci/mod-circulation:latest3eecd2ac2d8a
jackson-databind@2.18.6
2.18.10

Open the chart page →

500
mod-circulation-storagefolio-org0.1.351 of 1See more

mod-circulation-storage folio-org 0.1.35

1 of the 1 container images this version deploys carry CVE-2026-83557.

Container imageDigestPackageFixed in
folioci/mod-circulation-storage:latest6bdddcafbc0f
jackson-databind@2.18.6
2.18.10

Open the chart page →

662
mod-codex-ekbfolio-org0.1.341 of 1See more

mod-codex-ekb folio-org 0.1.34

1 of the 1 container images this version deploys carry CVE-2026-83557.

Container imageDigestPackageFixed in
folioci/mod-codex-ekb:latest235a3fa4adc9
jackson-databind@2.13.2.1
2.18.10

Open the chart page →

2,117
mod-codex-inventoryfolio-org0.1.341 of 1See more

mod-codex-inventory folio-org 0.1.34

1 of the 1 container images this version deploys carry CVE-2026-83557.

Container imageDigestPackageFixed in
folioci/mod-codex-inventory:latest6d53ed758fd1
jackson-databind@2.11.3
2.18.10

Open the chart page →

1,904
mod-codex-muxfolio-org0.1.341 of 1See more

mod-codex-mux folio-org 0.1.34

1 of the 1 container images this version deploys carry CVE-2026-83557.

Container imageDigestPackageFixed in
folioci/mod-codex-mux:latestd4138abfd30d
jackson-databind@2.13.4
2.18.10

Open the chart page →

1,759
mod-configurationfolio-org0.1.341 of 1See more

mod-configuration folio-org 0.1.34

1 of the 1 container images this version deploys carry CVE-2026-83557.

Container imageDigestPackageFixed in
folioci/mod-configuration:latestdd0cdc89670a
jackson-databind@2.18.6
2.18.10

Open the chart page →

716
mod-copycatfolio-org0.1.31 of 1See more

mod-copycat folio-org 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-83557.

Container imageDigestPackageFixed in
folioci/mod-copycat:latest1513fad2b799
jackson-databind@2.18.6
2.18.10

Open the chart page →

1,474
mod-coursesfolio-org0.1.341 of 1See more

mod-courses folio-org 0.1.34

1 of the 1 container images this version deploys carry CVE-2026-83557.

Container imageDigestPackageFixed in
folioci/mod-courses:latest68ca414f5596
jackson-databind@2.18.2
2.18.10

Open the chart page →

1,541
mod-data-exportfolio-org0.1.401 of 1See more

mod-data-export folio-org 0.1.40

1 of the 1 container images this version deploys carry CVE-2026-83557.

Container imageDigestPackageFixed in
folioci/mod-data-export:latest0cc86bf09755
jackson-databind@2.20.2
2.21.6

Open the chart page →

1,425
mod-data-export-springfolio-org0.1.41 of 1See more

mod-data-export-spring folio-org 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-83557.

Container imageDigestPackageFixed in
folioci/mod-data-export-spring:latestf1d7caf4544b
jackson-databind@3.0.4
3.1.6

Open the chart page →

1,258
mod-data-export-workerfolio-org0.1.151 of 1See more

mod-data-export-worker folio-org 0.1.15

1 of the 1 container images this version deploys carry CVE-2026-83557.

Container imageDigestPackageFixed in
folioci/mod-data-export-worker:latest1ad1811c9b37
jackson-databind@3.0.4
3.1.6

Open the chart page →

1,244
mod-data-import-converter-storagefolio-org0.1.341 of 1See more

mod-data-import-converter-storage folio-org 0.1.34

1 of the 1 container images this version deploys carry CVE-2026-83557.

Container imageDigestPackageFixed in
folioci/mod-data-import-converter-storage:latest3028f333778f
jackson-databind@2.13.4
2.18.10

Open the chart page →

2,492
mod-ebsconetfolio-org0.1.31 of 1See more

mod-ebsconet folio-org 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-83557.

Container imageDigestPackageFixed in
folioci/mod-ebsconet:latest3ae8cb99daa3
jackson-databind@2.20.2
2.21.6

Open the chart page →

1,210
mod-emailfolio-org0.1.341 of 1See more

mod-email folio-org 0.1.34

1 of the 1 container images this version deploys carry CVE-2026-83557.

Container imageDigestPackageFixed in
folioci/mod-email:latest79ea8e2e7ebf
jackson-databind@2.18.2
2.18.10

Open the chart page →

871
mod-entities-linksfolio-org0.1.11 of 1See more

mod-entities-links folio-org 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-83557.

Container imageDigestPackageFixed in
folioci/mod-entities-links:latest3e2412815c0f
jackson-databind@3.1.5
3.1.6

Open the chart page →

312
mod-erm-usagefolio-org0.1.341 of 1See more

mod-erm-usage folio-org 0.1.34

1 of the 1 container images this version deploys carry CVE-2026-83557.

Container imageDigestPackageFixed in
folioci/mod-erm-usage:latest56a8421de884
jackson-databind@3.1.5
3.1.6

Open the chart page →

0
mod-erm-usage-harvesterfolio-org0.1.341 of 1See more

mod-erm-usage-harvester folio-org 0.1.34

1 of the 1 container images this version deploys carry CVE-2026-83557.

Container imageDigestPackageFixed in
folioci/mod-erm-usage-harvester:latest2d6767933c59
jackson-databind@2.18.6
2.18.10

Open the chart page →

567
mod-event-configfolio-org0.1.341 of 1See more

mod-event-config folio-org 0.1.34

1 of the 1 container images this version deploys carry CVE-2026-83557.

Container imageDigestPackageFixed in
folioci/mod-event-config:latest0192adad3897
jackson-databind@3.1.4
3.1.6

Open the chart page →

421
mod-feesfinesfolio-org0.1.341 of 1See more

mod-feesfines folio-org 0.1.34

1 of the 1 container images this version deploys carry CVE-2026-83557.

Container imageDigestPackageFixed in
folioci/mod-feesfines:latestfe3a7049f2fb
jackson-databind@2.18.2
2.18.10

Open the chart page →

667
mod-financefolio-org0.1.341 of 1See more

mod-finance folio-org 0.1.34

1 of the 1 container images this version deploys carry CVE-2026-83557.

Container imageDigestPackageFixed in
folioci/mod-finance:latest14450bc15430
jackson-databind@2.21.4
2.21.6

Open the chart page →

538
mod-finance-storagefolio-org0.1.341 of 1See more

mod-finance-storage folio-org 0.1.34

1 of the 1 container images this version deploys carry CVE-2026-83557.

Container imageDigestPackageFixed in
folioci/mod-finance-storage:latest4bc4057abaea
jackson-databind@3.1.4
3.1.6

Open the chart page →

414
mod-gobifolio-org0.1.341 of 1See more

mod-gobi folio-org 0.1.34

1 of the 1 container images this version deploys carry CVE-2026-83557.

Container imageDigestPackageFixed in
folioci/mod-gobi:latestc58c989dac44
jackson-databind@2.20.1
2.21.6

Open the chart page →

599
mod-inn-reachfolio-org0.1.71 of 1See more

mod-inn-reach folio-org 0.1.7

1 of the 1 container images this version deploys carry CVE-2026-83557.

Container imageDigestPackageFixed in
folioci/mod-inn-reach:latestcc8584e43382
jackson-databind@3.1.4
3.1.6

Open the chart page →

513
mod-inventory-storagefolio-org0.1.371 of 1See more

mod-inventory-storage folio-org 0.1.37

1 of the 1 container images this version deploys carry CVE-2026-83557.

Container imageDigestPackageFixed in
folioci/mod-inventory-storage:latestf92ff0a3ca40
jackson-databind@3.1.5
3.1.6

Open the chart page →

81
mod-inventory-updatefolio-org0.1.21 of 1See more

mod-inventory-update folio-org 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-83557.

Container imageDigestPackageFixed in
folioci/mod-inventory-update:latestba84812b4d58
jackson-databind@2.18.2
2.18.10

Open the chart page →

883
mod-invoicefolio-org0.1.351 of 1See more

mod-invoice folio-org 0.1.35

1 of the 1 container images this version deploys carry CVE-2026-83557.

Container imageDigestPackageFixed in
folioci/mod-invoice:latest45b7b13e81e1
jackson-databind@3.1.4
3.1.6

Open the chart page →

571
mod-invoice-storagefolio-org0.1.341 of 1See more

mod-invoice-storage folio-org 0.1.34

1 of the 1 container images this version deploys carry CVE-2026-83557.

Container imageDigestPackageFixed in
folioci/mod-invoice-storage:latest0bc720abcb78
jackson-databind@2.21.5
2.21.6

Open the chart page →

226
mod-ldpfolio-org0.1.331 of 1See more

mod-ldp folio-org 0.1.33

1 of the 1 container images this version deploys carry CVE-2026-83557.

Container imageDigestPackageFixed in
folioci/mod-ldp:latestb55696fd9065
jackson-databind@2.15.4
2.18.10

Open the chart page →

1,929
mod-licensesfolio-org0.1.321 of 1See more

mod-licenses folio-org 0.1.32

1 of the 1 container images this version deploys carry CVE-2026-83557.

Container imageDigestPackageFixed in
folioci/mod-licenses:latestcfd6109bf477
jackson-databind@2.18.7
2.18.10

Open the chart page →

1,787
mod-loginfolio-org0.1.341 of 1See more

mod-login folio-org 0.1.34

1 of the 1 container images this version deploys carry CVE-2026-83557.

Container imageDigestPackageFixed in
folioci/mod-login:latest88de493f86db
jackson-databind@2.16.1
2.18.10

Open the chart page →

1,160
mod-login-samlfolio-org0.1.341 of 1See more

mod-login-saml folio-org 0.1.34

1 of the 1 container images this version deploys carry CVE-2026-83557.

Container imageDigestPackageFixed in
folioci/mod-login-saml:latest5f3358ccaa0f
jackson-databind@2.21.2
2.21.6

Open the chart page →

1,097
mod-notesfolio-org0.1.341 of 1See more

mod-notes folio-org 0.1.34

1 of the 1 container images this version deploys carry CVE-2026-83557.

Container imageDigestPackageFixed in
folioci/mod-notes:latest998ac4782e0d
jackson-databind@2.21.5
2.21.6

Open the chart page →

157
mod-notifyfolio-org0.1.341 of 1See more

mod-notify folio-org 0.1.34

1 of the 1 container images this version deploys carry CVE-2026-83557.

Container imageDigestPackageFixed in
folioci/mod-notify:latesta8c1a90005fc
jackson-databind@3.1.4
3.1.6

Open the chart page →

272

Container images carrying it

888 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
ghcr.io/quenchworks/images/akhq334e20a52f75
jackson-databind@3.1.5
3.1.6
2
ghcr.io/quenchworks/images/cassandra15d5c9bf399b
jackson-databind@2.21.5
2.21.6
2
ghcr.io/quenchworks/images/kafkaffeebb40ed40
jackson-databind@2.21.5
2.21.6
2
ghcr.io/quenchworks/images/trino8b30191aeee4
jackson-databind@2.22.1
2.22.2
2
ghcr.io/salaboy/fmtok8s-frontend:v0.1.103fd01b4f56e
jackson-databind@2.13.3
2.18.10
2
public.ecr.aws/aktosecurity/akto-api-security-database-abstractor:1.70.0:latestac89679314c1
jackson-databind@2.18.9
2.18.10
2
public.ecr.aws/aktosecurity/confluentinc-cp-kafka:8.1.1-1-ubi9d20bd62f0182
jackson-databind@2.19.0
2.21.6
2
quay.io/keycloak/keycloak:26.1.4044a457e0498
jackson-databind@2.17.2
2.18.10
2
quay.io/keycloak/keycloak:20.0054ef67eb7da
jackson-databind@2.13.4.2
2.18.10
2
quay.io/keycloak/keycloak:17.0.1-legacy68f9f38c8f30
jackson-databind@2.12.1
2.18.10
2
quay.io/keycloak/keycloak-operator:26.7.406a13deb3919
jackson-databind@2.21.5
2.21.6
2
quay.io/keycloak/keycloak-operator:26.7.33172bf49511c
jackson-databind@2.21.5
2.21.6
2
quay.io/strimzi/drain-cleaner:1.6.15fb28e9f30d0
jackson-databind@2.21.2
2.21.6
2
quay.io/strimzi/operator:0.39.002f6f143fc6d
jackson-databind@2.15.3
2.18.10
2
quay.io/strimzi/operator:1.2.077f8fa8121a6
jackson-databind@3.1.5
3.1.6
2
quay.io/strimzi/operator:0.46.0ac434a48ac2b
jackson-databind@2.18.3
2.18.10
2
1dev/server:11.9.0cd5b12fe5471
jackson-databind@2.14.0-rc1
2.18.10
1
2martens/configserver:latestbf1cdb80239d
jackson-databind@2.17.2
2.18.10
1
2martens/timetable:latestbd1ba6ab84c9
jackson-databind@2.19.2
2.21.6
1
2martens/wahlrecht:latestba2c3040dab0
jackson-databind@2.19.2
2.21.6
1
48n6e/camellia-redis-proxy:1.4.0-jdk-21-0.0.1a6ed886fddfc
jackson-databind@2.19.4
2.21.6
1
5200710/hadoop:3.2.3-java8092d3088a5fb
jackson-databind@2.12.7.1
2.18.10
1
5200710/hive:3.1.3-postgresql-metastoree34ab066d2ed
jackson-databind@2.12.0
2.18.10
1
acryldata/datahub-frontend-react:v1.7.0.199513cc1c45e
jackson-databind@2.21.5
2.21.6
1
acryldata/datahub-upgrade:v1.7.0.1c3db54d8fb94
jackson-databind@2.21.2
2.21.6
1
adagber/planner:v1.0e5c1ed097752
jackson-databind@2.13.0
2.18.10
1
adeptiainc/adeptia-connect-migration:5.2.98607f4f29732
jackson-databind@2.19.4
2.21.6
1
adeptiainc/adeptia-connect-migration:4.8.1f1087da3da0b
jackson-databind@2.21.1
2.21.6
1
adityaprasadpathak/myapp:3.07e3b9777362c
jackson-databind@2.17.1
2.18.10
1
adorsys/keycloak-config-cli:6.3.0-26.1.085be7a45a94c
jackson-databind@2.17.2
2.18.10
1
adorsys/keycloak-config-cli:6.1.6-25.0.1eb49a2dcbbb8
jackson-databind@2.17.1
2.18.10
1
ahmetfurkandemir/iceberg-rest-fixture-postgresql:1.10.0142231a0b8b7
jackson-databind@2.18.4
2.18.10
1
airbyte/airbyte-api-server:0.63.8e1c5e7cfec8a
jackson-databind@2.17.0
2.18.10
1
airbyte/bootloader:2.3.0205b99d17c1a
jackson-databind@2.21.5
2.21.6
1
airbyte/connector-rollout-worker:2.0.2-alpha-c905e75d42813fcc191
jackson-databind@2.20.1
2.21.6
1
airbyte/cron:2.3.0bf4835757eaa
jackson-databind@2.21.5
2.21.6
1
airbyte/cron:0.40.17caf4f551c546
jackson-databind@2.13.4.2
2.18.10
1
airbyte/server:2.3.039141ed8ce5e
jackson-databind@2.21.5
2.21.6
1
airbyte/worker:2.3.0f2e33fbc53d1
jackson-databind@2.21.5
2.21.6
1
airbyte/workload-api-server:2.3.0434b4a811156
jackson-databind@2.21.5
2.21.6
1
airsonicadvanced/airsonic-advanced:latestf7cbafac2806
jackson-databind@2.12.3
2.18.10
1
aktosecurity/akto-api-protection:localbcd7382c9c1b
jackson-databind@2.16.1
2.18.10
1
aktosecurity/akto-api-security-dashboard:latest3ecdd301cdbd
jackson-databind@2.18.9
2.18.10
1
aktosecurity/akto-threat-detection-backend:1.18.00d407ce850a3
jackson-databind@2.18.9
2.18.10
1
aktosecurity/akto-threat-detection-backend:latestdffb8c3676ef
jackson-databind@2.18.9
2.18.10
1
aktosecurity/data-ingestion-service213aded7adc5
jackson-databind@2.16.1
2.18.10
1
aktosecurity/data-ingestion-service:1.4.946ed5bcb04b2
jackson-databind@2.16.1
2.18.10
1
aktosecurity/data-ingestion-service:1.5.35d4eab1c36b9
jackson-databind@2.18.9
2.18.10
1
aktosecurity/mini-runtime:1.72.15498e3e35ecc2
jackson-databind@2.18.9
2.18.10
1
aktosecurity/source-code-analyser:a-1703-merge274042ed7a53
jackson-databind@2.16.1
2.18.10
1

syft 1.42.1 · advisories as of 29 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.