Hello, our container scanning tool detects some (almost 20) critical VUL concerning jackson-bind... (ex: CVE-2017-15095 in apache/druid
29.0.1com.fasterxml.jackson.core:jackson-databind) with the 29.0.1...
They are not in the
owasp-dependency-check-suppressions.xml so are there legit ? How to tackle that ?