This update for xstream fixes the following issues:
CVE-2022-41966: Fixed denial of service via uncontrolled recursion during deserialization (bsc#1206729).
Upgrade to 1.4.20.
{ "binaries": [ { "xstream-benchmark": "1.4.20-150200.3.25.1", "xstream-javadoc": "1.4.20-150200.3.25.1", "xstream-parent": "1.4.20-150200.3.25.1", "xstream": "1.4.20-150200.3.25.1" } ] }
"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2023:1673-1.json"
{ "binaries": [ { "xstream": "1.4.20-150200.3.25.1" } ] }