JacksonJsonpInterceptor in RESTEasy might allow remote attackers to conduct a cross-site script inclusion (XSSI) attack.
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2016-6348.json"