This update for xstream fixes the following issues:
CVE-2022-41966: Fixed denial of service via uncontrolled recursion during deserialization (bsc#1206729).
Upgrade to 1.4.20.
{ "binaries": [ { "xstream": "1.4.20-150200.3.25.1" } ] }
{ "binaries": [ { "xstream-parent": "1.4.20-150200.3.25.1", "xstream": "1.4.20-150200.3.25.1", "xstream-javadoc": "1.4.20-150200.3.25.1", "xstream-benchmark": "1.4.20-150200.3.25.1" } ] }