| CVE-2021-44228 |
9.3 |
10 |
org.apache.logging.log4j:log4j-core (Maven) |
Apache-2.0 |
| debricked-233365 |
9.3 |
10 |
org.springframework:spring-core (Maven) |
Apache-2.0, BSD-3-Clause |
| debricked-233364 |
9.3 |
10 |
org.springframework:spring-beans (Maven) |
Apache-2.0, BSD-3-Clause |
| debricked-233252 |
9.3 |
10 |
org.springframework.boot:spring-boot-starter-web (Maven) |
Apache-2.0 |
| CVE-2018-14721 |
7.5 |
10 |
com.fasterxml.jackson.core:jackson-databind (Maven) |
Apache-2.0 |
| CVE-2021-21345 |
6.5 |
9.9 |
com.thoughtworks.xstream:xstream (Maven) |
BSD-3-Clause |
| CVE-2018-11307 |
7.5 |
9.8 |
com.fasterxml.jackson.core:jackson-databind (Maven) |
Apache-2.0 |
| CVE-2018-19361 |
7.5 |
9.8 |
com.fasterxml.jackson.core:jackson-databind (Maven) |
Apache-2.0 |
| CVE-2018-19362 |
7.5 |
9.8 |
com.fasterxml.jackson.core:jackson-databind (Maven) |
Apache-2.0 |
| CVE-2018-14720 |
7.5 |
9.8 |
com.fasterxml.jackson.core:jackson-databind (Maven) |
Apache-2.0 |
| CVE-2019-14379 |
7.5 |
9.8 |
com.fasterxml.jackson.core:jackson-databind (Maven) |
Apache-2.0 |
| CVE-2019-14540 |
7.5 |
9.8 |
com.fasterxml.jackson.core:jackson-databind (Maven) |
Apache-2.0 |
| CVE-2019-16335 |
7.5 |
9.8 |
com.fasterxml.jackson.core:jackson-databind (Maven) |
Apache-2.0 |
| CVE-2019-16942 |
7.5 |
9.8 |
com.fasterxml.jackson.core:jackson-databind (Maven) |
Apache-2.0 |
| CVE-2019-16943 |
7.5 |
9.8 |
com.fasterxml.jackson.core:jackson-databind (Maven) |
Apache-2.0 |
| CVE-2019-17267 |
7.5 |
9.8 |
com.fasterxml.jackson.core:jackson-databind (Maven) |
Apache-2.0 |
| CVE-2018-19360 |
7.5 |
9.8 |
com.fasterxml.jackson.core:jackson-databind (Maven) |
Apache-2.0 |
| CVE-2022-22978 |
7.5 |
9.8 |
org.springframework.security:spring-security-web (Maven) |
Apache-2.0 |
| CVE-2023-25330 |
N/A |
9.8 |
org.mybatis:mybatis (Maven) |
Apache-2.0 |
| CVE-2019-20330 |
7.5 |
9.8 |
com.fasterxml.jackson.core:jackson-databind (Maven) |
Apache-2.0 |
| CVE-2019-17495 |
7.5 |
9.8 |
io.springfox:springfox-swagger-ui (Maven) |
Apache-2.0 |
| CVE-2016-6814 |
7.5 |
9.8 |
org.codehaus.groovy:groovy (Maven) |
Apache-2.0 |
| CVE-2024-1597 |
N/A |
9.8 |
org.postgresql:postgresql (Maven) |
BSD-2-Clause |
| CVE-2023-24163 |
N/A |
9.8 |
cn.hutool:hutool-all (Maven) |
MulanPSL-2.0 |
| CVE-2023-24162 |
N/A |
9.8 |
cn.hutool:hutool-all (Maven) |
MulanPSL-2.0 |
| CVE-2022-22965 |
7.5 |
9.8 |
org.springframework:spring-core (Maven) |
Apache-2.0, BSD-3-Clause |
| CVE-2022-22965 |
7.5 |
9.8 |
org.springframework:spring-webmvc (Maven) |
Apache-2.0, BSD-3-Clause |
| CVE-2013-7285 |
7.5 |
9.8 |
com.thoughtworks.xstream:xstream (Maven) |
BSD-3-Clause |
| CVE-2018-1275 |
7.5 |
9.8 |
org.springframework:spring-core (Maven) |
Apache-2.0, BSD-3-Clause |
| CVE-2019-17531 |
7.5 |
9.8 |
com.fasterxml.jackson.core:jackson-databind (Maven) |
Apache-2.0 |
| CVE-2020-8840 |
7.5 |
9.8 |
com.fasterxml.jackson.core:jackson-databind (Maven) |
Apache-2.0 |
| CVE-2020-24616 |
6.8 |
9.8 |
com.fasterxml.jackson.core:jackson-databind (Maven) |
Apache-2.0 |
| CVE-2019-14892 |
7.5 |
9.8 |
com.fasterxml.jackson.core:jackson-databind (Maven) |
Apache-2.0 |
| CVE-2021-21350 |
7.5 |
9.8 |
com.thoughtworks.xstream:xstream (Maven) |
BSD-3-Clause |
| CVE-2020-10683 |
7.5 |
9.8 |
dom4j:dom4j (Maven) |
Plexus |
| CVE-2022-23640 |
7.5 |
9.8 |
com.monitorjbl:xlsx-streamer (Maven) |
Apache-2.0 |
| CVE-2017-17485 |
7.5 |
9.8 |
com.fasterxml.jackson.core:jackson-databind (Maven) |
Apache-2.0 |
| CVE-2016-1000027 |
7.5 |
9.8 |
org.springframework:spring-web (Maven) |
Apache-2.0, BSD-3-Clause |
| CVE-2022-22978 |
7.5 |
9.8 |
org.springframework.security:spring-security-core (Maven) |
Apache-2.0 |
| CVE-2022-22965 |
7.5 |
9.8 |
org.springframework:spring-beans (Maven) |
Apache-2.0, BSD-3-Clause |
| CVE-2022-1471 |
N/A |
9.8 |
org.yaml:snakeyaml (Maven) |
Apache-2.0 |
| CVE-2021-21347 |
7.5 |
9.8 |
com.thoughtworks.xstream:xstream (Maven) |
BSD-3-Clause |
| CVE-2020-10683 |
7.5 |
9.8 |
org.dom4j:dom4j (Maven) |
Unknown License |
| CVE-2018-7489 |
7.5 |
9.8 |
com.fasterxml.jackson.core:jackson-databind (Maven) |
Apache-2.0 |
| CVE-2021-21346 |
7.5 |
9.8 |
com.thoughtworks.xstream:xstream (Maven) |
BSD-3-Clause |
| CVE-2021-21344 |
7.5 |
9.8 |
com.thoughtworks.xstream:xstream (Maven) |
BSD-3-Clause |
| CVE-2019-10173 |
7.5 |
9.8 |
com.thoughtworks.xstream:xstream (Maven) |
BSD-3-Clause |
| CVE-2022-22965 |
7.5 |
9.8 |
org.springframework.boot:spring-boot-starter-web (Maven) |
Apache-2.0 |
| CVE-2017-5929 |
7.5 |
9.8 |
ch.qos.logback:logback-core (Maven) |
EPL-1.0, LGPL-2.0-or-later, LGPL-2.1-only |
| CVE-2022-26520 |
7.5 |
9.8 |
org.postgresql:postgresql (Maven) |
BSD-2-Clause |
| CVE-2017-5929 |
7.5 |
9.8 |
ch.qos.logback:logback-classic (Maven) |
LGPL-2.0-or-later, LGPL-2.1-only |
| CVE-2022-21724 |
7.5 |
9.8 |
org.postgresql:postgresql (Maven) |
BSD-2-Clause |
| CVE-2017-7525 |
7.5 |
9.8 |
com.fasterxml.jackson.core:jackson-databind (Maven) |
Apache-2.0 |
| CVE-2017-15095 |
7.5 |
9.8 |
com.fasterxml.jackson.core:jackson-databind (Maven) |
Apache-2.0 |
| CVE-2018-14718 |
7.5 |
9.8 |
com.fasterxml.jackson.core:jackson-databind (Maven) |
Apache-2.0 |
| CVE-2018-14719 |
7.5 |
9.8 |
com.fasterxml.jackson.core:jackson-databind (Maven) |
Apache-2.0 |
| CVE-2020-9548 |
6.8 |
9.8 |
com.fasterxml.jackson.core:jackson-databind (Maven) |
Apache-2.0 |
| CVE-2020-9547 |
6.8 |
9.8 |
com.fasterxml.jackson.core:jackson-databind (Maven) |
Apache-2.0 |
| CVE-2015-7501 |
10 |
9.8 |
commons-collections:commons-collections (Maven) |
Apache-2.0 |
| CVE-2018-1270 |
7.5 |
9.8 |
org.springframework:spring-core (Maven) |
Apache-2.0, BSD-3-Clause |
| CVE-2021-27568 |
6.4 |
9.1 |
net.minidev:json-smart (Maven) |
Apache-2.0 |
| CVE-2024-38821 |
N/A |
9.1 |
org.springframework.security:spring-security-web (Maven) |
Apache-2.0 |
| CVE-2019-20445 |
6.4 |
9.1 |
io.netty:netty-handler (Maven) |
Apache-2.0 |
| CVE-2021-21342 |
5.8 |
9.1 |
com.thoughtworks.xstream:xstream (Maven) |
BSD-3-Clause |
| CVE-2021-21351 |
6.5 |
9.1 |
com.thoughtworks.xstream:xstream (Maven) |
BSD-3-Clause |
| CVE-2021-23926 |
6.4 |
9.1 |
org.apache.xmlbeans:xmlbeans (Maven) |
Apache-2.0 |
| CVE-2019-20444 |
6.4 |
9.1 |
io.netty:netty-codec-http (Maven) |
Apache-2.0 |
| CVE-2021-45046 |
5.1 |
9 |
org.apache.logging.log4j:log4j-core (Maven) |
Apache-2.0 |
| CVE-2018-10899 |
6.8 |
8.8 |
org.jolokia:jolokia-core (Maven) |
Apache-2.0 |
| CVE-2021-29505 |
6.5 |
8.8 |
com.thoughtworks.xstream:xstream (Maven) |
BSD-3-Clause |
| CVE-2020-13936 |
9 |
8.8 |
org.apache.velocity:velocity (Maven) |
Apache-2.0 |
| CVE-2021-39139 |
6.5 |
8.8 |
com.thoughtworks.xstream:xstream (Maven) |
BSD-3-Clause |
| CVE-2018-3258 |
6.5 |
8.8 |
mysql:mysql-connector-java (Maven) |
GPL-2.0-only, GPL-2.0-only WITH Universal-FOSS-exception-1.0 |
| CVE-2020-10673 |
6.8 |
8.8 |
com.fasterxml.jackson.core:jackson-databind (Maven) |
Apache-2.0 |
| CVE-2021-22112 |
9 |
8.8 |
org.springframework.security:spring-security-web (Maven) |
Apache-2.0 |
| CVE-2020-26217 |
9.3 |
8.8 |
com.thoughtworks.xstream:xstream (Maven) |
BSD-3-Clause |
| CVE-2021-22112 |
9 |
8.8 |
org.springframework.security:spring-security-core (Maven) |
Apache-2.0 |
| CVE-2021-21349 |
5 |
8.6 |
com.thoughtworks.xstream:xstream (Maven) |
BSD-3-Clause |
| CVE-2021-39144 |
6 |
8.5 |
com.thoughtworks.xstream:xstream (Maven) |
BSD-3-Clause |
| CVE-2021-39145 |
6 |
8.5 |
com.thoughtworks.xstream:xstream (Maven) |
BSD-3-Clause |
| CVE-2021-39150 |
6 |
8.5 |
com.thoughtworks.xstream:xstream (Maven) |
BSD-3-Clause |
| CVE-2021-39146 |
6 |
8.5 |
com.thoughtworks.xstream:xstream (Maven) |
BSD-3-Clause |
| CVE-2021-39153 |
6 |
8.5 |
com.thoughtworks.xstream:xstream (Maven) |
BSD-3-Clause |
| CVE-2021-39149 |
6 |
8.5 |
com.thoughtworks.xstream:xstream (Maven) |
BSD-3-Clause |
| CVE-2021-39147 |
6 |
8.5 |
com.thoughtworks.xstream:xstream (Maven) |
BSD-3-Clause |
| CVE-2021-39151 |
6 |
8.5 |
com.thoughtworks.xstream:xstream (Maven) |
BSD-3-Clause |
| CVE-2021-39152 |
6 |
8.5 |
com.thoughtworks.xstream:xstream (Maven) |
BSD-3-Clause |
| CVE-2021-39154 |
6 |
8.5 |
com.thoughtworks.xstream:xstream (Maven) |
BSD-3-Clause |
| CVE-2021-39148 |
6 |
8.5 |
com.thoughtworks.xstream:xstream (Maven) |
BSD-3-Clause |
| CVE-2021-39141 |
6 |
8.5 |
com.thoughtworks.xstream:xstream (Maven) |
BSD-3-Clause |
| CVE-2024-22257 |
N/A |
8.2 |
org.springframework.security:spring-security-core (Maven) |
Apache-2.0 |
| CVE-2018-5968 |
5.1 |
8.1 |
com.fasterxml.jackson.core:jackson-databind (Maven) |
Apache-2.0 |
| CVE-2020-35728 |
6.8 |
8.1 |
com.fasterxml.jackson.core:jackson-databind (Maven) |
Apache-2.0 |
| CVE-2017-4995 |
6.8 |
8.1 |
org.springframework.security:spring-security-core (Maven) |
Apache-2.0 |
| CVE-2024-22243 |
N/A |
8.1 |
org.springframework:spring-web (Maven) |
Apache-2.0, BSD-3-Clause |
| CVE-2020-36183 |
6.8 |
8.1 |
com.fasterxml.jackson.core:jackson-databind (Maven) |
Apache-2.0 |
| CVE-2024-22259 |
N/A |
8.1 |
org.springframework:spring-web (Maven) |
Apache-2.0, BSD-3-Clause |
| CVE-2020-36179 |
6.8 |
8.1 |
com.fasterxml.jackson.core:jackson-databind (Maven) |
Apache-2.0 |
| CVE-2020-36180 |
6.8 |
8.1 |
com.fasterxml.jackson.core:jackson-databind (Maven) |
Apache-2.0 |
| CVE-2024-22262 |
N/A |
8.1 |
org.springframework:spring-web (Maven) |
Apache-2.0, BSD-3-Clause |
| CVE-2020-24750 |
6.8 |
8.1 |
com.fasterxml.jackson.core:jackson-databind (Maven) |
Apache-2.0 |
| CVE-2021-20190 |
8.3 |
8.1 |
com.fasterxml.jackson.core:jackson-databind (Maven) |
Apache-2.0 |
| CVE-2020-36181 |
6.8 |
8.1 |
com.fasterxml.jackson.core:jackson-databind (Maven) |
Apache-2.0 |
| CVE-2020-36184 |
6.8 |
8.1 |
com.fasterxml.jackson.core:jackson-databind (Maven) |
Apache-2.0 |
| CVE-2020-36188 |
6.8 |
8.1 |
com.fasterxml.jackson.core:jackson-databind (Maven) |
Apache-2.0 |
| CVE-2020-36187 |
6.8 |
8.1 |
com.fasterxml.jackson.core:jackson-databind (Maven) |
Apache-2.0 |
| CVE-2020-36186 |
6.8 |
8.1 |
com.fasterxml.jackson.core:jackson-databind (Maven) |
Apache-2.0 |
| CVE-2020-36185 |
6.8 |
8.1 |
com.fasterxml.jackson.core:jackson-databind (Maven) |
Apache-2.0 |
| CVE-2020-36182 |
6.8 |
8.1 |
com.fasterxml.jackson.core:jackson-databind (Maven) |
Apache-2.0 |
| CVE-2020-35491 |
6.8 |
8.1 |
com.fasterxml.jackson.core:jackson-databind (Maven) |
Apache-2.0 |
| CVE-2020-10650 |
N/A |
8.1 |
com.fasterxml.jackson.core:jackson-databind (Maven) |
Apache-2.0 |
| CVE-2020-35490 |
6.8 |
8.1 |
com.fasterxml.jackson.core:jackson-databind (Maven) |
Apache-2.0 |
| CVE-2020-26945 |
5.1 |
8.1 |
org.mybatis:mybatis (Maven) |
Apache-2.0 |
| CVE-2020-36189 |
6.8 |
8.1 |
com.fasterxml.jackson.core:jackson-databind (Maven) |
Apache-2.0 |
| CVE-2022-31197 |
N/A |
8 |
org.postgresql:postgresql (Maven) |
BSD-2-Clause |
| CVE-2022-27772 |
4.6 |
7.8 |
org.springframework.boot:spring-boot (Maven) |
Apache-2.0 |
| CVE-2020-26258 |
5 |
7.7 |
com.thoughtworks.xstream:xstream (Maven) |
BSD-3-Clause |
| CVE-2018-15756 |
5 |
7.5 |
org.springframework:spring-web (Maven) |
Apache-2.0, BSD-3-Clause |
| CVE-2023-24998 |
N/A |
7.5 |
org.apache.tomcat.embed:tomcat-embed-core (Maven) |
Apache-2.0 |
| CVE-2024-47072 |
N/A |
7.5 |
com.thoughtworks.xstream:xstream (Maven) |
BSD-3-Clause |
| CVE-2024-38819 |
N/A |
7.5 |
org.springframework:spring-webmvc (Maven) |
Apache-2.0, BSD-3-Clause |
| CVE-2024-24549 |
N/A |
7.5 |
org.apache.tomcat.embed:tomcat-embed-core (Maven) |
Apache-2.0 |
| CVE-2024-30172 |
N/A |
7.5 |
org.bouncycastle:bcprov-jdk15on (Maven) |
MIT |
| CVE-2024-29857 |
N/A |
7.5 |
org.bouncycastle:bcprov-jdk15on (Maven) |
MIT |
| CVE-2022-22968 |
5 |
7.5 |
org.springframework:spring-core (Maven) |
Apache-2.0, BSD-3-Clause |
| CVE-2018-15756 |
5 |
7.5 |
org.springframework:spring-core (Maven) |
Apache-2.0, BSD-3-Clause |
| CVE-2022-22968 |
5 |
7.5 |
org.springframework:spring-context (Maven) |
Apache-2.0, BSD-3-Clause |
| CVE-2022-22970 |
5 |
7.5 |
org.springframework:spring-beans (Maven) |
Apache-2.0, BSD-3-Clause |
| CVE-2016-4970 |
7.8 |
7.5 |
io.netty:netty-handler (Maven) |
Apache-2.0 |
| CVE-2023-38286 |
N/A |
7.5 |
org.thymeleaf:thymeleaf (Maven) |
Apache-2.0 |
| CVE-2023-46589 |
N/A |
7.5 |
org.apache.tomcat.embed:tomcat-embed-core (Maven) |
Apache-2.0 |
| CVE-2023-6378 |
N/A |
7.5 |
ch.qos.logback:logback-classic (Maven) |
LGPL-2.0-or-later, LGPL-2.1-only |
| CVE-2023-6378 |
N/A |
7.5 |
ch.qos.logback:logback-core (Maven) |
EPL-1.0, LGPL-2.0-or-later, LGPL-2.1-only |
| CVE-2022-22970 |
5 |
7.5 |
org.springframework:spring-core (Maven) |
Apache-2.0, BSD-3-Clause |
| CVE-2021-22570 |
5 |
7.5 |
com.google.protobuf:protobuf-java (Maven) |
BSD-3-Clause |
| CVE-2023-3635 |
N/A |
7.5 |
com.squareup.okio:okio (Maven) |
Apache-2.0 |
| CVE-2023-20883 |
N/A |
7.5 |
org.springframework.boot:spring-boot-autoconfigure (Maven) |
Apache-2.0 |
| CVE-2022-45693 |
N/A |
7.5 |
org.codehaus.jettison:jettison (Maven) |
Apache-2.0 |
| CVE-2018-1272 |
6 |
7.5 |
org.springframework:spring-core (Maven) |
Apache-2.0, BSD-3-Clause |
| CVE-2018-12023 |
5.1 |
7.5 |
com.fasterxml.jackson.core:jackson-databind (Maven) |
Apache-2.0 |
| CVE-2022-42003 |
N/A |
7.5 |
com.fasterxml.jackson.core:jackson-databind (Maven) |
Apache-2.0 |
| CVE-2022-3510 |
N/A |
7.5 |
com.google.protobuf:protobuf-java (Maven) |
BSD-3-Clause |
| CVE-2020-25649 |
5 |
7.5 |
com.fasterxml.jackson.core:jackson-databind (Maven) |
Apache-2.0 |
| CVE-2022-42004 |
N/A |
7.5 |
com.fasterxml.jackson.core:jackson-databind (Maven) |
Apache-2.0 |
| CVE-2022-25647 |
5 |
7.5 |
com.google.code.gson:gson (Maven) |
Apache-2.0 |
| CVE-2022-25857 |
N/A |
7.5 |
org.yaml:snakeyaml (Maven) |
Apache-2.0 |
| CVE-2023-1370 |
N/A |
7.5 |
net.minidev:json-smart (Maven) |
Apache-2.0 |
| CVE-2019-12086 |
5 |
7.5 |
com.fasterxml.jackson.core:jackson-databind (Maven) |
Apache-2.0 |
| CVE-2018-12022 |
5.1 |
7.5 |
com.fasterxml.jackson.core:jackson-databind (Maven) |
Apache-2.0 |
| CVE-2021-37714 |
5 |
7.5 |
org.jsoup:jsoup (Maven) |
MIT |
| CVE-2017-18640 |
5 |
7.5 |
org.yaml:snakeyaml (Maven) |
Apache-2.0 |
| CVE-2018-1000632 |
5 |
7.5 |
dom4j:dom4j (Maven) |
Plexus |
| CVE-2018-1259 |
5 |
7.5 |
org.springframework.data:spring-data-commons (Maven) |
Apache-2.0 |
| CVE-2019-14439 |
5 |
7.5 |
com.fasterxml.jackson.core:jackson-databind (Maven) |
Apache-2.0 |
| CVE-2022-40149 |
N/A |
7.5 |
org.codehaus.jettison:jettison (Maven) |
Apache-2.0 |
| CVE-2023-1436 |
N/A |
7.5 |
org.codehaus.jettison:jettison (Maven) |
Apache-2.0 |
| CVE-2022-45685 |
N/A |
7.5 |
org.codehaus.jettison:jettison (Maven) |
Apache-2.0 |
| CVE-2015-6420 |
7.5 |
N/A |
commons-collections:commons-collections (Maven) |
Apache-2.0 |
| CVE-2020-36518 |
5 |
7.5 |
com.fasterxml.jackson.core:jackson-databind (Maven) |
Apache-2.0 |
| CVE-2021-37137 |
5 |
7.5 |
io.netty:netty-codec (Maven) |
Apache-2.0 |
| CVE-2021-21341 |
7.1 |
7.5 |
com.thoughtworks.xstream:xstream (Maven) |
BSD-3-Clause |
| CVE-2018-1000632 |
5 |
7.5 |
org.dom4j:dom4j (Maven) |
Unknown License |
| CVE-2022-40150 |
N/A |
7.5 |
org.codehaus.jettison:jettison (Maven) |
Apache-2.0 |
| CVE-2022-40151 |
N/A |
7.5 |
com.thoughtworks.xstream:xstream (Maven) |
BSD-3-Clause |
| CVE-2022-3509 |
N/A |
7.5 |
com.google.protobuf:protobuf-java (Maven) |
BSD-3-Clause |
| CVE-2021-43859 |
5 |
7.5 |
com.thoughtworks.xstream:xstream (Maven) |
BSD-3-Clause |
| CVE-2017-12626 |
5 |
7.5 |
org.apache.poi:poi (Maven) |
Apache-2.0 |
| CVE-2022-40152 |
N/A |
7.5 |
com.thoughtworks.xstream:xstream (Maven) |
BSD-3-Clause |
| CVE-2021-21348 |
7.8 |
7.5 |
com.thoughtworks.xstream:xstream (Maven) |
BSD-3-Clause |
| CVE-2021-21343 |
5 |
7.5 |
com.thoughtworks.xstream:xstream (Maven) |
BSD-3-Clause |
| CVE-2022-41966 |
N/A |
7.5 |
com.thoughtworks.xstream:xstream (Maven) |
BSD-3-Clause |
| CVE-2022-3171 |
N/A |
7.5 |
com.google.protobuf:protobuf-java (Maven) |
BSD-3-Clause |
| CVE-2025-22228 |
N/A |
7.4 |
org.springframework.security:spring-security-crypto (Maven) |
Apache-2.0 |
| CVE-2019-11272 |
7.5 |
7.3 |
org.springframework.security:spring-security-core (Maven) |
Apache-2.0 |
| CVE-2025-22235 |
N/A |
7.3 |
org.springframework.boot:spring-boot (Maven) |
Apache-2.0 |
| CVE-2023-2976 |
N/A |
7.1 |
com.google.guava:guava (Maven) |
Apache-2.0 |
| CVE-2017-7536 |
4.4 |
7 |
org.hibernate:hibernate-validator (Maven) |
Apache-2.0 |
| CVE-2020-26259 |
6.4 |
6.8 |
com.thoughtworks.xstream:xstream (Maven) |
BSD-3-Clause |
| CVE-2022-21363 |
6 |
6.6 |
mysql:mysql-connector-java (Maven) |
GPL-2.0-only, GPL-2.0-only WITH Universal-FOSS-exception-1.0 |
| CVE-2021-44832 |
8.5 |
6.6 |
org.apache.logging.log4j:log4j-core (Maven) |
Apache-2.0 |
| CVE-2021-42550 |
8.5 |
6.6 |
ch.qos.logback:logback-core (Maven) |
EPL-1.0, LGPL-2.0-or-later, LGPL-2.1-only |
| CVE-2018-1257 |
4 |
6.5 |
org.springframework:spring-core (Maven) |
Apache-2.0, BSD-3-Clause |
| CVE-2023-20861 |
N/A |
6.5 |
org.springframework:spring-core (Maven) |
Apache-2.0, BSD-3-Clause |
| CVE-2023-20863 |
N/A |
6.5 |
org.springframework:spring-expression (Maven) |
Apache-2.0, BSD-3-Clause |
| CVE-2023-20863 |
N/A |
6.5 |
org.springframework:spring-core (Maven) |
Apache-2.0, BSD-3-Clause |
| CVE-2023-20861 |
N/A |
6.5 |
org.springframework:spring-expression (Maven) |
Apache-2.0, BSD-3-Clause |
| CVE-2022-22971 |
4 |
6.5 |
org.springframework:spring-core (Maven) |
Apache-2.0, BSD-3-Clause |
| CVE-2020-5421 |
3.6 |
6.5 |
org.springframework:spring-web (Maven) |
Apache-2.0, BSD-3-Clause |
| CVE-2025-46392 |
N/A |
6.5 |
commons-configuration:commons-configuration (Maven) |
Apache-2.0 |
| CVE-2023-34055 |
N/A |
6.5 |
org.springframework.boot:spring-boot-actuator (Maven) |
Apache-2.0 |
| CVE-2022-38752 |
N/A |
6.5 |
org.yaml:snakeyaml (Maven) |
Apache-2.0 |
| CVE-2022-22950 |
4 |
6.5 |
org.springframework:spring-expression (Maven) |
Apache-2.0, BSD-3-Clause |
| CVE-2022-38751 |
N/A |
6.5 |
org.yaml:snakeyaml (Maven) |
Apache-2.0 |
| CVE-2022-38749 |
N/A |
6.5 |
org.yaml:snakeyaml (Maven) |
Apache-2.0 |
| CVE-2020-5408 |
4 |
6.5 |
org.springframework.security:spring-security-core (Maven) |
Apache-2.0 |
| CVE-2023-34462 |
N/A |
6.5 |
io.netty:netty-handler (Maven) |
Apache-2.0 |
| CVE-2022-41854 |
N/A |
6.5 |
org.yaml:snakeyaml (Maven) |
Apache-2.0 |
| CVE-2021-43797 |
4.3 |
6.5 |
io.netty:netty-codec-http (Maven) |
Apache-2.0 |
| CVE-2019-2692 |
3.5 |
6.3 |
mysql:mysql-connector-java (Maven) |
GPL-2.0-only, GPL-2.0-only WITH Universal-FOSS-exception-1.0 |
| CVE-2024-23672 |
N/A |
6.3 |
org.apache.tomcat.embed:tomcat-embed-websocket (Maven) |
Apache-2.0 |
| CVE-2021-39140 |
6.3 |
6.3 |
com.thoughtworks.xstream:xstream (Maven) |
BSD-3-Clause |
| CVE-2023-41080 |
N/A |
6.1 |
org.apache.tomcat.embed:tomcat-embed-websocket (Maven) |
Apache-2.0 |
| CVE-2022-36033 |
N/A |
6.1 |
org.jsoup:jsoup (Maven) |
MIT |
| CVE-2023-41080 |
N/A |
6.1 |
org.apache.tomcat.embed:tomcat-embed-core (Maven) |
Apache-2.0 |
| CVE-2023-3782 |
N/A |
5.9 |
com.squareup.okhttp:okhttp (Maven) |
Apache-2.0 |
| CVE-2018-11040 |
4.3 |
5.9 |
org.springframework:spring-web (Maven) |
Apache-2.0, BSD-3-Clause |
| CVE-2018-11040 |
4.3 |
5.9 |
org.springframework:spring-core (Maven) |
Apache-2.0, BSD-3-Clause |
| CVE-2021-45105 |
4.3 |
5.9 |
org.apache.logging.log4j:log4j-core (Maven) |
Apache-2.0 |
| CVE-2019-12814 |
4.3 |
5.9 |
com.fasterxml.jackson.core:jackson-databind (Maven) |
Apache-2.0 |
| CVE-2018-1271 |
4.3 |
5.9 |
org.springframework:spring-core (Maven) |
Apache-2.0, BSD-3-Clause |
| CVE-2019-12384 |
4.3 |
5.9 |
com.fasterxml.jackson.core:jackson-databind (Maven) |
Apache-2.0 |
| CVE-2018-1196 |
4.3 |
5.9 |
org.springframework.boot:spring-boot (Maven) |
Apache-2.0 |
| CVE-2018-10237 |
4.3 |
5.9 |
com.google.guava:guava (Maven) |
Apache-2.0 |
| CVE-2021-2471 |
7.9 |
5.9 |
mysql:mysql-connector-java (Maven) |
GPL-2.0-only, GPL-2.0-only WITH Universal-FOSS-exception-1.0 |
| CVE-2023-42794 |
N/A |
5.9 |
org.apache.tomcat.embed:tomcat-embed-core (Maven) |
Apache-2.0 |
| CVE-2024-30171 |
N/A |
5.9 |
org.bouncycastle:bcprov-jdk15on (Maven) |
MIT |
| CVE-2020-15522 |
4.3 |
5.9 |
org.bouncycastle:bcprov-jdk15on (Maven) |
MIT |
| CVE-2012-5783 |
5.8 |
N/A |
commons-httpclient:commons-httpclient (Maven) |
Apache-2.0 |
| CVE-2023-33202 |
N/A |
5.5 |
org.bouncycastle:bcprov-jdk15on (Maven) |
MIT |
| CVE-2020-15250 |
1.9 |
5.5 |
junit:junit (Maven) |
EPL-1.0 |
| CVE-2017-5644 |
7.1 |
5.5 |
org.apache.poi:poi-ooxml (Maven) |
Apache-2.0 |
| CVE-2024-47535 |
N/A |
5.5 |
io.netty:netty-common (Maven) |
Apache-2.0 |
| CVE-2025-25193 |
N/A |
5.5 |
io.netty:netty-common (Maven) |
Apache-2.0 |
| CVE-2016-5000 |
4.3 |
5.5 |
org.apache.poi:poi (Maven) |
Apache-2.0 |
| CVE-2017-5644 |
7.1 |
5.5 |
org.apache.poi:poi (Maven) |
Apache-2.0 |
| CVE-2019-12415 |
2.1 |
5.5 |
org.apache.poi:poi-ooxml (Maven) |
Apache-2.0 |
| CVE-2022-38750 |
N/A |
5.5 |
org.yaml:snakeyaml (Maven) |
Apache-2.0 |
| CVE-2020-17521 |
2.1 |
5.5 |
org.codehaus.groovy:groovy (Maven) |
Apache-2.0 |
| CVE-2023-0833 |
N/A |
5.5 |
com.squareup.okhttp:okhttp (Maven) |
Apache-2.0 |
| CVE-2022-41946 |
N/A |
5.5 |
org.postgresql:postgresql (Maven) |
BSD-2-Clause |
| CVE-2021-22569 |
4.3 |
5.5 |
com.google.protobuf:protobuf-java (Maven) |
BSD-3-Clause |
| CVE-2019-12415 |
2.1 |
5.5 |
org.apache.poi:poi (Maven) |
Apache-2.0 |
| CVE-2023-33201 |
N/A |
5.3 |
org.bouncycastle:bcprov-jdk15on (Maven) |
MIT |
| CVE-2025-31672 |
N/A |
5.3 |
org.apache.poi:poi-ooxml (Maven) |
Apache-2.0 |
| CVE-2023-42795 |
N/A |
5.3 |
org.apache.tomcat.embed:tomcat-embed-core (Maven) |
Apache-2.0 |
| CVE-2023-45648 |
N/A |
5.3 |
org.apache.tomcat.embed:tomcat-embed-core (Maven) |
Apache-2.0 |
| CVE-2024-38820 |
N/A |
5.3 |
org.springframework:spring-context (Maven) |
Apache-2.0, BSD-3-Clause |
| CVE-2024-38809 |
N/A |
5.3 |
org.springframework:spring-web (Maven) |
Apache-2.0, BSD-3-Clause |
| CVE-2018-1199 |
5 |
5.3 |
org.springframework:spring-core (Maven) |
Apache-2.0, BSD-3-Clause |
| CVE-2023-51074 |
N/A |
5.3 |
com.jayway.jsonpath:json-path (Maven) |
Apache-2.0 |
| CVE-2018-1199 |
5 |
5.3 |
org.springframework.security:spring-security-core (Maven) |
Apache-2.0 |
| CVE-2024-38820 |
N/A |
5.3 |
org.springframework:spring-web (Maven) |
Apache-2.0, BSD-3-Clause |
| CVE-2019-3795 |
5 |
5.3 |
org.springframework.security:spring-security-core (Maven) |
Apache-2.0 |
| CVE-2020-26939 |
5 |
5.3 |
org.bouncycastle:bcprov-jdk15on (Maven) |
MIT |
| CVE-2024-29025 |
N/A |
5.3 |
io.netty:netty-codec-http (Maven) |
Apache-2.0 |
| CVE-2020-13956 |
5 |
5.3 |
org.apache.httpcomponents:httpclient (Maven) |
Apache-2.0 |
| CVE-2016-3093 |
5 |
5.3 |
ognl:ognl (Maven) |
Apache-2.0 |
| CVE-2014-9527 |
5 |
N/A |
org.apache.poi:poi (Maven) |
Apache-2.0 |
| CVE-2020-2934 |
5.1 |
5 |
mysql:mysql-connector-java (Maven) |
GPL-2.0-only, GPL-2.0-only WITH Universal-FOSS-exception-1.0 |
| CVE-2021-29425 |
5.8 |
4.8 |
commons-io:commons-io (Maven) |
Apache-2.0 |
| CVE-2024-38827 |
N/A |
4.8 |
org.springframework.security:spring-security-core (Maven) |
Apache-2.0 |
| CVE-2020-2875 |
4 |
4.7 |
mysql:mysql-connector-java (Maven) |
GPL-2.0-only, GPL-2.0-only WITH Universal-FOSS-exception-1.0 |
| CVE-2014-3529 |
4.3 |
N/A |
org.apache.poi:poi-ooxml (Maven) |
Apache-2.0 |
| CVE-2014-3574 |
4.3 |
N/A |
org.apache.poi:poi-ooxml (Maven) |
Apache-2.0 |
| CVE-2014-3574 |
4.3 |
N/A |
org.apache.poi:poi (Maven) |
Apache-2.0 |
| CVE-2014-3529 |
4.3 |
N/A |
org.apache.poi:poi (Maven) |
Apache-2.0 |
| CVE-2024-38808 |
N/A |
4.3 |
org.springframework:spring-expression (Maven) |
Apache-2.0, BSD-3-Clause |
| CVE-2024-47554 |
N/A |
4.3 |
commons-io:commons-io (Maven) |
Apache-2.0 |
| CVE-2020-9488 |
4.3 |
3.7 |
org.apache.logging.log4j:log4j-core (Maven) |
Apache-2.0 |
| CVE-2020-8908 |
2.1 |
3.3 |
com.google.guava:guava (Maven) |
Apache-2.0 |
| debricked-233244 |
N/A |
N/A |
com.fasterxml.jackson.core:jackson-databind (Maven) |
Apache-2.0 |
| CVE-2024-12798 |
N/A |
N/A |
ch.qos.logback:logback-core (Maven) |
EPL-1.0, LGPL-2.0-or-later, LGPL-2.1-only |
| CVE-2024-12801 |
N/A |
N/A |
ch.qos.logback:logback-core (Maven) |
EPL-1.0, LGPL-2.0-or-later, LGPL-2.1-only |
| debricked-182877 |
N/A |
N/A |
org.postgresql:postgresql (Maven) |
BSD-2-Clause |
| CVE-2024-7254 |
N/A |
N/A |
com.google.protobuf:protobuf-java (Maven) |
BSD-3-Clause |
| debricked-230251 |
N/A |
N/A |
org.apache.tomcat.embed:tomcat-embed-core (Maven) |
Apache-2.0 |
| debricked-233262 |
N/A |
N/A |
com.thoughtworks.xstream:xstream (Maven) |
BSD-3-Clause |
| debricked-233289 |
N/A |
N/A |
org.postgresql:postgresql (Maven) |
BSD-2-Clause |
| [debricked-233241... |
|
|
|
|