Maven vulnerabilities

Browse known CVEs and advisories by package and ecosystem. Severity tells you the worst case. What determines real risk is whether the vulnerable code actually runs in your applications.

Get a demo

Browse by ecosystem

npmPyPIMavenGoRubyGemsCargoNuGetComposerpubSwiftGitHub Actions
CVE-IDSeverityPackage summary
CVE-2020-5403Highio.projectreactor.netty:reactor-netty-http: Improper Handling of Exceptional Conditions and Improper Input Validation in Reactor NettyCVE-2020-5404Mediumio.projectreactor.netty:reactor-netty-http: Insufficiently Protected Credentials in Reactor NettyCVE-2020-26882Highcom.typesafe.play:play: Data Amplification in Play FrameworkCVE-2020-27196Highcom.typesafe.play:play: Out-of-bounds Write in Play FrameworkCVE-2020-26883Highcom.typesafe.play:play: Uncontrolled Recursion in Play FrameworkCVE-2020-27217Highorg.eclipse.hono:hono-core: Improper Validation of Specified Quantity in Input in Eclipse HonoCVE-2020-13941Mediumorg.apache.solr:solr-parent: Improper Input Validation in Apache SolrCVE-2020-13957Criticalorg.apache.solr:solr-parent: Incorrect Authorization in Apache SolrCVE-2020-13942Criticalorg.apache.unomi:unomi: Injection and Improper Input Validation in Apache UnomiCVE-2020-13692Highorg.postgresql:postgresql: Improper Restriction of XML External Entity ReferenceCVE-2022-0538Mediumorg.jenkins-ci.main:jenkins-core: DoS vulnerability in bundled XStream library in Jenkins CoreCVE-2022-23622Highorg.xwiki.platform:xwiki-platform-web-templates: Cross site scripting in registration template in xwiki-platformCVE-2020-11975Highorg.apache.unomi:unomi: Improper Input Validation in Apache UnomiCVE-2018-11802Mediumorg.apache.solr:solr-parent: Incorrect Authorization in Apache SolrCVE-2017-15686Mediumorg.craftercms:crafter-studio: Cross-site scripting in Crafter CMS Crafter StudioCVE-2017-15684Highorg.craftercms:crafter-studio: Path Traversal in Crafter CMS Crafter StudioCVE-2017-15685Highorg.craftercms:crafter-studio: XML Injection in Crafter CMS Crafter Studio 3.0.1CVE-2017-15681Criticalorg.craftercms:crafter-studio: Path Traversal in Crafter CMS Crafter StudioCVE-2020-25802Highorg.craftercms:crafter-studio: Improper Control of Dynamically-Managed Code Resources in Crafter CMS Crafter StudioCVE-2020-25803Highorg.craftercms:crafter-studio: Improper Control of Dynamically-Managed Code Resources in Crafter CMS Crafter StudioCVE-2020-7780Mediumcom.softwaremill.akka-http-session:core_2.13: Cross-Site Request ForgeryCVE-2020-13943Mediumorg.apache.tomcat:tomcat-coyote: Exposure of Sensitive Information to an Unauthorized Actor in Apache TomcatCVE-2020-11996Highorg.apache.tomcat:tomcat: Uncontrolled Resource Consumption in Apache TomcatCVE-2020-17527Highorg.apache.tomcat:tomcat-coyote: Exposure of Sensitive Information to an Unauthorized Actor in Apache TomcatCVE-2020-25638Highorg.hibernate:hibernate-core: SQL injection in hibernate-core

Stop the waste.
Protect your environment with Kodem.