
maven
554,455 packages · repo1.maven.org
Security Advisories for https://github.com/xwiki/xwiki-platform in maven Clear Filters
Critical
28 days ago
XWiki configuration files can be accessed through jsx and sx endpoints
maven
org.xwiki.platform:xwiki-platform-skin-skinx
Critical
28 days ago
XWiki configuration files can be accessed through the webjars API
maven
org.xwiki.platform:xwiki-platform-webjars-api
Moderate
about 1 month ago
XWiki PDF export jobs store sensitive cookies unencrypted in job statuses
maven
org.xwiki.platform:xwiki-platform-export-pdf-api
High
about 2 months ago
XWiki exposes passwords and emails stored in fields not named password/email in xml.vm
maven
org.xwiki.platform:xwiki-platform-legacy-oldcore, org.xwiki.platform:xwiki-platform-oldcore
High
about 2 months ago
XWiki leaks password hashes and other accessible password properties
maven
org.xwiki.platform:xwiki-platform-legacy-oldcore, org.xwiki.platform:xwiki-platform-oldcore
Moderate
about 2 months ago
XWiki allows Reflected XSS in two templates
maven
org.xwiki.platform:xwiki-platform-web-templates
High
2 months ago
XWiki Platform vulnerable to SQL injection through XWiki#searchDocuments API
maven
org.xwiki.platform:xwiki-platform-oldcore
Critical
2 months ago
XWiki Platform vulnerable to SQL injection through getdeleteddocuments.vm template sort parameter
maven
org.xwiki.platform:xwiki-platform-distribution-war
High
4 months ago
XWiki does not require right warnings for XClass definitions
maven
org.xwiki.platform:xwiki-platform-security-requiredrights-default
High
4 months ago
XWiki allows remote code execution through preview of XClass changes in AWM editor
maven
org.xwiki.platform:xwiki-platform-oldcore
Moderate
4 months ago
XWiki does not require right warnings for notification displayer objects
maven
org.xwiki.platform:xwiki-platform-notifications-notifiers-default
High
4 months ago
XWiki makes title of inaccessible pages available through the class property values REST API
maven
org.xwiki.platform:xwiki-platform-rest-server
Moderate
4 months ago
XWiki provides no warning when granting XWiki.Notifications.Code.NotificationEmailRendererClass admin right
maven
org.xwiki.platform:xwiki-platform-notifications-notifiers-default
High
4 months ago
XWiki allows remote code execution through default value of wiki macro wiki-type parameters
maven
org.xwiki.platform:xwiki-platform-rendering-wikimacro-store
High
4 months ago
XWiki's required right warnings for macros are incomplete
maven
org.xwiki.platform:xwiki-platform-rendering-macro-context, org.xwiki.platform:xwiki-platform-security-requiredrights-default, org.xwiki.platform:xwiki-platform-rendering-macro-cache, org.xwiki.platform:xwiki-platform-rendering-xwiki
High
4 months ago
XWiki allows privilege escalation through link refactoring
maven
org.xwiki.platform:xwiki-platform-refactoring-default
Critical
4 months ago
XWiki allows SQL injection in query endpoint of REST API with Oracle
maven
org.xwiki.platform:xwiki-platform-oldcore
Moderate
4 months ago
XWiki Platform Security Authorization Bridge allows users with just edit right can enforce required rights with programming right
maven
org.xwiki.platform:xwiki-platform-security-authorization-bridge
High
5 months ago
Any user with view access to the XWiki space can change the authenticator
maven
org.xwiki.platform:xwiki-platform-security-authentication-ui
Moderate
5 months ago
XWiki missing authorization when accessing the wiki level attachments list and metadata via REST API
maven
org.xwiki.platform:xwiki-platform-rest-server
Critical
5 months ago
org.xwiki.platform:xwiki-platform-security-requiredrights-default required rights analysis doesn't consider TextAreas with default content type
maven
org.xwiki.platform:xwiki-platform-security-requiredrights-default
Critical
5 months ago
org.xwiki.platform:xwiki-platform-component-wiki provides no warning when granting XWiki.ComponentClass programming right
maven
org.xwiki.platform:xwiki-platform-component-wiki
Low
5 months ago
The lesscss script service allows cache clearing without programming right
maven
org.xwiki.platform:xwiki-platform-lesscss-script
Low
5 months ago
Solr script service doesn't take dropped programming right into account
maven
org.xwiki.platform:xwiki-platform-search-solr-api
Moderate
5 months ago
org.xwiki.platform:xwiki-platform-wysiwyg-api Open Redirect vulnerability
maven
org.xwiki.platform:xwiki-platform-wysiwyg-api
Critical
5 months ago
org.xwiki.platform:xwiki-platform-rest-server allows SQL injection in query endpoint of REST API
maven
org.xwiki.platform:xwiki-platform-rest-server
High
5 months ago
org.xwiki.platform:xwiki-platform-oldcore allows SQL injection in short form select requests through the script query API
maven
org.xwiki.platform:xwiki-platform-oldcore
Moderate
6 months ago
Unregistered users can see "public" messages from a closed wiki via notifications from a different wiki
maven
org.xwiki.platform:xwiki-platform-messagestream
High
7 months ago
The WikiManager REST API allows any user to create wikis
maven
org.xwiki.platform:xwiki-platform-wiki-rest-default
High
7 months ago
XWiki allows unregistered users to access private pages information through REST endpoint
maven
org.xwiki.platform:xwiki-platform-rest-server
High
7 months ago
XWiki uses the wrong wiki reference in AuthorizationManager
maven
org.xwiki.platform:xwiki-platform-security-authorization-api
Critical
7 months ago
XWiki Platform allows remote code execution as guest via SolrSearchMacros request
maven
org.xwiki.platform:xwiki-platform-search-solr-ui
Critical
9 months ago
XWiki Realtime WYSIWYG Editor extension allows privilege escalation (PR) through realtime WYSIWYG editing
maven
org.xwiki.platform:xwiki-platform-realtime-wysiwyg-ui
Critical
10 months ago
XWiki allows remote code execution through the extension sheet
maven
org.xwiki.platform:xwiki-platform-repository-server-ui
High
10 months ago
XWiki Platform has an SQL injection in getdocuments.vm with sort parameter
maven
org.xwiki.platform:xwiki-platform-distribution-war
Moderate
10 months ago
XWiki's scheduler in subwiki allows scheduling operations for any main wiki user
maven
org.xwiki.platform:xwiki-platform-scheduler-ui
Critical
10 months ago
XWiki allows remote code execution from account through macro descriptions and XWiki.XWikiSyntaxMacrosList
maven
org.xwiki.platform:xwiki-platform-help-ui
Critical
10 months ago
XWiki allows RCE from script right in configurable sections
maven
org.xwiki.platform:xwiki-platform-administration-ui
Moderate
about 1 year ago
org.xwiki.platform:xwiki-platform-notifications-ui leaks data of notification filters of users
maven
org.xwiki.platform:xwiki-platform-notifications-ui
High
about 1 year ago
org.xwiki.platform:xwiki-platform-notifications-ui is missing checks for notification filter preferences editions
maven
org.xwiki.platform:xwiki-platform-notifications-ui
Moderate
about 1 year ago
XWiki Platform document history including authors of any page exposed to unauthorized actors
maven
org.xwiki.platform:xwiki-platform-rest-server
Critical
about 1 year ago
In XWiki Platform, payloads stored in content is executed when a user with script/programming right edit them
maven
org.xwiki.platform:xwiki-platform-web-templates
Critical
about 1 year ago
XWiki Platform allows XSS through XClass name in string properties
maven
org.xwiki.platform:xwiki-platform-oldcore
Critical
about 1 year ago
XWiki Platform vulnerable to Cross-Site Scripting (XSS) through conflict resolution
maven
org.xwiki.platform:xwiki-platform-web-templates
Critical
about 1 year ago
XWiki Platform vulnerable to remote code execution from account via SearchSuggestConfigSheet
maven
org.xwiki.platform:xwiki-platform-search-ui
High
about 1 year ago
XWiki Platform vulnerable to Cross-site Scripting through attachment filename in uploader
maven
org.xwiki.platform:xwiki-platform-web-war
Moderate
about 1 year ago
XWiki Platform vulnerable to document deletion and overwrite from edit
maven
org.xwiki.platform:xwiki-platform-oldcore
Critical
over 1 year ago
XWiki programming rights may be inherited by inclusion
maven
org.xwiki.platform:xwiki-platform-rendering-macro-include
Critical
over 1 year ago
XWiki Platform allows remote code execution from user account
maven
org.xwiki.platform:xwiki-platform-oldcore
Critical
over 1 year ago
XWiki Platform remote code execution from account through UIExtension parameters
maven
org.xwiki.platform:xwiki-platform-uiextension-api
Critical
over 1 year ago
XWiki Platform CSRF remote code execution through the realtime HTML Converter API
maven
org.xwiki.platform:xwiki-platform-realtime-ui
Critical
over 1 year ago
XWiki Platform remote code execution from account via custom skins support
maven
org.xwiki.platform:xwiki-platform-oldcore
Critical
over 1 year ago
XWiki Platform CSRF remote code execution through scheduler job's document reference
maven
org.xwiki.platform:xwiki-platform-scheduler-ui
Moderate
over 1 year ago
XWiki Platform CSRF in the job scheduler
maven
org.xwiki.platform:xwiki-platform-scheduler-ui
Critical
over 1 year ago
XWiki Platform: Remote code execution through space title and Solr space facet
maven
org.xwiki.platform:xwiki-platform-search-solr-ui
Critical
over 1 year ago
XWiki Platform: Remote code execution from edit in multilingual wikis via translations
maven
org.xwiki.platform:xwiki-platform-localization-source-wiki
Critical
over 1 year ago
XWiki Platform: Remote code execution as guest via DatabaseSearch
maven
org.xwiki.platform:xwiki-platform-search-ui
Critical
over 1 year ago
XWiki Platform: Privilege escalation (PR) from user registration through PDFClass
maven
org.xwiki.platform:xwiki-platform-oldcore
Critical
over 1 year ago
XWiki Platform: Remote code execution from account via SearchSuggestSourceSheet
maven
org.xwiki.platform:xwiki-platform-search-ui
Moderate
over 1 year ago
XWiki Platform: Password hash might be leaked by diff once the xobject holding them is deleted
maven
org.xwiki.platform:xwiki-platform-oldcore
High
over 1 year ago
XWiki vulnerable to Denial of Service attack through attachments
maven
org.xwiki.platform:xwiki-platform-distribution-war
Critical
over 1 year ago
XWiki Remote Code Execution Vulnerability via User Registration
maven
org.xwiki.platform:xwiki-platform-administration-ui
High
over 1 year ago
XWiki has no right protection on rollback action
maven
org.xwiki.platform:xwiki-platform, org.xwiki.platform:xwiki-platform-oldcore
High
almost 2 years ago
Velocity execution without script right through tree macro
maven
org.xwiki.platform:xwiki-platform-index-tree-macro
Critical
almost 2 years ago
Remote code execution/programming rights with configuration section from any user account
maven
org.xwiki.platform:xwiki-platform-administration-ui
Critical
almost 2 years ago
XSS/CSRF Remote Code Execution in XWiki.ConfigurableClass
maven
org.xwiki.platform:xwiki-platform-administration-ui
Critical
almost 2 years ago
Remote code execution from account through SearchAdmin
maven
org.xwiki.platform:xwiki-platform-search-ui
Moderate
almost 2 years ago
Solr search discloses email addresses of users
maven
org.xwiki.platform:xwiki-platform-search-solr-api
High
almost 2 years ago
Solr search discloses password hashes of all users
maven
org.xwiki.platform:xwiki-platform-search-solr-api
High
almost 2 years ago
Whole content of all documents of all wikis exposed to anybody with view right on Solr suggest service
maven
org.xwiki.platform:xwiki-platform-search-solr-query
Critical
almost 2 years ago
Cookies are sent to external images in rendered diff (and server side request forgery)
maven
org.xwiki.platform:xwiki-platform-diff-xml
Critical
almost 2 years ago
XWiki Platform vulnerable to reflected cross-site scripting through revision parameter in content menu
maven
org.xwiki.platform:xwiki-platform-flamingo-skin-resources
Critical
almost 2 years ago
XWiki Platform vulnerable to remote code execution through the section parameter in Administration as guest
maven
org.xwiki.platform:xwiki-platform-administration, org.xwiki.platform:xwiki-platform-administration-ui
Critical
almost 2 years ago
XWiki Platform privilege escalation from script right to programming right through title displayer
maven
org.xwiki.platform:xwiki-platform-display-api
High
almost 2 years ago
XWiki Platform vulnerable to privilege escalation and remote code execution via the edit action
maven
org.xwiki.platform:xwiki-platform-oldcore
Critical
almost 2 years ago
XWiki Platform vulnerable to remote code execution via the edit action because it lacks CSRF token
maven
org.xwiki.platform:xwiki-platform-oldcore
Critical
almost 2 years ago
XWiki Platform vulnerable to XSS with edit right in the create document form for existing pages
maven
org.xwiki.platform:xwiki-platform-web, org.xwiki.platform:xwiki-platform-web-templates
Critical
almost 2 years ago
XWiki Platform web templates vulnerable to reflected XSS in the create document form if name validation is enabled
maven
org.xwiki.platform:xwiki-platform-web-templates
Critical
almost 2 years ago
XWiki users can be tricked to execute scripts as the create page action doesn't display the page's title
maven
org.xwiki.platform:xwiki-platform-web, org.xwiki.platform:xwiki-platform-web-templates
Critical
almost 2 years ago
XWiki Platform XSS vulnerability from account in the create page form via template provider
maven
org.xwiki.platform:xwiki-platform-web, org.xwiki.platform:xwiki-web-standard, org.xwiki.platform:xwiki-platform-web-templates
Critical
almost 2 years ago
org.xwiki.platform:xwiki-platform-office-importer vulnerable to arbitrary server side file writing from account through office converter
maven
org.xwiki.platform:xwiki-platform-office-importer
Moderate
almost 2 years ago
org.xwiki.platform:xwiki-platform-oldcore may leak data through deleted and re-created documents
maven
org.xwiki.platform:xwiki-platform-oldcore
High
almost 2 years ago
org.xwiki.platform:xwiki-platform-attachment-api vulnerable to Missing Authorization on Attachment Move
maven
org.xwiki.platform:xwiki-platform-attachment-api
High
almost 2 years ago
Privilege escalation (PR)/remote code execution from account through Menu.UIExtensionSheet
maven
org.xwiki.platform:xwiki-platform-menu-ui, org.xwiki.platform:xwiki-platform-menu
Moderate
about 2 years ago
Velocity execution without script right through VelocityCode and VelocityWiki property
maven
org.xwiki.platform:xwiki-platform-oldcore
Critical
about 2 years ago
XWiki Platform's Groovy jobs check the wrong author, allowing remote code execution
maven
org.xwiki.platform:xwiki-platform-scheduler-api, com.xpn.xwiki.platform.plugins:xwiki-plugin-scheduler
High
about 2 years ago
XWiki Platform vulnerable to CSRF privilege escalation/RCE via the create action
maven
org.xwiki.platform:xwiki-platform-oldcore
Critical
about 2 years ago
XWiki Platform privilege escalation (PR) from account through AWM content fields
maven
org.xwiki.platform:xwiki-platform-appwithinminutes-ui
Moderate
about 2 years ago
XWiki Platform Stored Cross-site Scripting in the user profile via the timezone displayer
maven
org.xwiki.platform:xwiki-platform-web-templates
Critical
about 2 years ago
XWiki Platform privilege escalation (PR)/RCE from account through Invitation subject/message
maven
org.xwiki.platform:xwiki-platform-invitation-ui
Moderate
about 2 years ago
Obfuscated email addresses should not be sorted
maven
org.xwiki.platform:xwiki-platform-livetable-ui
Critical
about 2 years ago
org.xwiki.platform:xwiki-platform-skin-ui Eval Injection vulnerability
maven
org.xwiki.platform:xwiki-platform-skin-ui
Critical
about 2 years ago
XWiki Platform vulnerable to cross-site request forgery (CSRF) via the REST API
maven
org.xwiki.platform:xwiki-platform-rest-server, com.xpn.xwiki.platform:xwiki-rest, com.xpn.xwiki.platform:xwiki-core-rest-server
Critical
over 2 years ago
Upgrading doesn't prevent exploiting vulnerable XWiki documents
maven
org.xwiki.platform:xwiki-platform-oldcore
Critical
over 2 years ago
XWiki Platform vulnerable to Code injection through NotificationRSSService
maven
org.xwiki.platform:xwiki-platform-notifications-ui
Critical
over 2 years ago
XWiki Platform vulnerable to Code Injection in icon themes
maven
org.xwiki.platform:xwiki-platform-icon-ui, org.xwiki.platform:xwiki-platform-icon-default, org.xwiki.platform:xwiki-platform-icon-script
Critical
over 2 years ago
XWiki Platform vulnerable to persistent Cross-site Scripting through CKEditor Configuration pages
maven
org.xwiki.platform:xwiki-platform-ckeditor-ui, org.xwiki.contrib:application-ckeditor-ui
Critical
over 2 years ago
XWiki Platform vulnerable to reflected cross-site scripting via xredirect parameter in DeleteApplication page
maven
org.xwiki.platform:xwiki-platform-appwithinminutes-ui
Critical
over 2 years ago
XWiki Platform vulnerable to reflected cross-site scripting via back and xcontinue parameters in resubmit template
maven
org.xwiki.platform:xwiki-platform-web-templates
Critical
over 2 years ago
XWiki Platform vulnerable to reflected cross-site scripting via xredirect parameter in deletespace template
maven
org.xwiki.platform:xwiki-platform-web-templates
Filter by Severity
Filter by Package
org.jenkins-ci.main:jenkins-core
241
com.liferay.portal:release.portal.bom
139
org.apache.tomcat:tomcat
136
com.liferay.portal:release.dxp.bom
123
com.fasterxml.jackson.core:jackson-databind
69
org.apache.struts:struts2-core
55
org.keycloak:keycloak-core
50
org.xwiki.platform:xwiki-platform-oldcore
43
org.keycloak:keycloak-services
42
org.elasticsearch:elasticsearch
41
com.thoughtworks.xstream:xstream
37
com.jfinal:jfinal
36
org.apache.tomcat.embed:tomcat-embed-core
36
net.mingsoft:ms-mcms
36
io.undertow:undertow-core
35
org.jenkins-ci.plugins:script-security
33
org.apache.solr:solr-core
28
org.springframework.security:spring-security-core
27
org.opencms:opencms-core
27
org.eclipse.jetty:jetty-server
25
org.keycloak:keycloak-parent
24
org.apache.openmeetings:openmeetings-parent
22
org.apache.tomcat:tomcat-catalina
21
org.apache.nifi:nifi
21
org.cloudfoundry.identity:cloudfoundry-identity-server
20
org.xwiki.platform:xwiki-platform-web-templates
20
org.bouncycastle:bcprov-jdk14
20
com.vaadin:vaadin-bom
18
org.springframework:spring-core
18
org.apache.jspwiki:jspwiki-main
18
org.apache.geode:geode-core
17
org.apache.inlong:manager-pojo
17
org.apache.dubbo:dubbo
16
org.apache.activemq:activemq-client
16
org.apache.ranger:ranger
16
org.apache.struts.xwork:xwork-core
15
org.bouncycastle:bcprov-jdk15
15
org.apache.dolphinscheduler:dolphinscheduler
14
org.apache.tomcat:tomcat-coyote
14
org.xwiki.platform:xwiki-platform-web
14
org.springframework:spring-webmvc
13
org.apache.cxf:cxf-core
13
com.liferay.portal:com.liferay.portal.impl
13
org.apache.hadoop:hadoop-main
13
ai.h2o:h2o-core
12
com.vaadin:flow-server
12
org.graylog2:graylog2-server
12
org.jenkins-ci.plugins:git
12
org.springframework:spring-web
12
org.jeecgframework.boot:jeecg-boot-parent
12
org.apache.tika:tika-core
12
org.jenkins-ci.plugins.workflow:workflow-cps
12
org.apache.hadoop:hadoop-common
12
org.apache.james:james-server
11
org.jenkins-ci.plugins:email-ext
11
org.igniterealtime.openfire:parent
11
org.xwiki.platform:xwiki-platform-administration-ui
11
com.xuxueli:xxl-job
11
org.mortbay.jetty:jetty
11
org.apache.archiva:archiva
11
org.apache.commons:commons-compress
11
org.apache.camel:camel-core
11
h2o
11
org.apache.jspwiki:jspwiki-war
11
org.apache.kylin:kylin
10
org.geoserver.web:gs-web-app
10
org.craftercms:crafter-studio
10
org.apache.inlong:manager-service
10
org.jenkins-ci.plugins.workflow:workflow-cps-global-lib
10
org.opensearch.plugin:opensearch-security
10
com.sonyericsson.jenkins.plugins.bfa:build-failure-analyzer
10
org.apache.hive:hive-exec
9
org.jenkins-ci.plugins:config-file-provider
9
org.apache.tapestry:tapestry-core
9
org.apache.cxf:cxf
9
org.opennms:opennms
9
org.apache.hive:hive
9
org.postgresql:postgresql
9
org.apache.cassandra:cassandra-all
9
org.jenkins-ci.plugins:active-directory
9
org.opencrx:opencrx-core-models
9
io.jenkins:configuration-as-code
9
io.netty:netty
9
org.jenkins-ci.plugins:electricflow
9
org.apache.xmlgraphics:batik
9
org.apache.shiro:shiro-core
9
org.apache.linkis:linkis
9
org.bouncycastle:bcprov-jdk15on
9
cn.hutool:hutool-core
9
com.hazelcast:hazelcast
8
mysql:mysql-connector-java
8
com.ruoyi:ruoyi
8
org.apache.santuario:xmlsec
8
org.apache.streampark:streampark
8
org.apache.ozone:ozone-main
8
io.jenkins.blueocean:blueocean
8
org.jenkins-ci.plugins:subversion
8
org.jboss.netty:netty
8
org.apache.pdfbox:pdfbox
8
org.jenkins-ci.plugins:ec2
8
org.yaml:snakeyaml
8
org.apache.zeppelin:zeppelin
8
org.jeecgframework.boot:jeecg-boot-common
8
org.apache.ambari:ambari
8
org.apache.hive:hive-service
8
org.jenkins-ci.plugins:oic-auth
8
org.xwiki.platform:xwiki-platform-rest-server
8
org.jenkins-ci.plugins:openshift-deployer
7
io.atomix:atomix
7
org.jboss.resteasy:resteasy-client
7
io.netty:netty-handler
7
org.jenkins-ci.plugins:artifactory
7
org.apache.spark:spark-core_2.11
7
org.owasp.esapi:esapi
7
org.apache.karaf:apache-karaf
7
net.opentsdb:opentsdb
7
io.jenkins.plugins:miniorange-saml-sp
7
org.apache.activemq:activemq-parent
7
org.jruby:jruby-stdlib
7
org.apache.inlong:manager-web
7
org.apache.zookeeper:zookeeper
7
org.apache.poi:poi
7
org.silverpeas.core:silverpeas-core-web
7
org.jeecgframework.boot:jeecg-boot-base
7
org.jenkins-ci.plugins:rundeck
7
org.opencastproject:opencast-kernel
7
org.jenkins-ci.plugins:jobConfigHistory
7
org.apache.derby:derby
7
org.apache.wicket:wicket-core
7
org.owasp.antisamy:antisamy
7
io.netty:netty-codec-http
7
org.apache.atlas:atlas-common
7
org.bouncycastle:bc-fips
7
rubygems-update
7
org.bouncycastle:bcprov-jdk15to18
7
io.dataease:dataease-plugin-common
7
io.jenkins.plugins:warnings-ng
7
org.apache.druid:druid
7
io.jenkins.plugins:cavisson-ns-nd-integration
7
org.apache.ignite:ignite-core
6
org.infinispan:infinispan-core
6
org.apache.pulsar:pulsar-broker
6
org.webjars.npm:jquery-ui
6
org.geoserver:gs-wms
6
ch.qos.logback:logback-core
6
org.apache.struts:struts2-rest-plugin
6
org.apache.kafka:kafka
6
org.igniterealtime.openfire:xmppserver
6
jQuery.UI.Combined
6
org.keycloak:keycloak-quarkus-server
6
org.apache.axis:axis
6
org.jenkins-ci.plugins:ghprb
6
org.jenkins-ci.plugins:mercurial
6
org.apache.mesos:mesos
6
org.apache.spark:spark-core_2.10
6
org.apache.logging.log4j:log4j-core
6
org.jenkins-ci.plugins:gitlab-plugin
6
org.apache.httpcomponents:httpclient
6
com.xuxueli:xxl-job-core
6
org.apache.tika:tika
6
org.jenkins-ci.plugins:azure-vm-agents
6
com.xebialabs.deployit.ci:deployit-plugin
6
org.apache.syncope:syncope-core
6
org.jenkins-ci.plugins:htmlpublisher
6
com.liferay.portal:com.liferay.portal.kernel
6
cn.hutool:hutool-json
6
hudson.plugins:project-inheritance
6
de.tum.in.ase:artemis-java-test-sandbox
6
org.jenkins-ci.plugins:credentials-binding
6
org.jenkins-ci.plugins:pipeline-maven
6
tech.powerjob:powerjob
6
org.apache.storm:storm-core
6
org.bouncycastle:bcprov-jdk18on
6
org.wildfly:wildfly-parent
6
jquery-ui
6
org.jenkins-ci.plugins:gitlab-oauth
6
com.jflyfox:jflyfox_jfinal
6
org.csanchez.jenkins.plugins:kubernetes
6
org.xwiki.commons:xwiki-commons-xml
6
org.jenkins-ci.plugins:fortify-on-demand-uploader
6
org.silverpeas.core:silverpeas-core
6
org.jeecgframework.boot:jeecg-boot-base-core
6
org.jenkins-ci.plugins:repository-connector
6
org.jenkins-ci.plugins:ec2-deployment-dashboard
6
commons-fileupload:commons-fileupload
6
org.apache.zeppelin:zeppelin-server
6
com.vaadin:vaadin-server
6
com.nimbusds:nimbus-jose-jwt
6
org.apache.shenyu:shenyu-common
6
com.sonyericsson.hudson.plugins.gerrit:gerrit-trigger
6
org.jenkins-ci.plugins:sinatra-chef-builder
5
org.jenkins-ci.plugins:vmanager-plugin
5
io.projectreactor.netty:reactor-netty-http
5
com.mabl.integration.jenkins:mabl-integration
5
org.jenkins-ci.tools:git-parameter
5
org.jenkins-ci.plugins:credentials
5
org.glassfish.main.admingui:console-common
5
org.jenkins-ci.plugins:wso2id-oauth
5
org.jenkins-ci.plugins:mailer
5
org.jenkins-ci.plugins:fortify
5
Filter by Repository
https://github.com/xwiki/xwiki-platform
221
https://github.com/jenkinsci/jenkins
178
https://github.com/liferay/liferay-portal
139
https://github.com/apache/tomcat
114
https://github.com/keycloak/keycloak
85
https://github.com/FasterXML/jackson-databind
70
https://github.com/spring-projects/spring-framework
51
https://github.com/apache/struts
47
https://github.com/x-stream/xstream
37
https://github.com/apache/activemq
34
https://github.com/apache/inlong
31
https://github.com/CVEProject/cvelist
28
https://github.com/netty/netty
26
https://github.com/geoserver/geoserver
26
https://github.com/apache/nifi
26
https://github.com/bcgit/bc-java
24
https://github.com/apache/cxf
24
https://github.com/eclipse/jetty.project
23
https://github.com/jenkinsci/script-security-plugin
22
https://github.com/undertow-io/undertow
21
https://github.com/OpenNMS/opennms
20
https://github.com/jeecgboot/jeecg-boot
20
https://github.com/opencast/opencast
19
https://github.com/alkacon/opencms-core
19
https://github.com/cloudfoundry/uaa
19
https://github.com/vaadin/platform
18
https://github.com/apache/camel
18
https://github.com/quarkusio/quarkus
16
https://github.com/xuxueli/xxl-job
15
https://github.com/apache/kylin
14
https://github.com/apache/zeppelin
14
https://github.com/spring-projects/spring-security
14
https://github.com/Graylog2/graylog2-server
14
https://github.com/ming-soft/MCMS
13
https://github.com/apache/dolphinscheduler
13
https://github.com/dromara/hutool
13
https://github.com/OpenRefine/OpenRefine
13
https://github.com/igniterealtime/Openfire
12
https://github.com/DSpace/DSpace
12
https://github.com/vaadin/flow
11
https://github.com/h2oai/h2o-3
11
https://github.com/opensearch-project/security
10
https://github.com/jenkinsci/git-plugin
10
https://github.com/dataease/dataease
9
https://github.com/cui2shark/cms
9
https://github.com/apache/lucene-solr
9
https://github.com/apache/hadoop
8
https://github.com/pgjdbc/pgjdbc
8
https://github.com/apache/xmlgraphics-batik
8
https://github.com/nahsra/antisamy
8
https://github.com/xwiki/xwiki-commons
8
https://github.com/hazelcast/hazelcast
8
https://github.com/jetty/jetty.project
8
https://github.com/vaadin/framework
8
https://github.com/jenkinsci/config-file-provider-plugin
8
https://github.com/jenkinsci/build-failure-analyzer-plugin
7
https://github.com/rundeck/rundeck
7
https://github.com/jflyfox/jfinal_cms
7
https://github.com/infinispan/infinispan
7
https://github.com/http4s/http4s
7
https://github.com/OpenTSDB/opentsdb
7
https://github.com/ratpack/ratpack
7
https://github.com/RhinoSecurityLabs/CVEs
7
https://github.com/jenkinsci/blueocean-plugin
7
https://github.com/apache/openmeetings
7
https://github.com/apache/pulsar
7
https://github.com/rubygems/rubygems
7
https://github.com/apache/tika
6
https://github.com/cui2shark/security
6
https://github.com/jenkinsci/ec2-plugin
6
https://github.com/jenkinsci/subversion-plugin
6
https://github.com/jenkinsci/configuration-as-code-plugin
6
https://github.com/apache/solr
6
https://github.com/jenkinsci/gerrit-trigger-plugin
6
https://github.com/apache/syncope
6
https://github.com/resteasy/resteasy
6
https://github.com/line/armeria
6
https://github.com/jenkinsci/fortify-on-demand-uploader-plugin
6
https://github.com/ESAPI/esapi-java-legacy
6
https://github.com/apache/hive
6
https://github.com/jenkinsci/electricflow-plugin
6
https://bitbucket.org/snakeyaml/snakeyaml
6
https://github.com/JLLeitschuh/security-research
6
https://github.com/playframework/playframework
6
https://github.com/ls1intum/Ares
6
https://github.com/OpenAPITools/openapi-generator
6
https://github.com/DrunkenShells/Disclosures
6
https://github.com/vert-x3/vertx-web
6
https://github.com/qos-ch/logback
5
https://github.com/jenkinsci/workflow-cps-global-lib-plugin
5
https://github.com/apache/geode
5
https://github.com/alibaba/nacos
5
https://github.com/restlet/restlet-framework-java
5
https://github.com/jettison-json/jettison
5
https://github.com/jenkinsci/support-core-plugin
5
https://github.com/apache/shenyu
5
https://github.com/jenkinsci/active-directory-plugin
5
https://github.com/jenkinsci/m2release-plugin
5
https://github.com/ktorio/ktor
5
https://github.com/PowerJob/PowerJob
5
https://github.com/snowflakedb/snowflake-jdbc
5
https://github.com/jenkinsci/junit-plugin
5
https://github.com/jensdietrich/xshady-release
5
https://github.com/jenkinsci/publish-over-ssh-plugin
5
https://github.com/neo4j-contrib/neo4j-apoc-procedures
5
https://github.com/xwiki/xwiki-rendering
5
https://github.com/grails/grails-core
5
https://github.com/jenkinsci/github-plugin
5
https://github.com/apache/james-project
5
https://github.com/jquery/jquery-ui
5
https://github.com/protocolbuffers/protobuf
5
https://bitbucket.org/connect2id/nimbus-jose-jwt
5
https://github.com/apache/druid
5
https://github.com/apache/shiro
5
https://github.com/apache/httpcomponents-client
5
https://github.com/jquery/jquery
5
https://github.com/elastic/elasticsearch
5
https://github.com/jenkinsci/codedx-plugin
5
https://github.com/jenkinsci/gitlab-plugin
5
https://github.com/jenkinsci/email-ext-plugin
5
https://github.com/apache/karaf
5
https://github.com/apache/jackrabbit
5
https://github.com/apache/activemq-artemis
5
https://github.com/h2database/h2database
5
https://github.com/yamcs/yamcs
4
https://github.com/HL7/fhir-ig-publisher
4
https://github.com/aws/aws-iot-device-sdk-java-v2
4
https://github.com/nightcloudos/new_cms
4
https://github.com/apiman/apiman
4
https://github.com/reportportal/reportportal
4
https://github.com/jenkinsci/vmanager-plugin
4
https://github.com/resteasy/Resteasy
4
https://github.com/jenkinsci/htmlpublisher-plugin
4
https://github.com/itext/itext7
4
https://github.com/jenkinsci/hpe-application-automation-tools-plugin
4
https://github.com/geonetwork/core-geonetwork
4
https://github.com/apache/streampipes
4
https://github.com/jenkinsci/p4-plugin
4
https://github.com/jenkinsci/git-client-plugin
4
https://github.com/jenkinsci/nexus-platform-plugin
4
https://github.com/openhab/openhab-webui
4
https://github.com/joniles/mpxj
4
https://github.com/jenkinsci/fortify-plugin
4
https://github.com/jenkinsci/matrix-project-plugin
4
https://github.com/shopizer-ecommerce/shopizer
4
https://github.com/jenkinsci/libvirt-slave-plugin
4
https://github.com/apache/ranger
4
https://github.com/jfinal/jfinal
4
https://github.com/powsybl/powsybl-core
4
https://github.com/xerial/snappy-java
4
https://github.com/pippo-java/pippo
4
https://github.com/Robothy/local-s3
4
https://github.com/jenkinsci/ansible-plugin
4
https://github.com/jenkinsci/job-config-history-plugin
4
https://github.com/wildfly/wildfly-core
4
https://github.com/unclebob/fitnesse
4
https://github.com/jenkinsci/workflow-cps-plugin
4
https://github.com/stanfordnlp/corenlp
4
https://github.com/open-metadata/OpenMetadata
4
https://github.com/apache/iotdb
4
https://github.com/jenkinsci/rundeck-plugin
4
https://github.com/jenkinsci/active-choices-plugin
4
https://github.com/jenkinsci/cloudbees-jenkins-advisor-plugin
4
https://github.com/skylot/jadx
4
https://github.com/HtmlUnit/htmlunit
4
https://github.com/jenkinsci/xldeploy-plugin
4
https://github.com/jenkinsci/warnings-ng-plugin
4
https://github.com/jooby-project/jooby
4
https://github.com/jenkinsci/credentials-binding-plugin
4
https://github.com/AsyncHttpClient/async-http-client
4
https://github.com/jenkinsci/gitlab-oauth-plugin
4
https://github.com/micronaut-projects/micronaut-core
4
https://github.com/akka/akka-http
3
https://github.com/LetianYuan/My-CVE-Public-References
3
https://github.com/apache/zookeeper
3
https://github.com/Adobe-Consulting-Services/acs-aem-commons
3
https://github.com/wildfly/wildfly
3
https://github.com/li-yu320/cms
3
https://github.com/jenkinsci/mercurial-plugin
3
https://github.com/apache/santuario-java
3
https://github.com/jeremylong/DependencyCheck
3
https://github.com/spring-projects/spring-boot
3
https://github.com/apolloconfig/apollo
3
https://github.com/apache/dubbo
3
https://github.com/apache/commons-configuration
3
https://github.com/frohoff/ysoserial
3
https://github.com/javamelody/javamelody
3
https://github.com/intranda/goobi-viewer-core
3
https://github.com/jenkinsci/embeddable-build-status-plugin
3
https://github.com/hibernate/hibernate-validator
3
https://bitbucket.org/b_c/jose4j
3
https://github.com/jenkinsci/gitlab-branch-source-plugin
3
https://github.com/jenkinsci/crx-content-package-deployer-plugin
3
https://github.com/apache/flume
3
https://github.com/Sidd545-cr/CVE
3
https://github.com/pf4j/pf4j
3
https://github.com/jenkinsci/code-coverage-api-plugin
3
https://github.com/wso2/carbon-registry
3
https://github.com/google/guava
3