
maven
554,455 packages · repo1.maven.org
Critical Security Advisories for https://github.com/xwiki/xwiki-platform in maven Clear Filters
Critical
29 days ago
XWiki configuration files can be accessed through jsx and sx endpoints
maven
org.xwiki.platform:xwiki-platform-skin-skinx
Critical
29 days ago
XWiki configuration files can be accessed through the webjars API
maven
org.xwiki.platform:xwiki-platform-webjars-api
Critical
2 months ago
XWiki Platform vulnerable to SQL injection through getdeleteddocuments.vm template sort parameter
maven
org.xwiki.platform:xwiki-platform-distribution-war
Critical
4 months ago
XWiki allows SQL injection in query endpoint of REST API with Oracle
maven
org.xwiki.platform:xwiki-platform-oldcore
Critical
5 months ago
org.xwiki.platform:xwiki-platform-security-requiredrights-default required rights analysis doesn't consider TextAreas with default content type
maven
org.xwiki.platform:xwiki-platform-security-requiredrights-default
Critical
5 months ago
org.xwiki.platform:xwiki-platform-component-wiki provides no warning when granting XWiki.ComponentClass programming right
maven
org.xwiki.platform:xwiki-platform-component-wiki
Critical
5 months ago
org.xwiki.platform:xwiki-platform-rest-server allows SQL injection in query endpoint of REST API
maven
org.xwiki.platform:xwiki-platform-rest-server
Critical
7 months ago
XWiki Platform allows remote code execution as guest via SolrSearchMacros request
maven
org.xwiki.platform:xwiki-platform-search-solr-ui
Critical
9 months ago
XWiki Realtime WYSIWYG Editor extension allows privilege escalation (PR) through realtime WYSIWYG editing
maven
org.xwiki.platform:xwiki-platform-realtime-wysiwyg-ui
Critical
10 months ago
XWiki allows remote code execution through the extension sheet
maven
org.xwiki.platform:xwiki-platform-repository-server-ui
Critical
10 months ago
XWiki allows remote code execution from account through macro descriptions and XWiki.XWikiSyntaxMacrosList
maven
org.xwiki.platform:xwiki-platform-help-ui
Critical
10 months ago
XWiki allows RCE from script right in configurable sections
maven
org.xwiki.platform:xwiki-platform-administration-ui
Critical
about 1 year ago
In XWiki Platform, payloads stored in content is executed when a user with script/programming right edit them
maven
org.xwiki.platform:xwiki-platform-web-templates
Critical
about 1 year ago
XWiki Platform allows XSS through XClass name in string properties
maven
org.xwiki.platform:xwiki-platform-oldcore
Critical
about 1 year ago
XWiki Platform vulnerable to Cross-Site Scripting (XSS) through conflict resolution
maven
org.xwiki.platform:xwiki-platform-web-templates
Critical
about 1 year ago
XWiki Platform vulnerable to remote code execution from account via SearchSuggestConfigSheet
maven
org.xwiki.platform:xwiki-platform-search-ui
Critical
over 1 year ago
XWiki programming rights may be inherited by inclusion
maven
org.xwiki.platform:xwiki-platform-rendering-macro-include
Critical
over 1 year ago
XWiki Platform allows remote code execution from user account
maven
org.xwiki.platform:xwiki-platform-oldcore
Critical
over 1 year ago
XWiki Platform remote code execution from account through UIExtension parameters
maven
org.xwiki.platform:xwiki-platform-uiextension-api
Critical
over 1 year ago
XWiki Platform CSRF remote code execution through the realtime HTML Converter API
maven
org.xwiki.platform:xwiki-platform-realtime-ui
Critical
over 1 year ago
XWiki Platform remote code execution from account via custom skins support
maven
org.xwiki.platform:xwiki-platform-oldcore
Critical
over 1 year ago
XWiki Platform CSRF remote code execution through scheduler job's document reference
maven
org.xwiki.platform:xwiki-platform-scheduler-ui
Critical
over 1 year ago
XWiki Platform: Remote code execution through space title and Solr space facet
maven
org.xwiki.platform:xwiki-platform-search-solr-ui
Critical
over 1 year ago
XWiki Platform: Remote code execution from edit in multilingual wikis via translations
maven
org.xwiki.platform:xwiki-platform-localization-source-wiki
Critical
over 1 year ago
XWiki Platform: Remote code execution as guest via DatabaseSearch
maven
org.xwiki.platform:xwiki-platform-search-ui
Critical
over 1 year ago
XWiki Platform: Privilege escalation (PR) from user registration through PDFClass
maven
org.xwiki.platform:xwiki-platform-oldcore
Critical
over 1 year ago
XWiki Platform: Remote code execution from account via SearchSuggestSourceSheet
maven
org.xwiki.platform:xwiki-platform-search-ui
Critical
over 1 year ago
XWiki Remote Code Execution Vulnerability via User Registration
maven
org.xwiki.platform:xwiki-platform-administration-ui
Critical
almost 2 years ago
Remote code execution/programming rights with configuration section from any user account
maven
org.xwiki.platform:xwiki-platform-administration-ui
Critical
almost 2 years ago
XSS/CSRF Remote Code Execution in XWiki.ConfigurableClass
maven
org.xwiki.platform:xwiki-platform-administration-ui
Critical
almost 2 years ago
Remote code execution from account through SearchAdmin
maven
org.xwiki.platform:xwiki-platform-search-ui
Critical
almost 2 years ago
Cookies are sent to external images in rendered diff (and server side request forgery)
maven
org.xwiki.platform:xwiki-platform-diff-xml
Critical
almost 2 years ago
XWiki Platform vulnerable to reflected cross-site scripting through revision parameter in content menu
maven
org.xwiki.platform:xwiki-platform-flamingo-skin-resources
Critical
almost 2 years ago
XWiki Platform vulnerable to remote code execution through the section parameter in Administration as guest
maven
org.xwiki.platform:xwiki-platform-administration, org.xwiki.platform:xwiki-platform-administration-ui
Critical
almost 2 years ago
XWiki Platform privilege escalation from script right to programming right through title displayer
maven
org.xwiki.platform:xwiki-platform-display-api
Critical
almost 2 years ago
XWiki Platform vulnerable to remote code execution via the edit action because it lacks CSRF token
maven
org.xwiki.platform:xwiki-platform-oldcore
Critical
almost 2 years ago
XWiki Platform vulnerable to XSS with edit right in the create document form for existing pages
maven
org.xwiki.platform:xwiki-platform-web, org.xwiki.platform:xwiki-platform-web-templates
Critical
almost 2 years ago
XWiki Platform web templates vulnerable to reflected XSS in the create document form if name validation is enabled
maven
org.xwiki.platform:xwiki-platform-web-templates
Critical
almost 2 years ago
XWiki users can be tricked to execute scripts as the create page action doesn't display the page's title
maven
org.xwiki.platform:xwiki-platform-web, org.xwiki.platform:xwiki-platform-web-templates
Critical
almost 2 years ago
XWiki Platform XSS vulnerability from account in the create page form via template provider
maven
org.xwiki.platform:xwiki-platform-web, org.xwiki.platform:xwiki-web-standard, org.xwiki.platform:xwiki-platform-web-templates
Critical
almost 2 years ago
org.xwiki.platform:xwiki-platform-office-importer vulnerable to arbitrary server side file writing from account through office converter
maven
org.xwiki.platform:xwiki-platform-office-importer
Critical
about 2 years ago
XWiki Platform's Groovy jobs check the wrong author, allowing remote code execution
maven
org.xwiki.platform:xwiki-platform-scheduler-api, com.xpn.xwiki.platform.plugins:xwiki-plugin-scheduler
Critical
about 2 years ago
XWiki Platform privilege escalation (PR) from account through AWM content fields
maven
org.xwiki.platform:xwiki-platform-appwithinminutes-ui
Critical
about 2 years ago
XWiki Platform privilege escalation (PR)/RCE from account through Invitation subject/message
maven
org.xwiki.platform:xwiki-platform-invitation-ui
Critical
about 2 years ago
org.xwiki.platform:xwiki-platform-skin-ui Eval Injection vulnerability
maven
org.xwiki.platform:xwiki-platform-skin-ui
Critical
about 2 years ago
XWiki Platform vulnerable to cross-site request forgery (CSRF) via the REST API
maven
org.xwiki.platform:xwiki-platform-rest-server, com.xpn.xwiki.platform:xwiki-rest, com.xpn.xwiki.platform:xwiki-core-rest-server
Critical
over 2 years ago
Upgrading doesn't prevent exploiting vulnerable XWiki documents
maven
org.xwiki.platform:xwiki-platform-oldcore
Critical
over 2 years ago
XWiki Platform vulnerable to Code injection through NotificationRSSService
maven
org.xwiki.platform:xwiki-platform-notifications-ui
Critical
over 2 years ago
XWiki Platform vulnerable to Code Injection in icon themes
maven
org.xwiki.platform:xwiki-platform-icon-ui, org.xwiki.platform:xwiki-platform-icon-default, org.xwiki.platform:xwiki-platform-icon-script
Critical
over 2 years ago
XWiki Platform vulnerable to persistent Cross-site Scripting through CKEditor Configuration pages
maven
org.xwiki.platform:xwiki-platform-ckeditor-ui, org.xwiki.contrib:application-ckeditor-ui
Critical
over 2 years ago
XWiki Platform vulnerable to reflected cross-site scripting via xredirect parameter in DeleteApplication page
maven
org.xwiki.platform:xwiki-platform-appwithinminutes-ui
Critical
over 2 years ago
XWiki Platform vulnerable to reflected cross-site scripting via back and xcontinue parameters in resubmit template
maven
org.xwiki.platform:xwiki-platform-web-templates
Critical
over 2 years ago
XWiki Platform vulnerable to reflected cross-site scripting via xredirect parameter in deletespace template
maven
org.xwiki.platform:xwiki-platform-web-templates
Critical
over 2 years ago
XWiki Platform vulnerable to reflected cross-site scripting via xredirect parameter in restore template
maven
org.xwiki.platform:xwiki-platform-flamingo-skin-resources
Critical
over 2 years ago
XWiki Platform vulnerable to reflected cross-site scripting via xredirect parameter in delete template
maven
org.xwiki.platform:xwiki-platform-flamingo-skin-resources
Critical
over 2 years ago
XWiki Platform vulnerable to cross-site scripting via xcontinue parameter in previewactions template
maven
org.xwiki.platform:xwiki-platform-flamingo-skin-resources
Critical
over 2 years ago
XWiki Platform vulnerable to stored cross-site scripting in ClassEditSheet page via name parameters
maven
org.xwiki.platform:xwiki-platform-appwithinminutes-ui
Critical
over 2 years ago
XWiki Platform vulnerable to privilege escalation (PR) from account through like LiveTableResults
maven
org.xwiki.platform:xwiki-platform-like-ui
Critical
over 2 years ago
XWiki Platform vulnerable to privilege escalation (PR) from view right via Invitation application
maven
org.xwiki.platform:xwiki-platform-invitation-ui
Critical
over 2 years ago
XWiki Platform's Mail.MailConfig can be edited by any user with edit rights
maven
org.xwiki.platform:xwiki-platform-mail-send-default
Critical
over 2 years ago
XWiki vulnerable to stored cross-site scripting via any wiki document and the displaycontent/rendercontent template
maven
org.xwiki.platform:xwiki-platform-web-templates, org.xwiki.platform:xwiki-platform-web
Critical
over 2 years ago
Privilege escalation (PR)/RCE from account through class sheet
maven
org.xwiki.platform:xwiki-platform-test-ui
Critical
over 2 years ago
XWiki Platform vulnerable to RXSS via editor parameter - importinline template
maven
org.xwiki.platform:xwiki-platform-distribution-war
Critical
over 2 years ago
XWiki Platform vulnerable to privilege escalation from view right on XWiki.Notifications.Code.LegacyNotificationAdministration
maven
org.xwiki.platform:xwiki-platform-legacy-events-hibernate-ui, org.xwiki.platform:xwiki-platform-distribution-war
Critical
over 2 years ago
XWiki Platform vulnerable to code injection from account through AWM view sheet
maven
org.xwiki.platform:xwiki-platform-appwithinminutes-ui
Critical
over 2 years ago
XWiki Platform's async and display macro allow displaying and interacting with any document in restricted mode
maven
org.xwiki.platform:xwiki-platform-rendering-async-macro, org.xwiki.platform:xwiki-platform-oldcore
Critical
over 2 years ago
XWiki Platform vulnerable to code injection from account through XWiki.SchedulerJobSheet
maven
org.xwiki.platform:xwiki-platform-scheduler-ui
Critical
over 2 years ago
XWiki Platform vulnerable to code injection in display method used in user profiles
maven
org.xwiki.platform:xwiki-platform-oldcore
Critical
over 2 years ago
XWiki Platform vulnerable to privilege escalation from view right on XWiki.AttachmentSelector
maven
org.xwiki.platform:xwiki-platform-attachment-ui
Critical
over 2 years ago
XWiki vulnerable to Code Injection in template provider administration
maven
org.xwiki.platform:xwiki-platform-administration-ui, org.xwiki.platform:xwiki-platform-administration, org.xwiki.platform.applications:xwiki-application-administration
Critical
over 2 years ago
xwiki-platform-web-templates vulnerable to Eval Injection
maven
org.xwiki.platform:xwiki-platform-web-templates
Critical
over 2 years ago
Code injection via unescaped translations in xwiki-platform
maven
org.xwiki.platform:xwiki-platform-administration-ui
Critical
over 2 years ago
org.xwiki.platform:xwiki-platform-skin-skinx vulnerable to basic Cross-site Scripting by exploiting JSX or SSX plugins
maven
org.xwiki.platform:xwiki-platform-skin-skinx
Critical
over 2 years ago
org.xwiki.platform:xwiki-platform-rendering-xwiki vulnerable to stored cross-site scripting via HTML and raw macro
maven
org.xwiki.platform:xwiki-platform-rendering-xwiki
Critical
over 2 years ago
org.xwiki.platform:xwiki-platform-rendering-macro-rss Cross-site Scripting vulnerability
maven
org.xwiki.platform:xwiki-platform-rendering-macro-rss, org.xwiki.platform:xwiki-core-rendering-macro-rss
Critical
over 2 years ago
xwiki-platform-administration-ui vulnerable to privilege escalation
maven
org.xwiki.platform:xwiki-platform-administration-ui
Critical
over 2 years ago
org.xwiki.platform:xwiki-platform-flamingo-theme-ui vulnerable to privilege escalation
maven
org.xwiki.platform:xwiki-platform-flamingo-theme-ui
Critical
over 2 years ago
org.xwiki.platform:xwiki-platform-flamingo-theme-ui Eval Injection vulnerability
maven
org.xwiki.platform:xwiki-platform-flamingo-theme-ui
Critical
over 2 years ago
org.xwiki.platform:xwiki-platform-oldcore makes Incorrect Use of Privileged APIs with DocumentAuthors
maven
org.xwiki.platform:xwiki-platform-oldcore
Critical
over 2 years ago
org.xwiki.platform:xwiki-platform-panels-ui Eval Injection vulnerability
maven
org.xwiki.platform:xwiki-platform-panels-ui
Critical
over 2 years ago
org.xwiki.platform:xwiki-platform-logging-ui Eval Injection vulnerability
maven
org.xwiki.platform:xwiki-platform-logging-ui
Critical
over 2 years ago
xwiki.platform:xwiki-platform-panels-ui Eval Injection vulnerability
maven
org.xwiki.platform:xwiki-platform-panels-ui
Critical
over 2 years ago
org.xwiki.platform:xwiki-platform-wiki-ui-mainwiki Eval Injection vulnerability
maven
org.xwiki.platform:xwiki-platform-wiki-ui-mainwiki
Critical
over 2 years ago
org.xwiki.platform:xwiki-platform-notifications-ui Eval Injection vulnerability
maven
org.xwiki.platform:xwiki-platform-notifications-ui
Critical
over 2 years ago
org.xwiki.platform:xwiki-platform-legacy-notification-activitymacro Eval Injection vulnerability
maven
org.xwiki.platform:xwiki-platform-legacy-notification-activitymacro
Critical
over 2 years ago
org.xwiki.platform:xwiki-platform-panels-ui vulnerable to Eval Injection
maven
org.xwiki.platform:xwiki-platform-panels-ui
Critical
over 2 years ago
org.xwiki.platform:xwiki-platform-flamingo-theme-ui Eval Injection vulnerability
maven
org.xwiki.platform:xwiki-platform-flamingo-theme-ui
Critical
over 2 years ago
XWiki Platform users may execute anything with superadmin right through comments and async macro
maven
org.xwiki.platform:xwiki-platform-rendering-async-macro
Critical
over 2 years ago
XWiki Platform vulnerable to privilege escalation via async macro and IconThemeSheet from the user profile
maven
org.xwiki.platform:xwiki-platform-icon-ui
Critical
over 2 years ago
XWiki Platform vulnerable to privilege escalation via properties with wiki syntax that are executed with wrong author
maven
org.xwiki.platform:xwiki-platform-legacy-oldcore, org.xwiki.platform:xwiki-platform-oldcore
Critical
over 2 years ago
xwiki-platform vulnerable to Remote Code Execution in Annotations
maven
org.xwiki.platform:xwiki-platform-annotation-ui
Critical
almost 3 years ago
Missing Authorization in Filter Stream Converter Application of XWiki-platform
maven
org.xwiki.platform:xwiki-platform-filter-ui
Critical
almost 3 years ago
Improper Neutralization of Directives in Dynamically Evaluated Code ('Eval Injection') in org.xwiki.platform:xwiki-platform-menu-ui
maven
org.xwiki.platform:xwiki-platform-menu-ui
Critical
almost 3 years ago
Improper Neutralization of Directives in Dynamically Evaluated Code ('Eval Injection') in xwiki-platform-icon-ui
maven
org.xwiki.platform:xwiki-platform-icon-ui
Critical
almost 3 years ago
Missing Authorization to enable or disable users in org.xwiki.platform:xwiki-platform-user-profile-ui
maven
org.xwiki.platform:xwiki-platform-user-profile-ui
Critical
almost 3 years ago
Improper Neutralization of Directives in Dynamically Evaluated Code ('Eval Injection') in AttachmentSelector.xml
maven
org.xwiki.platform:xwiki-platform-attachment-ui
Critical
about 3 years ago
XWiki Platform Mentions UI vulnerable to Cross-site Scripting
maven
org.xwiki.platform:xwiki-platform-mentions-ui
Critical
about 3 years ago
XWiki Platform Wiki UI Main Wiki Eval Injection vulnerability
maven
org.xwiki.platform:xwiki-platform-wiki-ui-mainwiki
Critical
about 3 years ago
XWiki Platform Applications Tag and XWiki Platform Tag UI vulnerable to Eval Injection
maven
org.xwiki.platform:xwiki-platform-tag-ui, org.xwiki.platform.applications:xwiki-application-tag
Critical
over 4 years ago
XSS Cross Site Scripting
maven
org.xwiki.platform:xwiki-platform-web, org.xwiki.platform:xwiki-platform-oldcore
Filter by Severity
Filter by Package
com.liferay.portal:release.dxp.bom
24
com.fasterxml.jackson.core:jackson-databind
24
net.mingsoft:ms-mcms
19
org.jenkins-ci.main:jenkins-core
19
org.apache.dubbo:dubbo
13
org.xwiki.platform:xwiki-platform-oldcore
12
org.apache.struts:struts2-core
12
com.liferay.portal:release.portal.bom
11
org.xwiki.platform:xwiki-platform-web-templates
10
org.xwiki.platform:xwiki-platform-administration-ui
8
org.apache.shiro:shiro-core
6
org.apache.inlong:manager-pojo
6
org.jeecgframework.boot:jeecg-boot-common
6
org.jeecgframework.boot:jeecg-boot-parent
5
org.jenkins-ci.plugins:script-security
5
org.xwiki.commons:xwiki-commons-xml
5
org.xwiki.platform:xwiki-platform-web
5
org.apache.openmeetings:openmeetings-parent
5
org.apache.kylin:kylin-server-base
4
org.eclipse.jetty:jetty-server
4
org.apache.solr:solr-core
4
ai.h2o:h2o-core
4
org.xwiki.platform:xwiki-platform-flamingo-skin-resources
4
org.xwiki.platform:xwiki-platform-search-ui
4
org.apache.tapestry:tapestry-core
4
org.cloudfoundry.identity:cloudfoundry-identity-server
4
org.apache.ignite:ignite-core
4
org.apache.tomcat.embed:tomcat-embed-core
4
org.xwiki.platform:xwiki-platform-appwithinminutes-ui
4
org.apache.inlong:manager-service
4
org.jeecgframework.boot:jeecg-boot-base-core
4
org.apache.tomcat:tomcat-catalina
4
org.apache.activemq:activemq-client
4
net.opentsdb:opentsdb
4
com.alibaba:dubbo
3
io.dataease:dataease-plugin-common
3
org.jeecgframework.boot:jeecg-module-system
3
org.zenframework.z8.dependencies.commons:log4j-1.2.17
3
com.hazelcast:hazelcast
3
edu.stanford.nlp:stanford-corenlp
3
org.keycloak:keycloak-core
3
org.jenkins-ci.plugins.workflow:workflow-cps
3
io.undertow:undertow-core
3
org.xwiki.platform:xwiki-platform-panels-ui
3
org.apache.any23:apache-any23
3
org.apache.linkis:linkis
3
org.jenkins-ci.plugins:active-directory
3
org.apache.hadoop:hadoop-common
3
ro.pippo:pippo-core
3
org.richfaces:richfaces-core
3
org.apache.ranger:ranger
3
org.xwiki.platform:xwiki-platform-distribution-war
3
com.jflyfox:jflyfox_jfinal
3
org.apache.inlong:manager-web
3
org.apache.jmeter:ApacheJMeter
3
org.apache.storm:storm
3
h2o
3
org.springframework.security:spring-security-core
3
org.jeecgframework.boot:jeecg-boot-base
3
org.xwiki.platform:xwiki-platform-flamingo-theme-ui
3
org.xwiki.platform:xwiki-platform-icon-ui
3
org.apache.ozone:ozone-main
3
log4j:log4j
3
org.apache.dolphinscheduler:dolphinscheduler
3
org.apache.geode:geode-core
2
com.jfinal:jfinal
2
org.xwiki.platform:xwiki-platform-rendering-async-macro
2
org.apache.shiro:shiro-spring
2
org.xwiki.platform:xwiki-platform-administration
2
org.xwiki.platform:xwiki-platform-invitation-ui
2
org.apache.dubbo:dubbo-parent
2
ai.djl:api
2
org.xwiki.platform:xwiki-platform-rest-server
2
org.xwiki.platform:xwiki-platform-scheduler-ui
2
org.apache.rocketmq:rocketmq-namesrv
2
org.apache.xmlrpc:xmlrpc
2
org.apache.flume.flume-ng-sources:flume-jms-source
2
org.apache.james:james-server
2
org.jenkins-ci.plugins:oic-auth
2
org.apache.solr:solr-parent
2
org.xwiki.contrib:application-ckeditor-ui
2
org.apache.nifi:nifi
2
cn.hutool:hutool-core
2
org.noear:solon
2
io.vertx:vertx-web
2
org.jenkins-ci.plugins:email-ext
2
org.apache.cxf:cxf
2
org.ops4j.pax.logging:pax-logging-log4j2
2
com.enonic.xp:lib-auth
2
com.hazelcast.jet:hazelcast-jet
2
org.apache.commons:commons-configuration2
2
org.springframework.amqp:spring-amqp
2
org.apache.streampark:streampark
2
org.apache.inlong:manager-dao
2
org.springframework:spring-messaging
2
org.geoserver:gs-wms
2
com.xuxueli:xxl-rpc-core
2
org.apache.cocoon:cocoon
2
cn.hutool:hutool-all
2
org.apache.shiro:shiro-web
2
org.folio:mod-data-export-spring
2
org.odata4j:odata4j-core
2
org.xwiki.platform:xwiki-platform-notifications-ui
2
org.apache.cassandra:cassandra-all
2
org.xwiki.platform:xwiki-platform-skin-skinx
2
com.thoughtworks.xstream:xstream
2
org.apache.pulsar:pulsar
2
org.keycloak:keycloak-parent
2
org.geoserver:gs-wfs
2
com.h2database:h2
2
org.apache.shenyu:shenyu-common
2
org.apache.cxf:cxf-core
2
org.geoserver.web:gs-web-app
2
org.xwiki.platform:xwiki-platform-wiki-ui-mainwiki
2
org.jenkins-ci.plugins:semantic-versioning-plugin
2
org.neo4j.procedure:apoc
2
net.bull.javamelody:javamelody-core
2
org.xwiki.platform:xwiki-platform-attachment-ui
2
org.xwiki.rendering:xwiki-rendering-syntax-xhtml
2
com.cronutils:cron-utils
2
tech.powerjob:powerjob
2
com.bstek.ureport:ureport2-core
2
cn.hutool:hutool-json
2
org.keycloak:keycloak-services
2
org.xwiki.platform:xwiki-platform-search-solr-ui
2
org.apache.derby:derby
2
com.hubspot.jinjava:jinjava
1
de.averbis.textanalysis:pear-archetype
1
com.bstek.ureport:ureport2-console
1
org.apache.karaf.specs:org.apache.karaf.specs.java.xml
1
org.apache.jackrabbit:jackrabbit-webapp
1
io.pebbletemplates:pebble
1
org.apache.shenyu:shenyu-admin
1
org.gluu:oxauth-common
1
com.jason-goodwin:authentikat-jwt_2.12
1
org.xwiki.platform:xwiki-platform-webjars-api
1
cn.dev33:sa-token-core
1
com.itextpdf:itext-rups
1
com.guicedee.services:commons-text
1
org.apache.tomcat.embed:tomcat-embed-jasper
1
org.grails:grails-databinding
1
io.jenkins.plugins:oidc-provider
1
org.springframework:spring-web
1
org.geotools:gt-wfs-ng
1
org.apache.solr:solr-solrj
1
org.springframework.data:spring-data-commons
1
org.apache.tomcat:tomcat-coyote
1
org.apache.activemq:activemq-broker
1
org.xwiki.platform:xwiki-platform-realtime-ui
1
org.eclipse.lemminx:lemminx-parent
1
org.xwiki.contrib.markdown:syntax-markdown-commonmark12
1
org.xwiki.rendering:xwiki-rendering-syntax-annotatedxhtml
1
io.netty:netty-codec-http
1
org.mapfish.print:print-lib
1
org.geotools:gt-complex
1
org.xwiki.rendering:xwiki-rendering-transformation-macro
1
org.codehaus.jackson:jackson-mapper-asl
1
com.alibaba:fastjson
1
org.http4s:http4s-server_2.12
1
org.bonitasoft.connectors:bonita-connector-webservice
1
com.starkbank.ellipticcurve:starkbank-ecdsa
1
org.jodd:jodd-json
1
io.pebbletemplates:pebble-project
1
org.openmrs.module:patientflags
1
org.powernukkit:powernukkit
1
com.typesafe.akka:akka-actor_2.12
1
com.liferay.commerce:com.liferay.commerce.address.content.web
1
org.apache.maven.shared:maven-shared-utils
1
org.apache.jackrabbit:jackrabbit-standalone-components
1
org.openhab.ui.bundles:org.openhab.ui.cometvisu
1
com.predic8:soa-model-parent
1
io.fabric8.pipeline:kubernetes-pipeline-steps
1
org.apache.xmlgraphics:batik
1
com.xwiki.confluencepro:application-confluence-migrator-pro-ui
1
org.apache.rocketmq:rocketmq-controller
1
org.apache.jena:jena-sdb
1
com.googlecode.aviator:aviator
1
org.apache.pinot:pinot
1
org.opencastproject:opencast-common
1
com.liferay.portal:com.liferay.portal.web
1
org.xwiki.platform:xwiki-platform-ckeditor-ui
1
org.apache.maven:maven-core
1
org.apache.jena:jena
1
org.apache.tomcat:tomcat-jasper
1
org.mitre:openid-connect-parent
1
org.hsqldb:hsqldb
1
fr.turri:aXMLRPC
1
org.springframework.cloud:spring-cloud-gateway
1
org.openapitools:openapi-generator-online
1
org.pac4j:pac4j-core
1
org.apache.zeppelin:zeppelin-jdbc
1
com.ibeetl:beetl
1
org.apache.bcel:bcel
1
org.openmrs:openmrs
1
org.springframework.boot:spring-boot-actuator-autoconfigure
1
org.apache.iotdb:iotdb-confignode
1
org.geotools.xsd:gt-xsd-core
1
org.codelibs.fess:fess
1
io.jenkins.plugin-management:plugin-management-parent-pom
1
org.apache.solr:solr
1
Filter by Repository
https://github.com/xwiki/xwiki-platform
100
https://github.com/FasterXML/jackson-databind
24
https://github.com/jenkinsci/jenkins
18
https://github.com/apache/inlong
10
https://github.com/ming-soft/MCMS
10
https://github.com/jeecgboot/jeecg-boot
9
https://github.com/apache/struts
8
https://github.com/apache/tomcat
7
https://github.com/liferay/liferay-portal
6
https://github.com/xwiki/xwiki-commons
6
https://github.com/dromara/hutool
5
https://github.com/spring-projects/spring-framework
5
https://github.com/apache/activemq
5
https://github.com/keycloak/keycloak
5
https://github.com/OpenTSDB/opentsdb
4
https://github.com/pippo-java/pippo
4
https://github.com/cloudfoundry/uaa
4
https://github.com/dataease/dataease
4
https://github.com/xwiki/xwiki-rendering
4
https://github.com/CVEProject/cvelist
4
https://github.com/h2oai/h2o-3
3
https://github.com/apache/shiro
3
https://github.com/jflyfox/jfinal_cms
3
https://github.com/apache/camel
3
https://github.com/geoserver/geoserver
3
https://github.com/opencast/opencast
3
https://github.com/LetianYuan/My-CVE-Public-References
3
https://github.com/mbechler/marshalsec
3
https://github.com/hazelcast/hazelcast
3
https://github.com/apache/dolphinscheduler
3
https://github.com/spring-projects/spring-security
2
https://github.com/apache/jmeter
2
https://github.com/geotools/geotools
2
https://github.com/apache/dubbo
2
https://github.com/apache/hadoop
2
https://github.com/PowerJob/PowerJob
2
https://github.com/vert-x3/vertx-web
2
https://github.com/h2database/h2database
2
https://github.com/apache/flume
2
https://github.com/line/armeria
2
https://github.com/apache/openmeetings
2
https://github.com/folio-org/mod-data-export-spring
2
https://github.com/HtmlUnit/htmlunit
2
https://github.com/apache/kylin
2
https://github.com/jenkinsci/script-security-plugin
2
https://github.com/jenkinsci/semantic-versioning-plugin
2
https://github.com/apache/pinot
2
https://github.com/javamelody/javamelody
2
https://github.com/frohoff/ysoserial
2
https://github.com/deepjavalibrary/djl
2
https://github.com/apache/zeppelin
2
https://github.com/enonic/xp
2
https://github.com/http4s/http4s
2
https://github.com/neo4j-contrib/neo4j-apoc-procedures
2
https://github.com/stanfordnlp/corenlp
2
https://github.com/jfinal/jfinal
2
https://github.com/apache/iotdb
2
https://github.com/apache/ignite
2
https://github.com/noear/solon
2
https://github.com/apache/karaf
2
https://github.com/apache/incubator-streampark
2
https://github.com/quarkusio/quarkus
2
https://github.com/apache/incubator-hugegraph
2
https://github.com/jmrozanec/cron-utils
2
https://github.com/OpenAPITools/openapi-generator
2
https://github.com/quartz-scheduler/quartz
1
https://github.com/jenkinsci/ontrack-plugin
1
https://github.com/eXist-db/exist
1
https://github.com/grails/grails-core
1
https://github.com/codelibs/fess
1
https://github.com/bonitasoft/bonita-connector-webservice
1
https://github.com/ethereum/ethereumj
1
https://github.com/redisson/redisson
1
https://github.com/J0hnWalker/jeecg-boot-sqli
1
https://github.com/geonetwork/core-geonetwork
1
https://github.com/Wechat-Group/WxJava
1
https://github.com/Maverickfir/RuoYi-v4.6-vulnerability
1
https://github.com/igniterealtime/Openfire
1
https://github.com/liquibase/liquibase
1
https://github.com/alipay/sofa-hessian
1
https://github.com/codenameone/CodenameOne
1
https://github.com/OpenRefine/simile-butterfly
1
https://github.com/gitblit/gitblit
1
https://github.com/apache/sling-org-apache-sling-commons-johnzon
1
https://github.com/shopizer-ecommerce/shopizer
1
https://github.com/apache/storm
1
https://github.com/apache/maven-shared-utils
1
https://github.com/apache/flex-blazeds
1
https://github.com/averbis/pear-archetype
1
https://github.com/jenkinsci/workflow-cps-plugin
1
https://github.com/apache/any23
1
https://github.com/PoppingSnack/VulReport
1
https://github.com/JSONPath-Plus/JSONPath
1
https://github.com/aerospike/aerospike-client-java
1
https://github.com/apache/pulsar
1
https://github.com/youseries/uflo
1
https://github.com/apache/httpcomponents-client
1
https://github.com/richfaces/richfaces
1
https://github.com/orangecertcc/security-research
1
https://github.com/edirc-wong/record
1
https://github.com/eclipse/jetty.project
1
https://github.com/haraldk/TwelveMonkeys
1
https://github.com/naver/ngrinder
1
https://github.com/hyperledger/besu
1
https://github.com/conductor-oss/conductor
1
https://github.com/Netflix/genie
1
https://github.com/apache/streampipes
1
https://github.com/xwikisas/application-confluence-migrator-pro
1
https://github.com/pingidentity/ldapsdk
1
https://github.com/aws/amazon-redshift-jdbc-driver
1
https://github.com/xjodoin/torpedoquery
1
https://github.com/apache/sling-org-apache-sling-xss
1
https://github.com/undertow-io/undertow
1
https://github.com/apache/accumulo
1
https://github.com/thenables/thenify
1
https://github.com/jensdietrich/xshady-release
1
https://github.com/xuxueli/xxl-rpc
1
https://github.com/DrunkenShells/Disclosures
1
https://github.com/neo4j/neo4j
1
https://github.com/jenkinsci/plugin-installation-manager-tool
1
https://github.com/infinispan/infinispan
1
https://github.com/apache/helix
1
https://github.com/jenkinsci/generic-webhook-trigger-plugin
1
https://github.com/ManyDesigns/Portofino
1
https://github.com/xuxueli/xxl-job
1
https://github.com/oblac/jodd
1
https://github.com/rubygems/rubygems
1
https://github.com/beobal/cassandra
1
https://github.com/PebbleTemplates/pebble
1
https://github.com/spring-projects/spring-boot
1
https://github.com/xwiki-contrib/syntax-markdown
1
https://github.com/jenkinsci/nuget-plugin
1
https://github.com/penggle/kaptcha
1
https://github.com/geosolutions-it/jai-ext
1
https://github.com/ops4j/org.ops4j.pax.logging
1
https://github.com/Jasig/phpCAS
1
https://github.com/GoogleContainerTools/jib
1
https://github.com/lessthanoptimal/BoofCV
1
https://github.com/glazedlists/glazedlists
1
https://github.com/qos-ch/slf4j
1
https://github.com/unclebob/fitnesse
1
https://github.com/apache/incubator-kie-drools
1
https://github.com/stanfordnlp/CoreNLP
1
https://github.com/GluuFederation/oxAuth
1
https://github.com/Alluxio/alluxio
1
https://github.com/zhutougg/c3p0
1
https://github.com/netty/netty
1
https://github.com/e-Contract/dssp
1
https://github.com/luelueking/Beetl-3.15.0-vuln-poc
1
https://github.com/gturri/aXMLRPC
1
https://github.com/jenkinsci/keycloak-plugin
1
https://github.com/cgddgc/vulns
1
https://github.com/AsyncHttpClient/async-http-client
1
https://github.com/jenkinsci/bitbucket-oauth-plugin
1
https://github.com/bcgit/bc-java
1
https://github.com/joniles/mpxj
1
https://github.com/FCncdn/MybatisPlusTenantPluginSQLInjection-POC
1
https://github.com/ngallagher/simplexml
1
https://github.com/jenkinsci/matrix-project-plugin
1
https://github.com/membrane/soa-model
1
https://github.com/apache/maven
1
https://github.com/aws-amplify/aws-sdk-android
1
https://github.com/OpenIdentityPlatform/OpenAM
1
https://github.com/larsga/Duke
1
https://github.com/xwikisas/identity-oauth
1
https://github.com/mapfish/mapfish-print
1
https://github.com/jasongoodwin/authentikat-jwt
1
https://github.com/pmd/pmd
1
https://github.com/micronaut-projects/micronaut-core
1
https://github.com/eclipse/rdf4j
1
https://github.com/splunk/splunk-library-javalogging
1
https://github.com/apache/rocketmq
1
https://github.com/starkbank/ecdsa-java
1
https://github.com/square/retrofit
1
https://github.com/apache/lucene-solr
1
https://github.com/esigate/esigate
1
https://github.com/apache/activemq-apollo
1
https://github.com/anchore/grype
1
https://github.com/orientechnologies/orientdb
1
https://github.com/dromara/Sa-Token
1
https://github.com/apache/logging-log4j2
1
https://github.com/rapid7/metasploit-framework
1
https://github.com/jenkinsci/mstest-plugin
1
https://github.com/scifio/scifio
1
https://github.com/apache/juddi
1
https://github.com/jenkinsci/job-dsl-plugin
1
https://github.com/SAP/cloud-security-services-integration-library
1
https://github.com/xwiki-contrib/oidc
1
https://github.com/nablarch/nablarch-fw-web
1
https://github.com/typelevel/fs2
1
https://github.com/apache/tika
1
https://github.com/jenkinsci/workflow-remote-loader-plugin
1
https://github.com/zhangdaiscott/jeecg-boot
1
https://github.com/killme2008/aviatorscript
1
https://bitbucket.org/connect2id/nimbus-jose-jwt
1
https://github.com/PowerNukkit/PowerNukkit
1
https://github.com/apache/nifi
1
https://github.com/opencrx/opencrx
1
https://github.com/apache/mina-sshd
1