Maven Package Vulnerabilities
All 3,122 Java / JVM artifacts with known CVEs, ranked by live CVE volume — 8,139 package-to-CVE mappings with affected ranges and fixed versions. Updated continuously as new vulnerabilities publish.
- 651.org.springframework.ldap:spring-ldap-core3 CVEs
- 652.org.springframework:spring3 CVEs
- 653.org.springframework:spring-context3 CVEs
- 654.org.springframework:spring-messaging3 CVEs
- 655.org.thymeleaf:thymeleaf3 CVEs
- 656.org.thymeleaf:thymeleaf-spring63 CVEs
- 657.org.verapdf:validation-model3 CVEs
- 658.org.verapdf:validation-model-jakarta3 CVEs
- 659.org.webjars.npm:xlsx3 CVEs
- 660.org.wildfly.core:wildfly-server3 CVEs
- 661.org.wso2.am:am-parent3 CVEs
- 662.org.wso2.carbon.registry:carbon-registry3 CVEs
- 663.org.xwiki.platform:xwiki-platform-icon-ui3 CVEs
- 664.org.xwiki.platform:xwiki-platform-invitation-ui3 CVEs
- 665.org.xwiki.platform:xwiki-platform-panels-ui3 CVEs
- 666.org.xwiki.platform:xwiki-platform-search-solr-api3 CVEs
- 667.org.xwiki.platform:xwiki-platform-security-requiredrights-default3 CVEs
- 668.ro.pippo:pippo-core3 CVEs
- 669.tech.powerjob:powerjob-server-starter3 CVEs
- 670.aendter.jenkins.plugins:filesystem-list-parameter-plugin2 CVEs
- 671.ai.djl:api2 CVEs
- 672.ch.qos.logback:logback-classic2 CVEs
- 673.cn.dev33:sa-token-core2 CVEs
- 674.cn.hippo4j:hippo4j-all2 CVEs
- 675.cn.hippo4j:hippo4j-core2 CVEs
- 676.co.fs2:fs2-io_2.122 CVEs
- 677.co.fs2:fs2-io_2.132 CVEs
- 678.co.fs2:fs2-io_32 CVEs
- 679.com.aizuda:snail-job2 CVEs
- 680.com.alauda.jenkins.plugins:alauda-devops-pipeline2 CVEs
- 681.com.alipay.sofa:hessian2 CVEs
- 682.com.amazonaws:aws-encryption-sdk-java2 CVEs
- 683.com.amazonaws:codedeploy2 CVEs
- 684.com.apica:ApicaLoadtest2 CVEs
- 685.com.arcadedb:arcadedb-server2 CVEs
- 686.com.barchart.jenkins:maven-release-cascade2 CVEs
- 687.com.blazemeter.plugins:BlazeMeterJenkinsPlugin2 CVEs
- 688.com.bstek.ureport:ureport2-console2 CVEs
- 689.com.charleskorn.kaml:kaml2 CVEs
- 690.com.compuware.jenkins:compuware-ispw-operations2 CVEs
- 691.com.compuware.jenkins:compuware-scm-downloader2 CVEs
- 692.com.compuware.jenkins:compuware-topaz-utilities2 CVEs
- 693.com.compuware.jenkins:compuware-xpediter-code-coverage2 CVEs
- 694.com.cronutils:cron-utils2 CVEs
- 695.com.datadoghq:dd-java-agent2 CVEs
- 696.com.drewnoakes:metadata-extractor2 CVEs
- 697.com.erudika:para-core2 CVEs
- 698.com.erudika:para-server2 CVEs
- 699.com.esotericsoftware.yamlbeans:yamlbeans2 CVEs
- 700.com.fasterxml.jackson.dataformat:jackson-dataformat-xml2 CVEs
Which Maven packages run in YOUR stack?
EchelonGraph inventories your dependencies and correlates them against live CVE intelligence — affected ranges, fixed versions, and blast radius in one graph.
Start Free Scan →