org.apache.juddi:juddi-client
Maven2 known CVEs affecting this package
Aggregated from OSV, GitHub Security Advisories, NVD, and vendor advisories. Each CVE links to its full detail page with vendor advisories, patches, fixed versions, and remediation guidance.
CVEs affecting org.apache.juddi:juddi-clientpage 1 of 1
- CVE-2015-5241MEDIUMCVSS 6.1EG 6.1✓ Fixed in 3.2.02017-05-19
vulnerable: 3.1.2, 3.1.3, 3.1.4, 3.1.5
After logging into the portal, the logout jsp page redirects the browser back to the login page after. It is feasible for malicious users to redirect the browser to an unintended web page in Apache jUDDI 3.1.2, 3.1.3, 3.1.4, and 3.1.5 when…
- CVE-2018-1307HIGHCVSS 8.1EG 8.1✓ Fixed in 3.3.52018-02-09
vulnerable: 3.2.0 ... 3.3.4 (7 versions)
In Apache jUDDI 3.2 through 3.3.4, if using the WADL2Java or WSDL2Java classes, which parse a local or remote XML document and then mediates the data structures into UDDI data structures, there are little protections present against entity…
Check whether org.apache.juddi:juddi-client is used in your infrastructure
EchelonGraph scans your cloud and SBOMs to map every package to your actual deployments. See blast radius for org.apache.juddi:juddi-client CVEs against the assets you own.
Start Free Scan →