Skip to content

feat(ci): add GitHub Actions workflow for Java code formatting #21

feat(ci): add GitHub Actions workflow for Java code formatting

feat(ci): add GitHub Actions workflow for Java code formatting #21

Triggered via push December 31, 2025 18:04
Status Success
Total duration 4m 32s
Artifacts 4

ci.yml

on: push
Matrix: Build and Test
Fit to window
Zoom out
Zoom in

Annotations

27 errors, 138 warnings, and 136 notices
Code Quality
Process completed with exit code 1.
Vulnerable declared dependency: nsecbunker-client/pom.xml#L36
Provides transitive vulnerable dependency maven:org.apache.tomcat.embed:tomcat-embed-core:10.1.19 * [CVE-2025-31651](https://www.mend.io/vulnerability-database/CVE-2025-31651?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-50379](https://www.mend.io/vulnerability-database/CVE-2024-50379?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-56337](https://www.mend.io/vulnerability-database/CVE-2024-56337?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2025-24813](https://www.mend.io/vulnerability-database/CVE-2025-24813?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-52316](https://www.mend.io/vulnerability-database/CVE-2024-52316?utm_source=Jetbrains) 9.8 Unchecked Error Condition * [CVE-2025-55754](https://www.mend.io/vulnerability-database/CVE-2025-55754?utm_source=Jetbrains) 9.6 Insufficient Information * [CVE-2024-38286](https://www.mend.io/vulnerability-database/CVE-2024-38286?utm_source=Jetbrains) 8.6 Allocation of Resources Without Limits or Throttling * [CVE-2024-34750](https://www.mend.io/vulnerability-database/CVE-2024-34750?utm_source=Jetbrains) 7.5 Improper Handling of Exceptional Conditions * [CVE-2025-55752](https://www.mend.io/vulnerability-database/CVE-2025-55752?utm_source=Jetbrains) 7.5 Insufficient Information * [CVE-2025-48989](https://www.mend.io/vulnerability-database/CVE-2025-48989?utm_source=Jetbrains) 7.5 Insufficient Information Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-monitoring/pom.xml#L22
Provides transitive vulnerable dependency maven:org.apache.tomcat.embed:tomcat-embed-core:10.1.19 * [CVE-2025-31651](https://www.mend.io/vulnerability-database/CVE-2025-31651?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-50379](https://www.mend.io/vulnerability-database/CVE-2024-50379?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-56337](https://www.mend.io/vulnerability-database/CVE-2024-56337?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2025-24813](https://www.mend.io/vulnerability-database/CVE-2025-24813?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-52316](https://www.mend.io/vulnerability-database/CVE-2024-52316?utm_source=Jetbrains) 9.8 Unchecked Error Condition * [CVE-2025-55754](https://www.mend.io/vulnerability-database/CVE-2025-55754?utm_source=Jetbrains) 9.6 Insufficient Information * [CVE-2024-38286](https://www.mend.io/vulnerability-database/CVE-2024-38286?utm_source=Jetbrains) 8.6 Allocation of Resources Without Limits or Throttling * [CVE-2024-34750](https://www.mend.io/vulnerability-database/CVE-2024-34750?utm_source=Jetbrains) 7.5 Improper Handling of Exceptional Conditions * [CVE-2025-55752](https://www.mend.io/vulnerability-database/CVE-2025-55752?utm_source=Jetbrains) 7.5 Insufficient Information * [CVE-2025-48989](https://www.mend.io/vulnerability-database/CVE-2025-48989?utm_source=Jetbrains) 7.5 Insufficient Information Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-e2e/pom.xml#L54
Provides transitive vulnerable dependency maven:org.apache.tomcat.embed:tomcat-embed-core:10.1.19 * [CVE-2025-31651](https://www.mend.io/vulnerability-database/CVE-2025-31651?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-50379](https://www.mend.io/vulnerability-database/CVE-2024-50379?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-56337](https://www.mend.io/vulnerability-database/CVE-2024-56337?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2025-24813](https://www.mend.io/vulnerability-database/CVE-2025-24813?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-52316](https://www.mend.io/vulnerability-database/CVE-2024-52316?utm_source=Jetbrains) 9.8 Unchecked Error Condition * [CVE-2025-55754](https://www.mend.io/vulnerability-database/CVE-2025-55754?utm_source=Jetbrains) 9.6 Insufficient Information * [CVE-2024-38286](https://www.mend.io/vulnerability-database/CVE-2024-38286?utm_source=Jetbrains) 8.6 Allocation of Resources Without Limits or Throttling * [CVE-2024-34750](https://www.mend.io/vulnerability-database/CVE-2024-34750?utm_source=Jetbrains) 7.5 Improper Handling of Exceptional Conditions * [CVE-2025-55752](https://www.mend.io/vulnerability-database/CVE-2025-55752?utm_source=Jetbrains) 7.5 Insufficient Information * [CVE-2025-48989](https://www.mend.io/vulnerability-database/CVE-2025-48989?utm_source=Jetbrains) 7.5 Insufficient Information Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-spring-boot-starter/pom.xml#L26
Provides transitive vulnerable dependency maven:org.apache.tomcat.embed:tomcat-embed-core:10.1.19 * [CVE-2025-31651](https://www.mend.io/vulnerability-database/CVE-2025-31651?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-50379](https://www.mend.io/vulnerability-database/CVE-2024-50379?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-56337](https://www.mend.io/vulnerability-database/CVE-2024-56337?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2025-24813](https://www.mend.io/vulnerability-database/CVE-2025-24813?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-52316](https://www.mend.io/vulnerability-database/CVE-2024-52316?utm_source=Jetbrains) 9.8 Unchecked Error Condition * [CVE-2025-55754](https://www.mend.io/vulnerability-database/CVE-2025-55754?utm_source=Jetbrains) 9.6 Insufficient Information * [CVE-2024-38286](https://www.mend.io/vulnerability-database/CVE-2024-38286?utm_source=Jetbrains) 8.6 Allocation of Resources Without Limits or Throttling * [CVE-2024-34750](https://www.mend.io/vulnerability-database/CVE-2024-34750?utm_source=Jetbrains) 7.5 Improper Handling of Exceptional Conditions * [CVE-2025-55752](https://www.mend.io/vulnerability-database/CVE-2025-55752?utm_source=Jetbrains) 7.5 Insufficient Information * [CVE-2025-48989](https://www.mend.io/vulnerability-database/CVE-2025-48989?utm_source=Jetbrains) 7.5 Insufficient Information Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-it/pom.xml#L25
Provides transitive vulnerable dependency maven:org.apache.tomcat.embed:tomcat-embed-core:10.1.19 * [CVE-2025-31651](https://www.mend.io/vulnerability-database/CVE-2025-31651?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-50379](https://www.mend.io/vulnerability-database/CVE-2024-50379?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-56337](https://www.mend.io/vulnerability-database/CVE-2024-56337?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2025-24813](https://www.mend.io/vulnerability-database/CVE-2025-24813?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-52316](https://www.mend.io/vulnerability-database/CVE-2024-52316?utm_source=Jetbrains) 9.8 Unchecked Error Condition * [CVE-2025-55754](https://www.mend.io/vulnerability-database/CVE-2025-55754?utm_source=Jetbrains) 9.6 Insufficient Information * [CVE-2024-38286](https://www.mend.io/vulnerability-database/CVE-2024-38286?utm_source=Jetbrains) 8.6 Allocation of Resources Without Limits or Throttling * [CVE-2024-34750](https://www.mend.io/vulnerability-database/CVE-2024-34750?utm_source=Jetbrains) 7.5 Improper Handling of Exceptional Conditions * [CVE-2025-55752](https://www.mend.io/vulnerability-database/CVE-2025-55752?utm_source=Jetbrains) 7.5 Insufficient Information * [CVE-2025-48989](https://www.mend.io/vulnerability-database/CVE-2025-48989?utm_source=Jetbrains) 7.5 Insufficient Information Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-core/pom.xml#L22
Provides transitive vulnerable dependency maven:org.apache.tomcat.embed:tomcat-embed-core:10.1.19 * [CVE-2025-31651](https://www.mend.io/vulnerability-database/CVE-2025-31651?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-50379](https://www.mend.io/vulnerability-database/CVE-2024-50379?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-56337](https://www.mend.io/vulnerability-database/CVE-2024-56337?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2025-24813](https://www.mend.io/vulnerability-database/CVE-2025-24813?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-52316](https://www.mend.io/vulnerability-database/CVE-2024-52316?utm_source=Jetbrains) 9.8 Unchecked Error Condition * [CVE-2025-55754](https://www.mend.io/vulnerability-database/CVE-2025-55754?utm_source=Jetbrains) 9.6 Insufficient Information * [CVE-2024-38286](https://www.mend.io/vulnerability-database/CVE-2024-38286?utm_source=Jetbrains) 8.6 Allocation of Resources Without Limits or Throttling * [CVE-2024-34750](https://www.mend.io/vulnerability-database/CVE-2024-34750?utm_source=Jetbrains) 7.5 Improper Handling of Exceptional Conditions * [CVE-2025-55752](https://www.mend.io/vulnerability-database/CVE-2025-55752?utm_source=Jetbrains) 7.5 Insufficient Information * [CVE-2025-48989](https://www.mend.io/vulnerability-database/CVE-2025-48989?utm_source=Jetbrains) 7.5 Insufficient Information Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-chaos/pom.xml#L44
Provides transitive vulnerable dependency maven:org.apache.tomcat.embed:tomcat-embed-core:10.1.19 * [CVE-2025-31651](https://www.mend.io/vulnerability-database/CVE-2025-31651?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-50379](https://www.mend.io/vulnerability-database/CVE-2024-50379?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-56337](https://www.mend.io/vulnerability-database/CVE-2024-56337?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2025-24813](https://www.mend.io/vulnerability-database/CVE-2025-24813?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-52316](https://www.mend.io/vulnerability-database/CVE-2024-52316?utm_source=Jetbrains) 9.8 Unchecked Error Condition * [CVE-2025-55754](https://www.mend.io/vulnerability-database/CVE-2025-55754?utm_source=Jetbrains) 9.6 Insufficient Information * [CVE-2024-38286](https://www.mend.io/vulnerability-database/CVE-2024-38286?utm_source=Jetbrains) 8.6 Allocation of Resources Without Limits or Throttling * [CVE-2024-34750](https://www.mend.io/vulnerability-database/CVE-2024-34750?utm_source=Jetbrains) 7.5 Improper Handling of Exceptional Conditions * [CVE-2025-55752](https://www.mend.io/vulnerability-database/CVE-2025-55752?utm_source=Jetbrains) 7.5 Insufficient Information * [CVE-2025-48989](https://www.mend.io/vulnerability-database/CVE-2025-48989?utm_source=Jetbrains) 7.5 Insufficient Information Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-connection/pom.xml#L28
Provides transitive vulnerable dependency maven:org.apache.tomcat.embed:tomcat-embed-core:10.1.19 * [CVE-2025-31651](https://www.mend.io/vulnerability-database/CVE-2025-31651?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-50379](https://www.mend.io/vulnerability-database/CVE-2024-50379?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-56337](https://www.mend.io/vulnerability-database/CVE-2024-56337?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2025-24813](https://www.mend.io/vulnerability-database/CVE-2025-24813?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-52316](https://www.mend.io/vulnerability-database/CVE-2024-52316?utm_source=Jetbrains) 9.8 Unchecked Error Condition * [CVE-2025-55754](https://www.mend.io/vulnerability-database/CVE-2025-55754?utm_source=Jetbrains) 9.6 Insufficient Information * [CVE-2024-38286](https://www.mend.io/vulnerability-database/CVE-2024-38286?utm_source=Jetbrains) 8.6 Allocation of Resources Without Limits or Throttling * [CVE-2024-34750](https://www.mend.io/vulnerability-database/CVE-2024-34750?utm_source=Jetbrains) 7.5 Improper Handling of Exceptional Conditions * [CVE-2025-55752](https://www.mend.io/vulnerability-database/CVE-2025-55752?utm_source=Jetbrains) 7.5 Insufficient Information * [CVE-2025-48989](https://www.mend.io/vulnerability-database/CVE-2025-48989?utm_source=Jetbrains) 7.5 Insufficient Information Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-account/pom.xml#L22
Provides transitive vulnerable dependency maven:org.apache.tomcat.embed:tomcat-embed-core:10.1.19 * [CVE-2025-31651](https://www.mend.io/vulnerability-database/CVE-2025-31651?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-50379](https://www.mend.io/vulnerability-database/CVE-2024-50379?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-56337](https://www.mend.io/vulnerability-database/CVE-2024-56337?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2025-24813](https://www.mend.io/vulnerability-database/CVE-2025-24813?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-52316](https://www.mend.io/vulnerability-database/CVE-2024-52316?utm_source=Jetbrains) 9.8 Unchecked Error Condition * [CVE-2025-55754](https://www.mend.io/vulnerability-database/CVE-2025-55754?utm_source=Jetbrains) 9.6 Insufficient Information * [CVE-2024-38286](https://www.mend.io/vulnerability-database/CVE-2024-38286?utm_source=Jetbrains) 8.6 Allocation of Resources Without Limits or Throttling * [CVE-2024-34750](https://www.mend.io/vulnerability-database/CVE-2024-34750?utm_source=Jetbrains) 7.5 Improper Handling of Exceptional Conditions * [CVE-2025-55752](https://www.mend.io/vulnerability-database/CVE-2025-55752?utm_source=Jetbrains) 7.5 Insufficient Information * [CVE-2025-48989](https://www.mend.io/vulnerability-database/CVE-2025-48989?utm_source=Jetbrains) 7.5 Insufficient Information Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-protocol/pom.xml#L32
Provides transitive vulnerable dependency maven:org.apache.tomcat.embed:tomcat-embed-core:10.1.19 * [CVE-2025-31651](https://www.mend.io/vulnerability-database/CVE-2025-31651?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-50379](https://www.mend.io/vulnerability-database/CVE-2024-50379?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-56337](https://www.mend.io/vulnerability-database/CVE-2024-56337?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2025-24813](https://www.mend.io/vulnerability-database/CVE-2025-24813?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-52316](https://www.mend.io/vulnerability-database/CVE-2024-52316?utm_source=Jetbrains) 9.8 Unchecked Error Condition * [CVE-2025-55754](https://www.mend.io/vulnerability-database/CVE-2025-55754?utm_source=Jetbrains) 9.6 Insufficient Information * [CVE-2024-38286](https://www.mend.io/vulnerability-database/CVE-2024-38286?utm_source=Jetbrains) 8.6 Allocation of Resources Without Limits or Throttling * [CVE-2024-34750](https://www.mend.io/vulnerability-database/CVE-2024-34750?utm_source=Jetbrains) 7.5 Improper Handling of Exceptional Conditions * [CVE-2025-55752](https://www.mend.io/vulnerability-database/CVE-2025-55752?utm_source=Jetbrains) 7.5 Insufficient Information * [CVE-2025-48989](https://www.mend.io/vulnerability-database/CVE-2025-48989?utm_source=Jetbrains) 7.5 Insufficient Information Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-admin/pom.xml#L22
Provides transitive vulnerable dependency maven:org.apache.tomcat.embed:tomcat-embed-core:10.1.19 * [CVE-2025-31651](https://www.mend.io/vulnerability-database/CVE-2025-31651?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-50379](https://www.mend.io/vulnerability-database/CVE-2024-50379?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-56337](https://www.mend.io/vulnerability-database/CVE-2024-56337?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2025-24813](https://www.mend.io/vulnerability-database/CVE-2025-24813?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-52316](https://www.mend.io/vulnerability-database/CVE-2024-52316?utm_source=Jetbrains) 9.8 Unchecked Error Condition * [CVE-2025-55754](https://www.mend.io/vulnerability-database/CVE-2025-55754?utm_source=Jetbrains) 9.6 Insufficient Information * [CVE-2024-38286](https://www.mend.io/vulnerability-database/CVE-2024-38286?utm_source=Jetbrains) 8.6 Allocation of Resources Without Limits or Throttling * [CVE-2024-34750](https://www.mend.io/vulnerability-database/CVE-2024-34750?utm_source=Jetbrains) 7.5 Improper Handling of Exceptional Conditions * [CVE-2025-55752](https://www.mend.io/vulnerability-database/CVE-2025-55752?utm_source=Jetbrains) 7.5 Insufficient Information * [CVE-2025-48989](https://www.mend.io/vulnerability-database/CVE-2025-48989?utm_source=Jetbrains) 7.5 Insufficient Information Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-perf/pom.xml#L49
Provides transitive vulnerable dependency maven:org.apache.tomcat.embed:tomcat-embed-core:10.1.19 * [CVE-2025-31651](https://www.mend.io/vulnerability-database/CVE-2025-31651?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-50379](https://www.mend.io/vulnerability-database/CVE-2024-50379?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-56337](https://www.mend.io/vulnerability-database/CVE-2024-56337?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2025-24813](https://www.mend.io/vulnerability-database/CVE-2025-24813?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-52316](https://www.mend.io/vulnerability-database/CVE-2024-52316?utm_source=Jetbrains) 9.8 Unchecked Error Condition * [CVE-2025-55754](https://www.mend.io/vulnerability-database/CVE-2025-55754?utm_source=Jetbrains) 9.6 Insufficient Information * [CVE-2024-38286](https://www.mend.io/vulnerability-database/CVE-2024-38286?utm_source=Jetbrains) 8.6 Allocation of Resources Without Limits or Throttling * [CVE-2024-34750](https://www.mend.io/vulnerability-database/CVE-2024-34750?utm_source=Jetbrains) 7.5 Improper Handling of Exceptional Conditions * [CVE-2025-55752](https://www.mend.io/vulnerability-database/CVE-2025-55752?utm_source=Jetbrains) 7.5 Insufficient Information * [CVE-2025-48989](https://www.mend.io/vulnerability-database/CVE-2025-48989?utm_source=Jetbrains) 7.5 Insufficient Information Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-security/pom.xml#L19
Provides transitive vulnerable dependency maven:org.apache.tomcat.embed:tomcat-embed-core:10.1.19 * [CVE-2025-31651](https://www.mend.io/vulnerability-database/CVE-2025-31651?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-50379](https://www.mend.io/vulnerability-database/CVE-2024-50379?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-56337](https://www.mend.io/vulnerability-database/CVE-2024-56337?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2025-24813](https://www.mend.io/vulnerability-database/CVE-2025-24813?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-52316](https://www.mend.io/vulnerability-database/CVE-2024-52316?utm_source=Jetbrains) 9.8 Unchecked Error Condition * [CVE-2025-55754](https://www.mend.io/vulnerability-database/CVE-2025-55754?utm_source=Jetbrains) 9.6 Insufficient Information * [CVE-2024-38286](https://www.mend.io/vulnerability-database/CVE-2024-38286?utm_source=Jetbrains) 8.6 Allocation of Resources Without Limits or Throttling * [CVE-2024-34750](https://www.mend.io/vulnerability-database/CVE-2024-34750?utm_source=Jetbrains) 7.5 Improper Handling of Exceptional Conditions * [CVE-2025-55752](https://www.mend.io/vulnerability-database/CVE-2025-55752?utm_source=Jetbrains) 7.5 Insufficient Information * [CVE-2025-48989](https://www.mend.io/vulnerability-database/CVE-2025-48989?utm_source=Jetbrains) 7.5 Insufficient Information Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-client/pom.xml#L36
Provides transitive vulnerable dependency maven:org.apache.tomcat.embed:tomcat-embed-core:10.1.19 * [CVE-2025-31651](https://www.mend.io/vulnerability-database/CVE-2025-31651?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-50379](https://www.mend.io/vulnerability-database/CVE-2024-50379?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-56337](https://www.mend.io/vulnerability-database/CVE-2024-56337?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2025-24813](https://www.mend.io/vulnerability-database/CVE-2025-24813?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-52316](https://www.mend.io/vulnerability-database/CVE-2024-52316?utm_source=Jetbrains) 9.8 Unchecked Error Condition * [CVE-2025-55754](https://www.mend.io/vulnerability-database/CVE-2025-55754?utm_source=Jetbrains) 9.6 Insufficient Information * [CVE-2024-38286](https://www.mend.io/vulnerability-database/CVE-2024-38286?utm_source=Jetbrains) 8.6 Allocation of Resources Without Limits or Throttling * [CVE-2024-34750](https://www.mend.io/vulnerability-database/CVE-2024-34750?utm_source=Jetbrains) 7.5 Improper Handling of Exceptional Conditions * [CVE-2025-55752](https://www.mend.io/vulnerability-database/CVE-2025-55752?utm_source=Jetbrains) 7.5 Insufficient Information * [CVE-2025-48989](https://www.mend.io/vulnerability-database/CVE-2025-48989?utm_source=Jetbrains) 7.5 Insufficient Information Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-monitoring/pom.xml#L22
Provides transitive vulnerable dependency maven:org.apache.tomcat.embed:tomcat-embed-core:10.1.19 * [CVE-2025-31651](https://www.mend.io/vulnerability-database/CVE-2025-31651?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-50379](https://www.mend.io/vulnerability-database/CVE-2024-50379?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-56337](https://www.mend.io/vulnerability-database/CVE-2024-56337?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2025-24813](https://www.mend.io/vulnerability-database/CVE-2025-24813?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-52316](https://www.mend.io/vulnerability-database/CVE-2024-52316?utm_source=Jetbrains) 9.8 Unchecked Error Condition * [CVE-2025-55754](https://www.mend.io/vulnerability-database/CVE-2025-55754?utm_source=Jetbrains) 9.6 Insufficient Information * [CVE-2024-38286](https://www.mend.io/vulnerability-database/CVE-2024-38286?utm_source=Jetbrains) 8.6 Allocation of Resources Without Limits or Throttling * [CVE-2024-34750](https://www.mend.io/vulnerability-database/CVE-2024-34750?utm_source=Jetbrains) 7.5 Improper Handling of Exceptional Conditions * [CVE-2025-55752](https://www.mend.io/vulnerability-database/CVE-2025-55752?utm_source=Jetbrains) 7.5 Insufficient Information * [CVE-2025-48989](https://www.mend.io/vulnerability-database/CVE-2025-48989?utm_source=Jetbrains) 7.5 Insufficient Information Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-e2e/pom.xml#L54
Provides transitive vulnerable dependency maven:org.apache.tomcat.embed:tomcat-embed-core:10.1.19 * [CVE-2025-31651](https://www.mend.io/vulnerability-database/CVE-2025-31651?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-50379](https://www.mend.io/vulnerability-database/CVE-2024-50379?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-56337](https://www.mend.io/vulnerability-database/CVE-2024-56337?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2025-24813](https://www.mend.io/vulnerability-database/CVE-2025-24813?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-52316](https://www.mend.io/vulnerability-database/CVE-2024-52316?utm_source=Jetbrains) 9.8 Unchecked Error Condition * [CVE-2025-55754](https://www.mend.io/vulnerability-database/CVE-2025-55754?utm_source=Jetbrains) 9.6 Insufficient Information * [CVE-2024-38286](https://www.mend.io/vulnerability-database/CVE-2024-38286?utm_source=Jetbrains) 8.6 Allocation of Resources Without Limits or Throttling * [CVE-2024-34750](https://www.mend.io/vulnerability-database/CVE-2024-34750?utm_source=Jetbrains) 7.5 Improper Handling of Exceptional Conditions * [CVE-2025-55752](https://www.mend.io/vulnerability-database/CVE-2025-55752?utm_source=Jetbrains) 7.5 Insufficient Information * [CVE-2025-48989](https://www.mend.io/vulnerability-database/CVE-2025-48989?utm_source=Jetbrains) 7.5 Insufficient Information Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-spring-boot-starter/pom.xml#L26
Provides transitive vulnerable dependency maven:org.apache.tomcat.embed:tomcat-embed-core:10.1.19 * [CVE-2025-31651](https://www.mend.io/vulnerability-database/CVE-2025-31651?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-50379](https://www.mend.io/vulnerability-database/CVE-2024-50379?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-56337](https://www.mend.io/vulnerability-database/CVE-2024-56337?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2025-24813](https://www.mend.io/vulnerability-database/CVE-2025-24813?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-52316](https://www.mend.io/vulnerability-database/CVE-2024-52316?utm_source=Jetbrains) 9.8 Unchecked Error Condition * [CVE-2025-55754](https://www.mend.io/vulnerability-database/CVE-2025-55754?utm_source=Jetbrains) 9.6 Insufficient Information * [CVE-2024-38286](https://www.mend.io/vulnerability-database/CVE-2024-38286?utm_source=Jetbrains) 8.6 Allocation of Resources Without Limits or Throttling * [CVE-2024-34750](https://www.mend.io/vulnerability-database/CVE-2024-34750?utm_source=Jetbrains) 7.5 Improper Handling of Exceptional Conditions * [CVE-2025-55752](https://www.mend.io/vulnerability-database/CVE-2025-55752?utm_source=Jetbrains) 7.5 Insufficient Information * [CVE-2025-48989](https://www.mend.io/vulnerability-database/CVE-2025-48989?utm_source=Jetbrains) 7.5 Insufficient Information Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-it/pom.xml#L25
Provides transitive vulnerable dependency maven:org.apache.tomcat.embed:tomcat-embed-core:10.1.19 * [CVE-2025-31651](https://www.mend.io/vulnerability-database/CVE-2025-31651?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-50379](https://www.mend.io/vulnerability-database/CVE-2024-50379?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-56337](https://www.mend.io/vulnerability-database/CVE-2024-56337?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2025-24813](https://www.mend.io/vulnerability-database/CVE-2025-24813?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-52316](https://www.mend.io/vulnerability-database/CVE-2024-52316?utm_source=Jetbrains) 9.8 Unchecked Error Condition * [CVE-2025-55754](https://www.mend.io/vulnerability-database/CVE-2025-55754?utm_source=Jetbrains) 9.6 Insufficient Information * [CVE-2024-38286](https://www.mend.io/vulnerability-database/CVE-2024-38286?utm_source=Jetbrains) 8.6 Allocation of Resources Without Limits or Throttling * [CVE-2024-34750](https://www.mend.io/vulnerability-database/CVE-2024-34750?utm_source=Jetbrains) 7.5 Improper Handling of Exceptional Conditions * [CVE-2025-55752](https://www.mend.io/vulnerability-database/CVE-2025-55752?utm_source=Jetbrains) 7.5 Insufficient Information * [CVE-2025-48989](https://www.mend.io/vulnerability-database/CVE-2025-48989?utm_source=Jetbrains) 7.5 Insufficient Information Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-core/pom.xml#L22
Provides transitive vulnerable dependency maven:org.apache.tomcat.embed:tomcat-embed-core:10.1.19 * [CVE-2025-31651](https://www.mend.io/vulnerability-database/CVE-2025-31651?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-50379](https://www.mend.io/vulnerability-database/CVE-2024-50379?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-56337](https://www.mend.io/vulnerability-database/CVE-2024-56337?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2025-24813](https://www.mend.io/vulnerability-database/CVE-2025-24813?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-52316](https://www.mend.io/vulnerability-database/CVE-2024-52316?utm_source=Jetbrains) 9.8 Unchecked Error Condition * [CVE-2025-55754](https://www.mend.io/vulnerability-database/CVE-2025-55754?utm_source=Jetbrains) 9.6 Insufficient Information * [CVE-2024-38286](https://www.mend.io/vulnerability-database/CVE-2024-38286?utm_source=Jetbrains) 8.6 Allocation of Resources Without Limits or Throttling * [CVE-2024-34750](https://www.mend.io/vulnerability-database/CVE-2024-34750?utm_source=Jetbrains) 7.5 Improper Handling of Exceptional Conditions * [CVE-2025-55752](https://www.mend.io/vulnerability-database/CVE-2025-55752?utm_source=Jetbrains) 7.5 Insufficient Information * [CVE-2025-48989](https://www.mend.io/vulnerability-database/CVE-2025-48989?utm_source=Jetbrains) 7.5 Insufficient Information Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-chaos/pom.xml#L44
Provides transitive vulnerable dependency maven:org.apache.tomcat.embed:tomcat-embed-core:10.1.19 * [CVE-2025-31651](https://www.mend.io/vulnerability-database/CVE-2025-31651?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-50379](https://www.mend.io/vulnerability-database/CVE-2024-50379?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-56337](https://www.mend.io/vulnerability-database/CVE-2024-56337?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2025-24813](https://www.mend.io/vulnerability-database/CVE-2025-24813?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-52316](https://www.mend.io/vulnerability-database/CVE-2024-52316?utm_source=Jetbrains) 9.8 Unchecked Error Condition * [CVE-2025-55754](https://www.mend.io/vulnerability-database/CVE-2025-55754?utm_source=Jetbrains) 9.6 Insufficient Information * [CVE-2024-38286](https://www.mend.io/vulnerability-database/CVE-2024-38286?utm_source=Jetbrains) 8.6 Allocation of Resources Without Limits or Throttling * [CVE-2024-34750](https://www.mend.io/vulnerability-database/CVE-2024-34750?utm_source=Jetbrains) 7.5 Improper Handling of Exceptional Conditions * [CVE-2025-55752](https://www.mend.io/vulnerability-database/CVE-2025-55752?utm_source=Jetbrains) 7.5 Insufficient Information * [CVE-2025-48989](https://www.mend.io/vulnerability-database/CVE-2025-48989?utm_source=Jetbrains) 7.5 Insufficient Information Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-connection/pom.xml#L28
Provides transitive vulnerable dependency maven:org.apache.tomcat.embed:tomcat-embed-core:10.1.19 * [CVE-2025-31651](https://www.mend.io/vulnerability-database/CVE-2025-31651?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-50379](https://www.mend.io/vulnerability-database/CVE-2024-50379?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-56337](https://www.mend.io/vulnerability-database/CVE-2024-56337?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2025-24813](https://www.mend.io/vulnerability-database/CVE-2025-24813?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-52316](https://www.mend.io/vulnerability-database/CVE-2024-52316?utm_source=Jetbrains) 9.8 Unchecked Error Condition * [CVE-2025-55754](https://www.mend.io/vulnerability-database/CVE-2025-55754?utm_source=Jetbrains) 9.6 Insufficient Information * [CVE-2024-38286](https://www.mend.io/vulnerability-database/CVE-2024-38286?utm_source=Jetbrains) 8.6 Allocation of Resources Without Limits or Throttling * [CVE-2024-34750](https://www.mend.io/vulnerability-database/CVE-2024-34750?utm_source=Jetbrains) 7.5 Improper Handling of Exceptional Conditions * [CVE-2025-55752](https://www.mend.io/vulnerability-database/CVE-2025-55752?utm_source=Jetbrains) 7.5 Insufficient Information * [CVE-2025-48989](https://www.mend.io/vulnerability-database/CVE-2025-48989?utm_source=Jetbrains) 7.5 Insufficient Information Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-account/pom.xml#L22
Provides transitive vulnerable dependency maven:org.apache.tomcat.embed:tomcat-embed-core:10.1.19 * [CVE-2025-31651](https://www.mend.io/vulnerability-database/CVE-2025-31651?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-50379](https://www.mend.io/vulnerability-database/CVE-2024-50379?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-56337](https://www.mend.io/vulnerability-database/CVE-2024-56337?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2025-24813](https://www.mend.io/vulnerability-database/CVE-2025-24813?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-52316](https://www.mend.io/vulnerability-database/CVE-2024-52316?utm_source=Jetbrains) 9.8 Unchecked Error Condition * [CVE-2025-55754](https://www.mend.io/vulnerability-database/CVE-2025-55754?utm_source=Jetbrains) 9.6 Insufficient Information * [CVE-2024-38286](https://www.mend.io/vulnerability-database/CVE-2024-38286?utm_source=Jetbrains) 8.6 Allocation of Resources Without Limits or Throttling * [CVE-2024-34750](https://www.mend.io/vulnerability-database/CVE-2024-34750?utm_source=Jetbrains) 7.5 Improper Handling of Exceptional Conditions * [CVE-2025-55752](https://www.mend.io/vulnerability-database/CVE-2025-55752?utm_source=Jetbrains) 7.5 Insufficient Information * [CVE-2025-48989](https://www.mend.io/vulnerability-database/CVE-2025-48989?utm_source=Jetbrains) 7.5 Insufficient Information Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-protocol/pom.xml#L32
Provides transitive vulnerable dependency maven:org.apache.tomcat.embed:tomcat-embed-core:10.1.19 * [CVE-2025-31651](https://www.mend.io/vulnerability-database/CVE-2025-31651?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-50379](https://www.mend.io/vulnerability-database/CVE-2024-50379?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-56337](https://www.mend.io/vulnerability-database/CVE-2024-56337?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2025-24813](https://www.mend.io/vulnerability-database/CVE-2025-24813?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-52316](https://www.mend.io/vulnerability-database/CVE-2024-52316?utm_source=Jetbrains) 9.8 Unchecked Error Condition * [CVE-2025-55754](https://www.mend.io/vulnerability-database/CVE-2025-55754?utm_source=Jetbrains) 9.6 Insufficient Information * [CVE-2024-38286](https://www.mend.io/vulnerability-database/CVE-2024-38286?utm_source=Jetbrains) 8.6 Allocation of Resources Without Limits or Throttling * [CVE-2024-34750](https://www.mend.io/vulnerability-database/CVE-2024-34750?utm_source=Jetbrains) 7.5 Improper Handling of Exceptional Conditions * [CVE-2025-55752](https://www.mend.io/vulnerability-database/CVE-2025-55752?utm_source=Jetbrains) 7.5 Insufficient Information * [CVE-2025-48989](https://www.mend.io/vulnerability-database/CVE-2025-48989?utm_source=Jetbrains) 7.5 Insufficient Information Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-admin/pom.xml#L22
Provides transitive vulnerable dependency maven:org.apache.tomcat.embed:tomcat-embed-core:10.1.19 * [CVE-2025-31651](https://www.mend.io/vulnerability-database/CVE-2025-31651?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-50379](https://www.mend.io/vulnerability-database/CVE-2024-50379?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-56337](https://www.mend.io/vulnerability-database/CVE-2024-56337?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2025-24813](https://www.mend.io/vulnerability-database/CVE-2025-24813?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-52316](https://www.mend.io/vulnerability-database/CVE-2024-52316?utm_source=Jetbrains) 9.8 Unchecked Error Condition * [CVE-2025-55754](https://www.mend.io/vulnerability-database/CVE-2025-55754?utm_source=Jetbrains) 9.6 Insufficient Information * [CVE-2024-38286](https://www.mend.io/vulnerability-database/CVE-2024-38286?utm_source=Jetbrains) 8.6 Allocation of Resources Without Limits or Throttling * [CVE-2024-34750](https://www.mend.io/vulnerability-database/CVE-2024-34750?utm_source=Jetbrains) 7.5 Improper Handling of Exceptional Conditions * [CVE-2025-55752](https://www.mend.io/vulnerability-database/CVE-2025-55752?utm_source=Jetbrains) 7.5 Insufficient Information * [CVE-2025-48989](https://www.mend.io/vulnerability-database/CVE-2025-48989?utm_source=Jetbrains) 7.5 Insufficient Information Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-perf/pom.xml#L49
Provides transitive vulnerable dependency maven:org.apache.tomcat.embed:tomcat-embed-core:10.1.19 * [CVE-2025-31651](https://www.mend.io/vulnerability-database/CVE-2025-31651?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-50379](https://www.mend.io/vulnerability-database/CVE-2024-50379?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-56337](https://www.mend.io/vulnerability-database/CVE-2024-56337?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2025-24813](https://www.mend.io/vulnerability-database/CVE-2025-24813?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-52316](https://www.mend.io/vulnerability-database/CVE-2024-52316?utm_source=Jetbrains) 9.8 Unchecked Error Condition * [CVE-2025-55754](https://www.mend.io/vulnerability-database/CVE-2025-55754?utm_source=Jetbrains) 9.6 Insufficient Information * [CVE-2024-38286](https://www.mend.io/vulnerability-database/CVE-2024-38286?utm_source=Jetbrains) 8.6 Allocation of Resources Without Limits or Throttling * [CVE-2024-34750](https://www.mend.io/vulnerability-database/CVE-2024-34750?utm_source=Jetbrains) 7.5 Improper Handling of Exceptional Conditions * [CVE-2025-55752](https://www.mend.io/vulnerability-database/CVE-2025-55752?utm_source=Jetbrains) 7.5 Insufficient Information * [CVE-2025-48989](https://www.mend.io/vulnerability-database/CVE-2025-48989?utm_source=Jetbrains) 7.5 Insufficient Information Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-security/pom.xml#L19
Provides transitive vulnerable dependency maven:org.apache.tomcat.embed:tomcat-embed-core:10.1.19 * [CVE-2025-31651](https://www.mend.io/vulnerability-database/CVE-2025-31651?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-50379](https://www.mend.io/vulnerability-database/CVE-2024-50379?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-56337](https://www.mend.io/vulnerability-database/CVE-2024-56337?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2025-24813](https://www.mend.io/vulnerability-database/CVE-2025-24813?utm_source=Jetbrains) 9.8 Insufficient Information * [CVE-2024-52316](https://www.mend.io/vulnerability-database/CVE-2024-52316?utm_source=Jetbrains) 9.8 Unchecked Error Condition * [CVE-2025-55754](https://www.mend.io/vulnerability-database/CVE-2025-55754?utm_source=Jetbrains) 9.6 Insufficient Information * [CVE-2024-38286](https://www.mend.io/vulnerability-database/CVE-2024-38286?utm_source=Jetbrains) 8.6 Allocation of Resources Without Limits or Throttling * [CVE-2024-34750](https://www.mend.io/vulnerability-database/CVE-2024-34750?utm_source=Jetbrains) 7.5 Improper Handling of Exceptional Conditions * [CVE-2025-55752](https://www.mend.io/vulnerability-database/CVE-2025-55752?utm_source=Jetbrains) 7.5 Insufficient Information * [CVE-2025-48989](https://www.mend.io/vulnerability-database/CVE-2025-48989?utm_source=Jetbrains) 7.5 Insufficient Information Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-admin/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-web:6.1.5 * [CVE-2024-22262](https://www.mend.io/vulnerability-database/CVE-2024-22262?utm_source=JetBrains) 8.1 Server-Side Request Forgery (SSRF) * [CVE-2025-41234](https://www.mend.io/vulnerability-database/CVE-2025-41234?utm_source=Jetbrains) 6.5 RFD Attack via "Content-Disposition" Header Sourced from Request * [CVE-2024-38809](https://www.mend.io/vulnerability-database/CVE-2024-38809?utm_source=Jetbrains) 5.3 Uncontrolled Resource Consumption ('Resource Exhaustion') Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-it/pom.xml#L25
Provides transitive vulnerable dependency maven:org.springframework:spring-webmvc:6.1.5 * [CVE-2024-38816](https://www.mend.io/vulnerability-database/CVE-2024-38816?utm_source=Jetbrains) 7.5 Path Traversal * [CVE-2024-38819](https://www.mend.io/vulnerability-database/CVE-2024-38819?utm_source=JetBrains) 7.5 Information Leak / Disclosure * [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-spring-boot-starter/pom.xml#L53
Provides transitive vulnerable dependency maven:org.springframework.boot:spring-boot-actuator-autoconfigure:3.2.4 * [CVE-2025-22235](https://www.mend.io/vulnerability-database/CVE-2025-22235?utm_source=Jetbrains) 7.3 Spring Boot EndpointRequest.to() creates wrong matcher if actuator endpoint is not exposed Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-core/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-webmvc:6.1.5 * [CVE-2024-38816](https://www.mend.io/vulnerability-database/CVE-2024-38816?utm_source=Jetbrains) 7.5 Path Traversal * [CVE-2024-38819](https://www.mend.io/vulnerability-database/CVE-2024-38819?utm_source=JetBrains) 7.5 Information Leak / Disclosure * [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-e2e/pom.xml#L54
Provides transitive vulnerable dependency maven:org.springframework:spring-core:6.1.5 * [CVE-2025-41249](https://www.mend.io/vulnerability-database/CVE-2025-41249?utm_source=Jetbrains) 7.5 CVE-2025-41249: Spring Framework Annotation Detection Vulnerability Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-spring-boot-starter/pom.xml#L26
Provides transitive vulnerable dependency maven:org.springframework:spring-web:6.1.5 * [CVE-2024-22262](https://www.mend.io/vulnerability-database/CVE-2024-22262?utm_source=JetBrains) 8.1 Server-Side Request Forgery (SSRF) * [CVE-2025-41234](https://www.mend.io/vulnerability-database/CVE-2025-41234?utm_source=Jetbrains) 6.5 RFD Attack via "Content-Disposition" Header Sourced from Request * [CVE-2024-38809](https://www.mend.io/vulnerability-database/CVE-2024-38809?utm_source=Jetbrains) 5.3 Uncontrolled Resource Consumption ('Resource Exhaustion') Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-it/pom.xml#L66
Provides transitive vulnerable dependency maven:org.springframework.boot:spring-boot:3.2.4 * [CVE-2025-22235](https://www.mend.io/vulnerability-database/CVE-2025-22235?utm_source=Jetbrains) 7.3 Spring Boot EndpointRequest.to() creates wrong matcher if actuator endpoint is not exposed Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-spring-boot-starter/pom.xml#L78
Provides transitive vulnerable dependency maven:net.minidev:json-smart:2.5.0 * [CVE-2024-57699](https://www.mend.io/vulnerability-database/CVE-2024-57699?utm_source=JetBrains) 7.5 Insufficient Information Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-client/pom.xml#L36
Provides transitive vulnerable dependency maven:org.springframework:spring-web:6.1.5 * [CVE-2024-22262](https://www.mend.io/vulnerability-database/CVE-2024-22262?utm_source=JetBrains) 8.1 Server-Side Request Forgery (SSRF) * [CVE-2025-41234](https://www.mend.io/vulnerability-database/CVE-2025-41234?utm_source=Jetbrains) 6.5 RFD Attack via "Content-Disposition" Header Sourced from Request * [CVE-2024-38809](https://www.mend.io/vulnerability-database/CVE-2024-38809?utm_source=Jetbrains) 5.3 Uncontrolled Resource Consumption ('Resource Exhaustion') Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-monitoring/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-core:6.1.5 * [CVE-2025-41249](https://www.mend.io/vulnerability-database/CVE-2025-41249?utm_source=Jetbrains) 7.5 CVE-2025-41249: Spring Framework Annotation Detection Vulnerability Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-perf/pom.xml#L49
Provides transitive vulnerable dependency maven:org.springframework:spring-webmvc:6.1.5 * [CVE-2024-38816](https://www.mend.io/vulnerability-database/CVE-2024-38816?utm_source=Jetbrains) 7.5 Path Traversal * [CVE-2024-38819](https://www.mend.io/vulnerability-database/CVE-2024-38819?utm_source=JetBrains) 7.5 Information Leak / Disclosure * [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-e2e/pom.xml#L54
Provides transitive vulnerable dependency maven:org.springframework:spring-webmvc:6.1.5 * [CVE-2024-38816](https://www.mend.io/vulnerability-database/CVE-2024-38816?utm_source=Jetbrains) 7.5 Path Traversal * [CVE-2024-38819](https://www.mend.io/vulnerability-database/CVE-2024-38819?utm_source=JetBrains) 7.5 Information Leak / Disclosure * [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-security/pom.xml#L19
Provides transitive vulnerable dependency maven:org.springframework:spring-web:6.1.5 * [CVE-2024-22262](https://www.mend.io/vulnerability-database/CVE-2024-22262?utm_source=JetBrains) 8.1 Server-Side Request Forgery (SSRF) * [CVE-2025-41234](https://www.mend.io/vulnerability-database/CVE-2025-41234?utm_source=Jetbrains) 6.5 RFD Attack via "Content-Disposition" Header Sourced from Request * [CVE-2024-38809](https://www.mend.io/vulnerability-database/CVE-2024-38809?utm_source=Jetbrains) 5.3 Uncontrolled Resource Consumption ('Resource Exhaustion') Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-connection/pom.xml#L28
Provides transitive vulnerable dependency maven:org.springframework:spring-webmvc:6.1.5 * [CVE-2024-38816](https://www.mend.io/vulnerability-database/CVE-2024-38816?utm_source=Jetbrains) 7.5 Path Traversal * [CVE-2024-38819](https://www.mend.io/vulnerability-database/CVE-2024-38819?utm_source=JetBrains) 7.5 Information Leak / Disclosure * [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-client/pom.xml#L36
Provides transitive vulnerable dependency maven:org.springframework.boot:spring-boot:3.2.4 * [CVE-2025-22235](https://www.mend.io/vulnerability-database/CVE-2025-22235?utm_source=Jetbrains) 7.3 Spring Boot EndpointRequest.to() creates wrong matcher if actuator endpoint is not exposed Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-admin/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework.boot:spring-boot:3.2.4 * [CVE-2025-22235](https://www.mend.io/vulnerability-database/CVE-2025-22235?utm_source=Jetbrains) 7.3 Spring Boot EndpointRequest.to() creates wrong matcher if actuator endpoint is not exposed Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-protocol/pom.xml#L32
Provides transitive vulnerable dependency maven:org.springframework:spring-webmvc:6.1.5 * [CVE-2024-38816](https://www.mend.io/vulnerability-database/CVE-2024-38816?utm_source=Jetbrains) 7.5 Path Traversal * [CVE-2024-38819](https://www.mend.io/vulnerability-database/CVE-2024-38819?utm_source=JetBrains) 7.5 Information Leak / Disclosure * [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-it/pom.xml#L66
Provides transitive vulnerable dependency maven:net.minidev:json-smart:2.5.0 * [CVE-2024-57699](https://www.mend.io/vulnerability-database/CVE-2024-57699?utm_source=JetBrains) 7.5 Insufficient Information Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-account/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-web:6.1.5 * [CVE-2024-22262](https://www.mend.io/vulnerability-database/CVE-2024-22262?utm_source=JetBrains) 8.1 Server-Side Request Forgery (SSRF) * [CVE-2025-41234](https://www.mend.io/vulnerability-database/CVE-2025-41234?utm_source=Jetbrains) 6.5 RFD Attack via "Content-Disposition" Header Sourced from Request * [CVE-2024-38809](https://www.mend.io/vulnerability-database/CVE-2024-38809?utm_source=Jetbrains) 5.3 Uncontrolled Resource Consumption ('Resource Exhaustion') Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-monitoring/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-web:6.1.5 * [CVE-2024-22262](https://www.mend.io/vulnerability-database/CVE-2024-22262?utm_source=JetBrains) 8.1 Server-Side Request Forgery (SSRF) * [CVE-2025-41234](https://www.mend.io/vulnerability-database/CVE-2025-41234?utm_source=Jetbrains) 6.5 RFD Attack via "Content-Disposition" Header Sourced from Request * [CVE-2024-38809](https://www.mend.io/vulnerability-database/CVE-2024-38809?utm_source=Jetbrains) 5.3 Uncontrolled Resource Consumption ('Resource Exhaustion') Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-perf/pom.xml#L49
Provides transitive vulnerable dependency maven:org.springframework.boot:spring-boot:3.2.4 * [CVE-2025-22235](https://www.mend.io/vulnerability-database/CVE-2025-22235?utm_source=Jetbrains) 7.3 Spring Boot EndpointRequest.to() creates wrong matcher if actuator endpoint is not exposed Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-monitoring/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework.boot:spring-boot:3.2.4 * [CVE-2025-22235](https://www.mend.io/vulnerability-database/CVE-2025-22235?utm_source=Jetbrains) 7.3 Spring Boot EndpointRequest.to() creates wrong matcher if actuator endpoint is not exposed Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-monitoring/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-webmvc:6.1.5 * [CVE-2024-38816](https://www.mend.io/vulnerability-database/CVE-2024-38816?utm_source=Jetbrains) 7.5 Path Traversal * [CVE-2024-38819](https://www.mend.io/vulnerability-database/CVE-2024-38819?utm_source=JetBrains) 7.5 Information Leak / Disclosure * [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-spring-boot-starter/pom.xml#L40
Provides transitive vulnerable dependency maven:org.springframework.boot:spring-boot:3.2.4 * [CVE-2025-22235](https://www.mend.io/vulnerability-database/CVE-2025-22235?utm_source=Jetbrains) 7.3 Spring Boot EndpointRequest.to() creates wrong matcher if actuator endpoint is not exposed Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-account/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-core:6.1.5 * [CVE-2025-41249](https://www.mend.io/vulnerability-database/CVE-2025-41249?utm_source=Jetbrains) 7.5 CVE-2025-41249: Spring Framework Annotation Detection Vulnerability Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-client/pom.xml#L36
Provides transitive vulnerable dependency maven:org.springframework:spring-core:6.1.5 * [CVE-2025-41249](https://www.mend.io/vulnerability-database/CVE-2025-41249?utm_source=Jetbrains) 7.5 CVE-2025-41249: Spring Framework Annotation Detection Vulnerability Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-spring-boot-starter/pom.xml#L26
Provides transitive vulnerable dependency maven:org.springframework:spring-core:6.1.5 * [CVE-2025-41249](https://www.mend.io/vulnerability-database/CVE-2025-41249?utm_source=Jetbrains) 7.5 CVE-2025-41249: Spring Framework Annotation Detection Vulnerability Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-protocol/pom.xml#L32
Provides transitive vulnerable dependency maven:org.springframework:spring-core:6.1.5 * [CVE-2025-41249](https://www.mend.io/vulnerability-database/CVE-2025-41249?utm_source=Jetbrains) 7.5 CVE-2025-41249: Spring Framework Annotation Detection Vulnerability Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-admin/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-core:6.1.5 * [CVE-2025-41249](https://www.mend.io/vulnerability-database/CVE-2025-41249?utm_source=Jetbrains) 7.5 CVE-2025-41249: Spring Framework Annotation Detection Vulnerability Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-e2e/pom.xml#L54
Provides transitive vulnerable dependency maven:org.springframework.boot:spring-boot:3.2.4 * [CVE-2025-22235](https://www.mend.io/vulnerability-database/CVE-2025-22235?utm_source=Jetbrains) 7.3 Spring Boot EndpointRequest.to() creates wrong matcher if actuator endpoint is not exposed Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-perf/pom.xml#L49
Provides transitive vulnerable dependency maven:org.springframework:spring-core:6.1.5 * [CVE-2025-41249](https://www.mend.io/vulnerability-database/CVE-2025-41249?utm_source=Jetbrains) 7.5 CVE-2025-41249: Spring Framework Annotation Detection Vulnerability Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-spring-boot-starter/pom.xml#L26
Provides transitive vulnerable dependency maven:org.springframework:spring-webmvc:6.1.5 * [CVE-2024-38816](https://www.mend.io/vulnerability-database/CVE-2024-38816?utm_source=Jetbrains) 7.5 Path Traversal * [CVE-2024-38819](https://www.mend.io/vulnerability-database/CVE-2024-38819?utm_source=JetBrains) 7.5 Information Leak / Disclosure * [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-account/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-webmvc:6.1.5 * [CVE-2024-38816](https://www.mend.io/vulnerability-database/CVE-2024-38816?utm_source=Jetbrains) 7.5 Path Traversal * [CVE-2024-38819](https://www.mend.io/vulnerability-database/CVE-2024-38819?utm_source=JetBrains) 7.5 Information Leak / Disclosure * [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-perf/pom.xml#L49
Provides transitive vulnerable dependency maven:org.springframework:spring-web:6.1.5 * [CVE-2024-22262](https://www.mend.io/vulnerability-database/CVE-2024-22262?utm_source=JetBrains) 8.1 Server-Side Request Forgery (SSRF) * [CVE-2025-41234](https://www.mend.io/vulnerability-database/CVE-2025-41234?utm_source=Jetbrains) 6.5 RFD Attack via "Content-Disposition" Header Sourced from Request * [CVE-2024-38809](https://www.mend.io/vulnerability-database/CVE-2024-38809?utm_source=Jetbrains) 5.3 Uncontrolled Resource Consumption ('Resource Exhaustion') Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-it/pom.xml#L71
Provides transitive vulnerable dependency maven:org.springframework.boot:spring-boot-actuator-autoconfigure:3.2.4 * [CVE-2025-22235](https://www.mend.io/vulnerability-database/CVE-2025-22235?utm_source=Jetbrains) 7.3 Spring Boot EndpointRequest.to() creates wrong matcher if actuator endpoint is not exposed Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-core/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-web:6.1.5 * [CVE-2024-22262](https://www.mend.io/vulnerability-database/CVE-2024-22262?utm_source=JetBrains) 8.1 Server-Side Request Forgery (SSRF) * [CVE-2025-41234](https://www.mend.io/vulnerability-database/CVE-2025-41234?utm_source=Jetbrains) 6.5 RFD Attack via "Content-Disposition" Header Sourced from Request * [CVE-2024-38809](https://www.mend.io/vulnerability-database/CVE-2024-38809?utm_source=Jetbrains) 5.3 Uncontrolled Resource Consumption ('Resource Exhaustion') Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-core/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework.boot:spring-boot:3.2.4 * [CVE-2025-22235](https://www.mend.io/vulnerability-database/CVE-2025-22235?utm_source=Jetbrains) 7.3 Spring Boot EndpointRequest.to() creates wrong matcher if actuator endpoint is not exposed Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-chaos/pom.xml#L44
Provides transitive vulnerable dependency maven:org.springframework.boot:spring-boot:3.2.4 * [CVE-2025-22235](https://www.mend.io/vulnerability-database/CVE-2025-22235?utm_source=Jetbrains) 7.3 Spring Boot EndpointRequest.to() creates wrong matcher if actuator endpoint is not exposed Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-connection/pom.xml#L28
Provides transitive vulnerable dependency maven:org.springframework.boot:spring-boot:3.2.4 * [CVE-2025-22235](https://www.mend.io/vulnerability-database/CVE-2025-22235?utm_source=Jetbrains) 7.3 Spring Boot EndpointRequest.to() creates wrong matcher if actuator endpoint is not exposed Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-chaos/pom.xml#L44
Provides transitive vulnerable dependency maven:org.springframework:spring-core:6.1.5 * [CVE-2025-41249](https://www.mend.io/vulnerability-database/CVE-2025-41249?utm_source=Jetbrains) 7.5 CVE-2025-41249: Spring Framework Annotation Detection Vulnerability Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-account/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework.boot:spring-boot:3.2.4 * [CVE-2025-22235](https://www.mend.io/vulnerability-database/CVE-2025-22235?utm_source=Jetbrains) 7.3 Spring Boot EndpointRequest.to() creates wrong matcher if actuator endpoint is not exposed Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-security/pom.xml#L19
Provides transitive vulnerable dependency maven:org.springframework:spring-webmvc:6.1.5 * [CVE-2024-38816](https://www.mend.io/vulnerability-database/CVE-2024-38816?utm_source=Jetbrains) 7.5 Path Traversal * [CVE-2024-38819](https://www.mend.io/vulnerability-database/CVE-2024-38819?utm_source=JetBrains) 7.5 Information Leak / Disclosure * [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-connection/pom.xml#L28
Provides transitive vulnerable dependency maven:org.springframework:spring-web:6.1.5 * [CVE-2024-22262](https://www.mend.io/vulnerability-database/CVE-2024-22262?utm_source=JetBrains) 8.1 Server-Side Request Forgery (SSRF) * [CVE-2025-41234](https://www.mend.io/vulnerability-database/CVE-2025-41234?utm_source=Jetbrains) 6.5 RFD Attack via "Content-Disposition" Header Sourced from Request * [CVE-2024-38809](https://www.mend.io/vulnerability-database/CVE-2024-38809?utm_source=Jetbrains) 5.3 Uncontrolled Resource Consumption ('Resource Exhaustion') Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-chaos/pom.xml#L44
Provides transitive vulnerable dependency maven:org.springframework:spring-webmvc:6.1.5 * [CVE-2024-38816](https://www.mend.io/vulnerability-database/CVE-2024-38816?utm_source=Jetbrains) 7.5 Path Traversal * [CVE-2024-38819](https://www.mend.io/vulnerability-database/CVE-2024-38819?utm_source=JetBrains) 7.5 Information Leak / Disclosure * [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-chaos/pom.xml#L44
Provides transitive vulnerable dependency maven:org.springframework:spring-web:6.1.5 * [CVE-2024-22262](https://www.mend.io/vulnerability-database/CVE-2024-22262?utm_source=JetBrains) 8.1 Server-Side Request Forgery (SSRF) * [CVE-2025-41234](https://www.mend.io/vulnerability-database/CVE-2025-41234?utm_source=Jetbrains) 6.5 RFD Attack via "Content-Disposition" Header Sourced from Request * [CVE-2024-38809](https://www.mend.io/vulnerability-database/CVE-2024-38809?utm_source=Jetbrains) 5.3 Uncontrolled Resource Consumption ('Resource Exhaustion') Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-e2e/pom.xml#L54
Provides transitive vulnerable dependency maven:org.springframework:spring-web:6.1.5 * [CVE-2024-22262](https://www.mend.io/vulnerability-database/CVE-2024-22262?utm_source=JetBrains) 8.1 Server-Side Request Forgery (SSRF) * [CVE-2025-41234](https://www.mend.io/vulnerability-database/CVE-2025-41234?utm_source=Jetbrains) 6.5 RFD Attack via "Content-Disposition" Header Sourced from Request * [CVE-2024-38809](https://www.mend.io/vulnerability-database/CVE-2024-38809?utm_source=Jetbrains) 5.3 Uncontrolled Resource Consumption ('Resource Exhaustion') Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-e2e/pom.xml#L112
Provides transitive vulnerable dependency maven:org.apache.commons:commons-compress:1.24.0 * [CVE-2024-25710](https://www.mend.io/vulnerability-database/CVE-2024-25710?utm_source=JetBrains) 8.1 Loop with Unreachable Exit Condition ('Infinite Loop') * [CVE-2024-26308](https://www.mend.io/vulnerability-database/CVE-2024-26308?utm_source=JetBrains) 5.5 Allocation of Resources Without Limits or Throttling Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-protocol/pom.xml#L32
Provides transitive vulnerable dependency maven:org.springframework:spring-web:6.1.5 * [CVE-2024-22262](https://www.mend.io/vulnerability-database/CVE-2024-22262?utm_source=JetBrains) 8.1 Server-Side Request Forgery (SSRF) * [CVE-2025-41234](https://www.mend.io/vulnerability-database/CVE-2025-41234?utm_source=Jetbrains) 6.5 RFD Attack via "Content-Disposition" Header Sourced from Request * [CVE-2024-38809](https://www.mend.io/vulnerability-database/CVE-2024-38809?utm_source=Jetbrains) 5.3 Uncontrolled Resource Consumption ('Resource Exhaustion') Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-admin/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-webmvc:6.1.5 * [CVE-2024-38816](https://www.mend.io/vulnerability-database/CVE-2024-38816?utm_source=Jetbrains) 7.5 Path Traversal * [CVE-2024-38819](https://www.mend.io/vulnerability-database/CVE-2024-38819?utm_source=JetBrains) 7.5 Information Leak / Disclosure * [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-connection/pom.xml#L28
Provides transitive vulnerable dependency maven:org.springframework:spring-core:6.1.5 * [CVE-2025-41249](https://www.mend.io/vulnerability-database/CVE-2025-41249?utm_source=Jetbrains) 7.5 CVE-2025-41249: Spring Framework Annotation Detection Vulnerability Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-it/pom.xml#L51
Provides transitive vulnerable dependency maven:org.apache.commons:commons-compress:1.24.0 * [CVE-2024-25710](https://www.mend.io/vulnerability-database/CVE-2024-25710?utm_source=JetBrains) 8.1 Loop with Unreachable Exit Condition ('Infinite Loop') * [CVE-2024-26308](https://www.mend.io/vulnerability-database/CVE-2024-26308?utm_source=JetBrains) 5.5 Allocation of Resources Without Limits or Throttling Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-perf/pom.xml#L118
Provides transitive vulnerable dependency maven:org.apache.commons:commons-compress:1.24.0 * [CVE-2024-25710](https://www.mend.io/vulnerability-database/CVE-2024-25710?utm_source=JetBrains) 8.1 Loop with Unreachable Exit Condition ('Infinite Loop') * [CVE-2024-26308](https://www.mend.io/vulnerability-database/CVE-2024-26308?utm_source=JetBrains) 5.5 Allocation of Resources Without Limits or Throttling Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-it/pom.xml#L25
Provides transitive vulnerable dependency maven:org.springframework:spring-web:6.1.5 * [CVE-2024-22262](https://www.mend.io/vulnerability-database/CVE-2024-22262?utm_source=JetBrains) 8.1 Server-Side Request Forgery (SSRF) * [CVE-2025-41234](https://www.mend.io/vulnerability-database/CVE-2025-41234?utm_source=Jetbrains) 6.5 RFD Attack via "Content-Disposition" Header Sourced from Request * [CVE-2024-38809](https://www.mend.io/vulnerability-database/CVE-2024-38809?utm_source=Jetbrains) 5.3 Uncontrolled Resource Consumption ('Resource Exhaustion') Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-protocol/pom.xml#L32
Provides transitive vulnerable dependency maven:org.springframework.boot:spring-boot:3.2.4 * [CVE-2025-22235](https://www.mend.io/vulnerability-database/CVE-2025-22235?utm_source=Jetbrains) 7.3 Spring Boot EndpointRequest.to() creates wrong matcher if actuator endpoint is not exposed Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-security/pom.xml#L19
Provides transitive vulnerable dependency maven:org.springframework.boot:spring-boot:3.2.4 * [CVE-2025-22235](https://www.mend.io/vulnerability-database/CVE-2025-22235?utm_source=Jetbrains) 7.3 Spring Boot EndpointRequest.to() creates wrong matcher if actuator endpoint is not exposed Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-security/pom.xml#L19
Provides transitive vulnerable dependency maven:org.springframework:spring-core:6.1.5 * [CVE-2025-41249](https://www.mend.io/vulnerability-database/CVE-2025-41249?utm_source=Jetbrains) 7.5 CVE-2025-41249: Spring Framework Annotation Detection Vulnerability Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-core/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-core:6.1.5 * [CVE-2025-41249](https://www.mend.io/vulnerability-database/CVE-2025-41249?utm_source=Jetbrains) 7.5 CVE-2025-41249: Spring Framework Annotation Detection Vulnerability Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-client/pom.xml#L36
Provides transitive vulnerable dependency maven:org.springframework:spring-webmvc:6.1.5 * [CVE-2024-38816](https://www.mend.io/vulnerability-database/CVE-2024-38816?utm_source=Jetbrains) 7.5 Path Traversal * [CVE-2024-38819](https://www.mend.io/vulnerability-database/CVE-2024-38819?utm_source=JetBrains) 7.5 Information Leak / Disclosure * [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-it/pom.xml#L25
Provides transitive vulnerable dependency maven:org.springframework:spring-core:6.1.5 * [CVE-2025-41249](https://www.mend.io/vulnerability-database/CVE-2025-41249?utm_source=Jetbrains) 7.5 CVE-2025-41249: Spring Framework Annotation Detection Vulnerability Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-admin/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-web:6.1.5 * [CVE-2024-22262](https://www.mend.io/vulnerability-database/CVE-2024-22262?utm_source=JetBrains) 8.1 Server-Side Request Forgery (SSRF) * [CVE-2025-41234](https://www.mend.io/vulnerability-database/CVE-2025-41234?utm_source=Jetbrains) 6.5 RFD Attack via "Content-Disposition" Header Sourced from Request * [CVE-2024-38809](https://www.mend.io/vulnerability-database/CVE-2024-38809?utm_source=Jetbrains) 5.3 Uncontrolled Resource Consumption ('Resource Exhaustion') Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-it/pom.xml#L25
Provides transitive vulnerable dependency maven:org.springframework:spring-webmvc:6.1.5 * [CVE-2024-38816](https://www.mend.io/vulnerability-database/CVE-2024-38816?utm_source=Jetbrains) 7.5 Path Traversal * [CVE-2024-38819](https://www.mend.io/vulnerability-database/CVE-2024-38819?utm_source=JetBrains) 7.5 Information Leak / Disclosure * [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-spring-boot-starter/pom.xml#L53
Provides transitive vulnerable dependency maven:org.springframework.boot:spring-boot-actuator-autoconfigure:3.2.4 * [CVE-2025-22235](https://www.mend.io/vulnerability-database/CVE-2025-22235?utm_source=Jetbrains) 7.3 Spring Boot EndpointRequest.to() creates wrong matcher if actuator endpoint is not exposed Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-core/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-webmvc:6.1.5 * [CVE-2024-38816](https://www.mend.io/vulnerability-database/CVE-2024-38816?utm_source=Jetbrains) 7.5 Path Traversal * [CVE-2024-38819](https://www.mend.io/vulnerability-database/CVE-2024-38819?utm_source=JetBrains) 7.5 Information Leak / Disclosure * [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-e2e/pom.xml#L54
Provides transitive vulnerable dependency maven:org.springframework:spring-core:6.1.5 * [CVE-2025-41249](https://www.mend.io/vulnerability-database/CVE-2025-41249?utm_source=Jetbrains) 7.5 CVE-2025-41249: Spring Framework Annotation Detection Vulnerability Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-spring-boot-starter/pom.xml#L26
Provides transitive vulnerable dependency maven:org.springframework:spring-web:6.1.5 * [CVE-2024-22262](https://www.mend.io/vulnerability-database/CVE-2024-22262?utm_source=JetBrains) 8.1 Server-Side Request Forgery (SSRF) * [CVE-2025-41234](https://www.mend.io/vulnerability-database/CVE-2025-41234?utm_source=Jetbrains) 6.5 RFD Attack via "Content-Disposition" Header Sourced from Request * [CVE-2024-38809](https://www.mend.io/vulnerability-database/CVE-2024-38809?utm_source=Jetbrains) 5.3 Uncontrolled Resource Consumption ('Resource Exhaustion') Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-it/pom.xml#L66
Provides transitive vulnerable dependency maven:org.springframework.boot:spring-boot:3.2.4 * [CVE-2025-22235](https://www.mend.io/vulnerability-database/CVE-2025-22235?utm_source=Jetbrains) 7.3 Spring Boot EndpointRequest.to() creates wrong matcher if actuator endpoint is not exposed Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-spring-boot-starter/pom.xml#L78
Provides transitive vulnerable dependency maven:net.minidev:json-smart:2.5.0 * [CVE-2024-57699](https://www.mend.io/vulnerability-database/CVE-2024-57699?utm_source=JetBrains) 7.5 Insufficient Information Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-client/pom.xml#L36
Provides transitive vulnerable dependency maven:org.springframework:spring-web:6.1.5 * [CVE-2024-22262](https://www.mend.io/vulnerability-database/CVE-2024-22262?utm_source=JetBrains) 8.1 Server-Side Request Forgery (SSRF) * [CVE-2025-41234](https://www.mend.io/vulnerability-database/CVE-2025-41234?utm_source=Jetbrains) 6.5 RFD Attack via "Content-Disposition" Header Sourced from Request * [CVE-2024-38809](https://www.mend.io/vulnerability-database/CVE-2024-38809?utm_source=Jetbrains) 5.3 Uncontrolled Resource Consumption ('Resource Exhaustion') Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-monitoring/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-core:6.1.5 * [CVE-2025-41249](https://www.mend.io/vulnerability-database/CVE-2025-41249?utm_source=Jetbrains) 7.5 CVE-2025-41249: Spring Framework Annotation Detection Vulnerability Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-perf/pom.xml#L49
Provides transitive vulnerable dependency maven:org.springframework:spring-webmvc:6.1.5 * [CVE-2024-38816](https://www.mend.io/vulnerability-database/CVE-2024-38816?utm_source=Jetbrains) 7.5 Path Traversal * [CVE-2024-38819](https://www.mend.io/vulnerability-database/CVE-2024-38819?utm_source=JetBrains) 7.5 Information Leak / Disclosure * [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-e2e/pom.xml#L54
Provides transitive vulnerable dependency maven:org.springframework:spring-webmvc:6.1.5 * [CVE-2024-38816](https://www.mend.io/vulnerability-database/CVE-2024-38816?utm_source=Jetbrains) 7.5 Path Traversal * [CVE-2024-38819](https://www.mend.io/vulnerability-database/CVE-2024-38819?utm_source=JetBrains) 7.5 Information Leak / Disclosure * [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-security/pom.xml#L19
Provides transitive vulnerable dependency maven:org.springframework:spring-web:6.1.5 * [CVE-2024-22262](https://www.mend.io/vulnerability-database/CVE-2024-22262?utm_source=JetBrains) 8.1 Server-Side Request Forgery (SSRF) * [CVE-2025-41234](https://www.mend.io/vulnerability-database/CVE-2025-41234?utm_source=Jetbrains) 6.5 RFD Attack via "Content-Disposition" Header Sourced from Request * [CVE-2024-38809](https://www.mend.io/vulnerability-database/CVE-2024-38809?utm_source=Jetbrains) 5.3 Uncontrolled Resource Consumption ('Resource Exhaustion') Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-connection/pom.xml#L28
Provides transitive vulnerable dependency maven:org.springframework:spring-webmvc:6.1.5 * [CVE-2024-38816](https://www.mend.io/vulnerability-database/CVE-2024-38816?utm_source=Jetbrains) 7.5 Path Traversal * [CVE-2024-38819](https://www.mend.io/vulnerability-database/CVE-2024-38819?utm_source=JetBrains) 7.5 Information Leak / Disclosure * [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-client/pom.xml#L36
Provides transitive vulnerable dependency maven:org.springframework.boot:spring-boot:3.2.4 * [CVE-2025-22235](https://www.mend.io/vulnerability-database/CVE-2025-22235?utm_source=Jetbrains) 7.3 Spring Boot EndpointRequest.to() creates wrong matcher if actuator endpoint is not exposed Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-admin/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework.boot:spring-boot:3.2.4 * [CVE-2025-22235](https://www.mend.io/vulnerability-database/CVE-2025-22235?utm_source=Jetbrains) 7.3 Spring Boot EndpointRequest.to() creates wrong matcher if actuator endpoint is not exposed Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-protocol/pom.xml#L32
Provides transitive vulnerable dependency maven:org.springframework:spring-webmvc:6.1.5 * [CVE-2024-38816](https://www.mend.io/vulnerability-database/CVE-2024-38816?utm_source=Jetbrains) 7.5 Path Traversal * [CVE-2024-38819](https://www.mend.io/vulnerability-database/CVE-2024-38819?utm_source=JetBrains) 7.5 Information Leak / Disclosure * [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-it/pom.xml#L66
Provides transitive vulnerable dependency maven:net.minidev:json-smart:2.5.0 * [CVE-2024-57699](https://www.mend.io/vulnerability-database/CVE-2024-57699?utm_source=JetBrains) 7.5 Insufficient Information Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-account/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-web:6.1.5 * [CVE-2024-22262](https://www.mend.io/vulnerability-database/CVE-2024-22262?utm_source=JetBrains) 8.1 Server-Side Request Forgery (SSRF) * [CVE-2025-41234](https://www.mend.io/vulnerability-database/CVE-2025-41234?utm_source=Jetbrains) 6.5 RFD Attack via "Content-Disposition" Header Sourced from Request * [CVE-2024-38809](https://www.mend.io/vulnerability-database/CVE-2024-38809?utm_source=Jetbrains) 5.3 Uncontrolled Resource Consumption ('Resource Exhaustion') Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-monitoring/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-web:6.1.5 * [CVE-2024-22262](https://www.mend.io/vulnerability-database/CVE-2024-22262?utm_source=JetBrains) 8.1 Server-Side Request Forgery (SSRF) * [CVE-2025-41234](https://www.mend.io/vulnerability-database/CVE-2025-41234?utm_source=Jetbrains) 6.5 RFD Attack via "Content-Disposition" Header Sourced from Request * [CVE-2024-38809](https://www.mend.io/vulnerability-database/CVE-2024-38809?utm_source=Jetbrains) 5.3 Uncontrolled Resource Consumption ('Resource Exhaustion') Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-perf/pom.xml#L49
Provides transitive vulnerable dependency maven:org.springframework.boot:spring-boot:3.2.4 * [CVE-2025-22235](https://www.mend.io/vulnerability-database/CVE-2025-22235?utm_source=Jetbrains) 7.3 Spring Boot EndpointRequest.to() creates wrong matcher if actuator endpoint is not exposed Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-monitoring/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework.boot:spring-boot:3.2.4 * [CVE-2025-22235](https://www.mend.io/vulnerability-database/CVE-2025-22235?utm_source=Jetbrains) 7.3 Spring Boot EndpointRequest.to() creates wrong matcher if actuator endpoint is not exposed Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-monitoring/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-webmvc:6.1.5 * [CVE-2024-38816](https://www.mend.io/vulnerability-database/CVE-2024-38816?utm_source=Jetbrains) 7.5 Path Traversal * [CVE-2024-38819](https://www.mend.io/vulnerability-database/CVE-2024-38819?utm_source=JetBrains) 7.5 Information Leak / Disclosure * [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-spring-boot-starter/pom.xml#L40
Provides transitive vulnerable dependency maven:org.springframework.boot:spring-boot:3.2.4 * [CVE-2025-22235](https://www.mend.io/vulnerability-database/CVE-2025-22235?utm_source=Jetbrains) 7.3 Spring Boot EndpointRequest.to() creates wrong matcher if actuator endpoint is not exposed Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-account/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-core:6.1.5 * [CVE-2025-41249](https://www.mend.io/vulnerability-database/CVE-2025-41249?utm_source=Jetbrains) 7.5 CVE-2025-41249: Spring Framework Annotation Detection Vulnerability Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-client/pom.xml#L36
Provides transitive vulnerable dependency maven:org.springframework:spring-core:6.1.5 * [CVE-2025-41249](https://www.mend.io/vulnerability-database/CVE-2025-41249?utm_source=Jetbrains) 7.5 CVE-2025-41249: Spring Framework Annotation Detection Vulnerability Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-spring-boot-starter/pom.xml#L26
Provides transitive vulnerable dependency maven:org.springframework:spring-core:6.1.5 * [CVE-2025-41249](https://www.mend.io/vulnerability-database/CVE-2025-41249?utm_source=Jetbrains) 7.5 CVE-2025-41249: Spring Framework Annotation Detection Vulnerability Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-protocol/pom.xml#L32
Provides transitive vulnerable dependency maven:org.springframework:spring-core:6.1.5 * [CVE-2025-41249](https://www.mend.io/vulnerability-database/CVE-2025-41249?utm_source=Jetbrains) 7.5 CVE-2025-41249: Spring Framework Annotation Detection Vulnerability Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-admin/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-core:6.1.5 * [CVE-2025-41249](https://www.mend.io/vulnerability-database/CVE-2025-41249?utm_source=Jetbrains) 7.5 CVE-2025-41249: Spring Framework Annotation Detection Vulnerability Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-e2e/pom.xml#L54
Provides transitive vulnerable dependency maven:org.springframework.boot:spring-boot:3.2.4 * [CVE-2025-22235](https://www.mend.io/vulnerability-database/CVE-2025-22235?utm_source=Jetbrains) 7.3 Spring Boot EndpointRequest.to() creates wrong matcher if actuator endpoint is not exposed Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-perf/pom.xml#L49
Provides transitive vulnerable dependency maven:org.springframework:spring-core:6.1.5 * [CVE-2025-41249](https://www.mend.io/vulnerability-database/CVE-2025-41249?utm_source=Jetbrains) 7.5 CVE-2025-41249: Spring Framework Annotation Detection Vulnerability Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-spring-boot-starter/pom.xml#L26
Provides transitive vulnerable dependency maven:org.springframework:spring-webmvc:6.1.5 * [CVE-2024-38816](https://www.mend.io/vulnerability-database/CVE-2024-38816?utm_source=Jetbrains) 7.5 Path Traversal * [CVE-2024-38819](https://www.mend.io/vulnerability-database/CVE-2024-38819?utm_source=JetBrains) 7.5 Information Leak / Disclosure * [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-account/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-webmvc:6.1.5 * [CVE-2024-38816](https://www.mend.io/vulnerability-database/CVE-2024-38816?utm_source=Jetbrains) 7.5 Path Traversal * [CVE-2024-38819](https://www.mend.io/vulnerability-database/CVE-2024-38819?utm_source=JetBrains) 7.5 Information Leak / Disclosure * [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-perf/pom.xml#L49
Provides transitive vulnerable dependency maven:org.springframework:spring-web:6.1.5 * [CVE-2024-22262](https://www.mend.io/vulnerability-database/CVE-2024-22262?utm_source=JetBrains) 8.1 Server-Side Request Forgery (SSRF) * [CVE-2025-41234](https://www.mend.io/vulnerability-database/CVE-2025-41234?utm_source=Jetbrains) 6.5 RFD Attack via "Content-Disposition" Header Sourced from Request * [CVE-2024-38809](https://www.mend.io/vulnerability-database/CVE-2024-38809?utm_source=Jetbrains) 5.3 Uncontrolled Resource Consumption ('Resource Exhaustion') Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-it/pom.xml#L71
Provides transitive vulnerable dependency maven:org.springframework.boot:spring-boot-actuator-autoconfigure:3.2.4 * [CVE-2025-22235](https://www.mend.io/vulnerability-database/CVE-2025-22235?utm_source=Jetbrains) 7.3 Spring Boot EndpointRequest.to() creates wrong matcher if actuator endpoint is not exposed Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-core/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-web:6.1.5 * [CVE-2024-22262](https://www.mend.io/vulnerability-database/CVE-2024-22262?utm_source=JetBrains) 8.1 Server-Side Request Forgery (SSRF) * [CVE-2025-41234](https://www.mend.io/vulnerability-database/CVE-2025-41234?utm_source=Jetbrains) 6.5 RFD Attack via "Content-Disposition" Header Sourced from Request * [CVE-2024-38809](https://www.mend.io/vulnerability-database/CVE-2024-38809?utm_source=Jetbrains) 5.3 Uncontrolled Resource Consumption ('Resource Exhaustion') Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-core/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework.boot:spring-boot:3.2.4 * [CVE-2025-22235](https://www.mend.io/vulnerability-database/CVE-2025-22235?utm_source=Jetbrains) 7.3 Spring Boot EndpointRequest.to() creates wrong matcher if actuator endpoint is not exposed Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-chaos/pom.xml#L44
Provides transitive vulnerable dependency maven:org.springframework.boot:spring-boot:3.2.4 * [CVE-2025-22235](https://www.mend.io/vulnerability-database/CVE-2025-22235?utm_source=Jetbrains) 7.3 Spring Boot EndpointRequest.to() creates wrong matcher if actuator endpoint is not exposed Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-connection/pom.xml#L28
Provides transitive vulnerable dependency maven:org.springframework.boot:spring-boot:3.2.4 * [CVE-2025-22235](https://www.mend.io/vulnerability-database/CVE-2025-22235?utm_source=Jetbrains) 7.3 Spring Boot EndpointRequest.to() creates wrong matcher if actuator endpoint is not exposed Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-chaos/pom.xml#L44
Provides transitive vulnerable dependency maven:org.springframework:spring-core:6.1.5 * [CVE-2025-41249](https://www.mend.io/vulnerability-database/CVE-2025-41249?utm_source=Jetbrains) 7.5 CVE-2025-41249: Spring Framework Annotation Detection Vulnerability Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-account/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework.boot:spring-boot:3.2.4 * [CVE-2025-22235](https://www.mend.io/vulnerability-database/CVE-2025-22235?utm_source=Jetbrains) 7.3 Spring Boot EndpointRequest.to() creates wrong matcher if actuator endpoint is not exposed Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-security/pom.xml#L19
Provides transitive vulnerable dependency maven:org.springframework:spring-webmvc:6.1.5 * [CVE-2024-38816](https://www.mend.io/vulnerability-database/CVE-2024-38816?utm_source=Jetbrains) 7.5 Path Traversal * [CVE-2024-38819](https://www.mend.io/vulnerability-database/CVE-2024-38819?utm_source=JetBrains) 7.5 Information Leak / Disclosure * [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-connection/pom.xml#L28
Provides transitive vulnerable dependency maven:org.springframework:spring-web:6.1.5 * [CVE-2024-22262](https://www.mend.io/vulnerability-database/CVE-2024-22262?utm_source=JetBrains) 8.1 Server-Side Request Forgery (SSRF) * [CVE-2025-41234](https://www.mend.io/vulnerability-database/CVE-2025-41234?utm_source=Jetbrains) 6.5 RFD Attack via "Content-Disposition" Header Sourced from Request * [CVE-2024-38809](https://www.mend.io/vulnerability-database/CVE-2024-38809?utm_source=Jetbrains) 5.3 Uncontrolled Resource Consumption ('Resource Exhaustion') Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-chaos/pom.xml#L44
Provides transitive vulnerable dependency maven:org.springframework:spring-webmvc:6.1.5 * [CVE-2024-38816](https://www.mend.io/vulnerability-database/CVE-2024-38816?utm_source=Jetbrains) 7.5 Path Traversal * [CVE-2024-38819](https://www.mend.io/vulnerability-database/CVE-2024-38819?utm_source=JetBrains) 7.5 Information Leak / Disclosure * [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-chaos/pom.xml#L44
Provides transitive vulnerable dependency maven:org.springframework:spring-web:6.1.5 * [CVE-2024-22262](https://www.mend.io/vulnerability-database/CVE-2024-22262?utm_source=JetBrains) 8.1 Server-Side Request Forgery (SSRF) * [CVE-2025-41234](https://www.mend.io/vulnerability-database/CVE-2025-41234?utm_source=Jetbrains) 6.5 RFD Attack via "Content-Disposition" Header Sourced from Request * [CVE-2024-38809](https://www.mend.io/vulnerability-database/CVE-2024-38809?utm_source=Jetbrains) 5.3 Uncontrolled Resource Consumption ('Resource Exhaustion') Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-e2e/pom.xml#L54
Provides transitive vulnerable dependency maven:org.springframework:spring-web:6.1.5 * [CVE-2024-22262](https://www.mend.io/vulnerability-database/CVE-2024-22262?utm_source=JetBrains) 8.1 Server-Side Request Forgery (SSRF) * [CVE-2025-41234](https://www.mend.io/vulnerability-database/CVE-2025-41234?utm_source=Jetbrains) 6.5 RFD Attack via "Content-Disposition" Header Sourced from Request * [CVE-2024-38809](https://www.mend.io/vulnerability-database/CVE-2024-38809?utm_source=Jetbrains) 5.3 Uncontrolled Resource Consumption ('Resource Exhaustion') Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-e2e/pom.xml#L112
Provides transitive vulnerable dependency maven:org.apache.commons:commons-compress:1.24.0 * [CVE-2024-25710](https://www.mend.io/vulnerability-database/CVE-2024-25710?utm_source=JetBrains) 8.1 Loop with Unreachable Exit Condition ('Infinite Loop') * [CVE-2024-26308](https://www.mend.io/vulnerability-database/CVE-2024-26308?utm_source=JetBrains) 5.5 Allocation of Resources Without Limits or Throttling Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-protocol/pom.xml#L32
Provides transitive vulnerable dependency maven:org.springframework:spring-web:6.1.5 * [CVE-2024-22262](https://www.mend.io/vulnerability-database/CVE-2024-22262?utm_source=JetBrains) 8.1 Server-Side Request Forgery (SSRF) * [CVE-2025-41234](https://www.mend.io/vulnerability-database/CVE-2025-41234?utm_source=Jetbrains) 6.5 RFD Attack via "Content-Disposition" Header Sourced from Request * [CVE-2024-38809](https://www.mend.io/vulnerability-database/CVE-2024-38809?utm_source=Jetbrains) 5.3 Uncontrolled Resource Consumption ('Resource Exhaustion') Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-admin/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-webmvc:6.1.5 * [CVE-2024-38816](https://www.mend.io/vulnerability-database/CVE-2024-38816?utm_source=Jetbrains) 7.5 Path Traversal * [CVE-2024-38819](https://www.mend.io/vulnerability-database/CVE-2024-38819?utm_source=JetBrains) 7.5 Information Leak / Disclosure * [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-connection/pom.xml#L28
Provides transitive vulnerable dependency maven:org.springframework:spring-core:6.1.5 * [CVE-2025-41249](https://www.mend.io/vulnerability-database/CVE-2025-41249?utm_source=Jetbrains) 7.5 CVE-2025-41249: Spring Framework Annotation Detection Vulnerability Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-it/pom.xml#L51
Provides transitive vulnerable dependency maven:org.apache.commons:commons-compress:1.24.0 * [CVE-2024-25710](https://www.mend.io/vulnerability-database/CVE-2024-25710?utm_source=JetBrains) 8.1 Loop with Unreachable Exit Condition ('Infinite Loop') * [CVE-2024-26308](https://www.mend.io/vulnerability-database/CVE-2024-26308?utm_source=JetBrains) 5.5 Allocation of Resources Without Limits or Throttling Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-perf/pom.xml#L118
Provides transitive vulnerable dependency maven:org.apache.commons:commons-compress:1.24.0 * [CVE-2024-25710](https://www.mend.io/vulnerability-database/CVE-2024-25710?utm_source=JetBrains) 8.1 Loop with Unreachable Exit Condition ('Infinite Loop') * [CVE-2024-26308](https://www.mend.io/vulnerability-database/CVE-2024-26308?utm_source=JetBrains) 5.5 Allocation of Resources Without Limits or Throttling Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-it/pom.xml#L25
Provides transitive vulnerable dependency maven:org.springframework:spring-web:6.1.5 * [CVE-2024-22262](https://www.mend.io/vulnerability-database/CVE-2024-22262?utm_source=JetBrains) 8.1 Server-Side Request Forgery (SSRF) * [CVE-2025-41234](https://www.mend.io/vulnerability-database/CVE-2025-41234?utm_source=Jetbrains) 6.5 RFD Attack via "Content-Disposition" Header Sourced from Request * [CVE-2024-38809](https://www.mend.io/vulnerability-database/CVE-2024-38809?utm_source=Jetbrains) 5.3 Uncontrolled Resource Consumption ('Resource Exhaustion') Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-protocol/pom.xml#L32
Provides transitive vulnerable dependency maven:org.springframework.boot:spring-boot:3.2.4 * [CVE-2025-22235](https://www.mend.io/vulnerability-database/CVE-2025-22235?utm_source=Jetbrains) 7.3 Spring Boot EndpointRequest.to() creates wrong matcher if actuator endpoint is not exposed Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-security/pom.xml#L19
Provides transitive vulnerable dependency maven:org.springframework.boot:spring-boot:3.2.4 * [CVE-2025-22235](https://www.mend.io/vulnerability-database/CVE-2025-22235?utm_source=Jetbrains) 7.3 Spring Boot EndpointRequest.to() creates wrong matcher if actuator endpoint is not exposed Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-security/pom.xml#L19
Provides transitive vulnerable dependency maven:org.springframework:spring-core:6.1.5 * [CVE-2025-41249](https://www.mend.io/vulnerability-database/CVE-2025-41249?utm_source=Jetbrains) 7.5 CVE-2025-41249: Spring Framework Annotation Detection Vulnerability Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-core/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-core:6.1.5 * [CVE-2025-41249](https://www.mend.io/vulnerability-database/CVE-2025-41249?utm_source=Jetbrains) 7.5 CVE-2025-41249: Spring Framework Annotation Detection Vulnerability Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-client/pom.xml#L36
Provides transitive vulnerable dependency maven:org.springframework:spring-webmvc:6.1.5 * [CVE-2024-38816](https://www.mend.io/vulnerability-database/CVE-2024-38816?utm_source=Jetbrains) 7.5 Path Traversal * [CVE-2024-38819](https://www.mend.io/vulnerability-database/CVE-2024-38819?utm_source=JetBrains) 7.5 Information Leak / Disclosure * [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-it/pom.xml#L25
Provides transitive vulnerable dependency maven:org.springframework:spring-core:6.1.5 * [CVE-2025-41249](https://www.mend.io/vulnerability-database/CVE-2025-41249?utm_source=Jetbrains) 7.5 CVE-2025-41249: Spring Framework Annotation Detection Vulnerability Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-spring-boot-starter/pom.xml#L78
Provides transitive vulnerable dependency maven:org.xmlunit:xmlunit-core:2.9.1 * [CVE-2024-31573](https://www.mend.io/vulnerability-database/CVE-2024-31573?utm_source=JetBrains) 4.0 Insufficient Information Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-spring-boot-starter/pom.xml#L26
Provides transitive vulnerable dependency maven:org.springframework:spring-beans:6.1.5 * [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-spring-boot-starter/pom.xml#L26
Provides transitive vulnerable dependency maven:org.springframework:spring-websocket:6.1.5 * [CVE-2025-41254](https://www.mend.io/vulnerability-database/CVE-2025-41254?utm_source=Jetbrains) 4.3 Spring Framework STOMP CSRF Vulnerability Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-core/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-context:6.1.5 * [CVE-2025-22233](https://www.mend.io/vulnerability-database/CVE-2025-22233?utm_source=Jetbrains) 3.1 Spring Framework DataBinder Case Sensitive Match Exception * [CVE-2024-38820](https://www.mend.io/vulnerability-database/CVE-2024-38820?utm_source=JetBrains) 3.1 Improper Handling of Case Sensitivity Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-perf/pom.xml#L92
Provides transitive vulnerable dependency maven:ch.qos.logback:logback-core:1.5.3 * [CVE-2025-11226](https://www.mend.io/vulnerability-database/CVE-2025-11226?utm_source=JetBrains) 6.9 Conditional processing of logback.xml configuration file, in conjuction with Spring Framework and Janino * [CVE-2024-12798](https://www.mend.io/vulnerability-database/CVE-2024-12798?utm_source=JetBrains) 6.6 JaninoEventEvaluator vulnerability * [CVE-2024-12801](https://www.mend.io/vulnerability-database/CVE-2024-12801?utm_source=JetBrains) 4.4 SaxEventRecorder vulnerable to Server-Side Request Forgery (SSRF) attacks Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-spring-boot-starter/pom.xml#L26
Provides transitive vulnerable dependency maven:org.springframework:spring-context:6.1.5 * [CVE-2025-22233](https://www.mend.io/vulnerability-database/CVE-2025-22233?utm_source=Jetbrains) 3.1 Spring Framework DataBinder Case Sensitive Match Exception * [CVE-2024-38820](https://www.mend.io/vulnerability-database/CVE-2024-38820?utm_source=JetBrains) 3.1 Improper Handling of Case Sensitivity Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-account/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-context:6.1.5 * [CVE-2025-22233](https://www.mend.io/vulnerability-database/CVE-2025-22233?utm_source=Jetbrains) 3.1 Spring Framework DataBinder Case Sensitive Match Exception * [CVE-2024-38820](https://www.mend.io/vulnerability-database/CVE-2024-38820?utm_source=JetBrains) 3.1 Improper Handling of Case Sensitivity Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-connection/pom.xml#L28
Provides transitive vulnerable dependency maven:org.apache.commons:commons-lang3:3.13.0 * [CVE-2025-48924](https://www.mend.io/vulnerability-database/CVE-2025-48924?utm_source=Jetbrains) 5.3 Insufficient Information Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-it/pom.xml#L25
Provides transitive vulnerable dependency maven:org.apache.commons:commons-lang3:3.13.0 * [CVE-2025-48924](https://www.mend.io/vulnerability-database/CVE-2025-48924?utm_source=Jetbrains) 5.3 Insufficient Information Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-core/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-websocket:6.1.5 * [CVE-2025-41254](https://www.mend.io/vulnerability-database/CVE-2025-41254?utm_source=Jetbrains) 4.3 Spring Framework STOMP CSRF Vulnerability Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-protocol/pom.xml#L32
Provides transitive vulnerable dependency maven:org.springframework:spring-context:6.1.5 * [CVE-2025-22233](https://www.mend.io/vulnerability-database/CVE-2025-22233?utm_source=Jetbrains) 3.1 Spring Framework DataBinder Case Sensitive Match Exception * [CVE-2024-38820](https://www.mend.io/vulnerability-database/CVE-2024-38820?utm_source=JetBrains) 3.1 Improper Handling of Case Sensitivity Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-chaos/pom.xml#L44
Provides transitive vulnerable dependency maven:org.apache.commons:commons-lang3:3.13.0 * [CVE-2025-48924](https://www.mend.io/vulnerability-database/CVE-2025-48924?utm_source=Jetbrains) 5.3 Insufficient Information Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-security/pom.xml#L19
Provides transitive vulnerable dependency maven:org.apache.commons:commons-lang3:3.13.0 * [CVE-2025-48924](https://www.mend.io/vulnerability-database/CVE-2025-48924?utm_source=Jetbrains) 5.3 Insufficient Information Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-security/pom.xml#L19
Provides transitive vulnerable dependency maven:org.springframework:spring-beans:6.1.5 * [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-e2e/pom.xml#L54
Provides transitive vulnerable dependency maven:org.springframework:spring-beans:6.1.5 * [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-protocol/pom.xml#L32
Provides transitive vulnerable dependency maven:org.springframework:spring-beans:6.1.5 * [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-chaos/pom.xml#L44
Provides transitive vulnerable dependency maven:org.springframework:spring-beans:6.1.5 * [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-monitoring/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-beans:6.1.5 * [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-admin/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-websocket:6.1.5 * [CVE-2025-41254](https://www.mend.io/vulnerability-database/CVE-2025-41254?utm_source=Jetbrains) 4.3 Spring Framework STOMP CSRF Vulnerability Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-client/pom.xml#L36
Provides transitive vulnerable dependency maven:org.springframework:spring-context:6.1.5 * [CVE-2025-22233](https://www.mend.io/vulnerability-database/CVE-2025-22233?utm_source=Jetbrains) 3.1 Spring Framework DataBinder Case Sensitive Match Exception * [CVE-2024-38820](https://www.mend.io/vulnerability-database/CVE-2024-38820?utm_source=JetBrains) 3.1 Improper Handling of Case Sensitivity Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-e2e/pom.xml#L54
Provides transitive vulnerable dependency maven:org.springframework:spring-websocket:6.1.5 * [CVE-2025-41254](https://www.mend.io/vulnerability-database/CVE-2025-41254?utm_source=Jetbrains) 4.3 Spring Framework STOMP CSRF Vulnerability Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-admin/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-beans:6.1.5 * [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-security/pom.xml#L19
Provides transitive vulnerable dependency maven:org.springframework:spring-context:6.1.5 * [CVE-2025-22233](https://www.mend.io/vulnerability-database/CVE-2025-22233?utm_source=Jetbrains) 3.1 Spring Framework DataBinder Case Sensitive Match Exception * [CVE-2024-38820](https://www.mend.io/vulnerability-database/CVE-2024-38820?utm_source=JetBrains) 3.1 Improper Handling of Case Sensitivity Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-it/pom.xml#L25
Provides transitive vulnerable dependency maven:org.springframework:spring-context:6.1.5 * [CVE-2025-22233](https://www.mend.io/vulnerability-database/CVE-2025-22233?utm_source=Jetbrains) 3.1 Spring Framework DataBinder Case Sensitive Match Exception * [CVE-2024-38820](https://www.mend.io/vulnerability-database/CVE-2024-38820?utm_source=JetBrains) 3.1 Improper Handling of Case Sensitivity Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-security/pom.xml#L19
Provides transitive vulnerable dependency maven:org.springframework:spring-websocket:6.1.5 * [CVE-2025-41254](https://www.mend.io/vulnerability-database/CVE-2025-41254?utm_source=Jetbrains) 4.3 Spring Framework STOMP CSRF Vulnerability Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-client/pom.xml#L36
Provides transitive vulnerable dependency maven:org.springframework:spring-beans:6.1.5 * [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-e2e/pom.xml#L54
Provides transitive vulnerable dependency maven:org.springframework:spring-context:6.1.5 * [CVE-2025-22233](https://www.mend.io/vulnerability-database/CVE-2025-22233?utm_source=Jetbrains) 3.1 Spring Framework DataBinder Case Sensitive Match Exception * [CVE-2024-38820](https://www.mend.io/vulnerability-database/CVE-2024-38820?utm_source=JetBrains) 3.1 Improper Handling of Case Sensitivity Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-account/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-beans:6.1.5 * [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-it/pom.xml#L25
Provides transitive vulnerable dependency maven:org.springframework:spring-beans:6.1.5 * [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-it/pom.xml#L66
Provides transitive vulnerable dependency maven:ch.qos.logback:logback-classic:1.5.3 * [CVE-2024-12798](https://www.mend.io/vulnerability-database/CVE-2024-12798?utm_source=JetBrains) 6.6 JaninoEventEvaluator vulnerability Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-client/pom.xml#L36
Provides transitive vulnerable dependency maven:org.apache.commons:commons-lang3:3.13.0 * [CVE-2025-48924](https://www.mend.io/vulnerability-database/CVE-2025-48924?utm_source=Jetbrains) 5.3 Insufficient Information Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-it/pom.xml#L66
Provides transitive vulnerable dependency maven:ch.qos.logback:logback-core:1.5.3 * [CVE-2025-11226](https://www.mend.io/vulnerability-database/CVE-2025-11226?utm_source=JetBrains) 6.9 Conditional processing of logback.xml configuration file, in conjuction with Spring Framework and Janino * [CVE-2024-12798](https://www.mend.io/vulnerability-database/CVE-2024-12798?utm_source=JetBrains) 6.6 JaninoEventEvaluator vulnerability * [CVE-2024-12801](https://www.mend.io/vulnerability-database/CVE-2024-12801?utm_source=JetBrains) 4.4 SaxEventRecorder vulnerable to Server-Side Request Forgery (SSRF) attacks Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-chaos/pom.xml#L44
Provides transitive vulnerable dependency maven:org.springframework:spring-websocket:6.1.5 * [CVE-2025-41254](https://www.mend.io/vulnerability-database/CVE-2025-41254?utm_source=Jetbrains) 4.3 Spring Framework STOMP CSRF Vulnerability Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-connection/pom.xml#L28
Provides transitive vulnerable dependency maven:org.springframework:spring-beans:6.1.5 * [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-it/pom.xml#L25
Provides transitive vulnerable dependency maven:org.springframework:spring-websocket:6.1.5 * [CVE-2025-41254](https://www.mend.io/vulnerability-database/CVE-2025-41254?utm_source=Jetbrains) 4.3 Spring Framework STOMP CSRF Vulnerability Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-connection/pom.xml#L28
Provides transitive vulnerable dependency maven:org.springframework:spring-context:6.1.5 * [CVE-2025-22233](https://www.mend.io/vulnerability-database/CVE-2025-22233?utm_source=Jetbrains) 3.1 Spring Framework DataBinder Case Sensitive Match Exception * [CVE-2024-38820](https://www.mend.io/vulnerability-database/CVE-2024-38820?utm_source=JetBrains) 3.1 Improper Handling of Case Sensitivity Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-spring-boot-starter/pom.xml#L40
Provides transitive vulnerable dependency maven:ch.qos.logback:logback-core:1.5.3 * [CVE-2025-11226](https://www.mend.io/vulnerability-database/CVE-2025-11226?utm_source=JetBrains) 6.9 Conditional processing of logback.xml configuration file, in conjuction with Spring Framework and Janino * [CVE-2024-12798](https://www.mend.io/vulnerability-database/CVE-2024-12798?utm_source=JetBrains) 6.6 JaninoEventEvaluator vulnerability * [CVE-2024-12801](https://www.mend.io/vulnerability-database/CVE-2024-12801?utm_source=JetBrains) 4.4 SaxEventRecorder vulnerable to Server-Side Request Forgery (SSRF) attacks Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-core/pom.xml#L22
Provides transitive vulnerable dependency maven:org.apache.commons:commons-lang3:3.13.0 * [CVE-2025-48924](https://www.mend.io/vulnerability-database/CVE-2025-48924?utm_source=Jetbrains) 5.3 Insufficient Information Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-client/pom.xml#L36
Provides transitive vulnerable dependency maven:org.springframework:spring-websocket:6.1.5 * [CVE-2025-41254](https://www.mend.io/vulnerability-database/CVE-2025-41254?utm_source=Jetbrains) 4.3 Spring Framework STOMP CSRF Vulnerability Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-e2e/pom.xml#L76
Provides transitive vulnerable dependency maven:ch.qos.logback:logback-core:1.5.3 * [CVE-2025-11226](https://www.mend.io/vulnerability-database/CVE-2025-11226?utm_source=JetBrains) 6.9 Conditional processing of logback.xml configuration file, in conjuction with Spring Framework and Janino * [CVE-2024-12798](https://www.mend.io/vulnerability-database/CVE-2024-12798?utm_source=JetBrains) 6.6 JaninoEventEvaluator vulnerability * [CVE-2024-12801](https://www.mend.io/vulnerability-database/CVE-2024-12801?utm_source=JetBrains) 4.4 SaxEventRecorder vulnerable to Server-Side Request Forgery (SSRF) attacks Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-perf/pom.xml#L49
Provides transitive vulnerable dependency maven:org.springframework:spring-websocket:6.1.5 * [CVE-2025-41254](https://www.mend.io/vulnerability-database/CVE-2025-41254?utm_source=Jetbrains) 4.3 Spring Framework STOMP CSRF Vulnerability Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-perf/pom.xml#L49
Provides transitive vulnerable dependency maven:org.springframework:spring-beans:6.1.5 * [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-perf/pom.xml#L49
Provides transitive vulnerable dependency maven:org.springframework:spring-context:6.1.5 * [CVE-2025-22233](https://www.mend.io/vulnerability-database/CVE-2025-22233?utm_source=Jetbrains) 3.1 Spring Framework DataBinder Case Sensitive Match Exception * [CVE-2024-38820](https://www.mend.io/vulnerability-database/CVE-2024-38820?utm_source=JetBrains) 3.1 Improper Handling of Case Sensitivity Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-chaos/pom.xml#L44
Provides transitive vulnerable dependency maven:org.springframework:spring-context:6.1.5 * [CVE-2025-22233](https://www.mend.io/vulnerability-database/CVE-2025-22233?utm_source=Jetbrains) 3.1 Spring Framework DataBinder Case Sensitive Match Exception * [CVE-2024-38820](https://www.mend.io/vulnerability-database/CVE-2024-38820?utm_source=JetBrains) 3.1 Improper Handling of Case Sensitivity Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-protocol/pom.xml#L32
Provides transitive vulnerable dependency maven:org.springframework:spring-websocket:6.1.5 * [CVE-2025-41254](https://www.mend.io/vulnerability-database/CVE-2025-41254?utm_source=Jetbrains) 4.3 Spring Framework STOMP CSRF Vulnerability Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-protocol/pom.xml#L32
Provides transitive vulnerable dependency maven:org.apache.commons:commons-lang3:3.13.0 * [CVE-2025-48924](https://www.mend.io/vulnerability-database/CVE-2025-48924?utm_source=Jetbrains) 5.3 Insufficient Information Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-security/pom.xml#L92
Provides transitive vulnerable dependency maven:ch.qos.logback:logback-core:1.5.3 * [CVE-2025-11226](https://www.mend.io/vulnerability-database/CVE-2025-11226?utm_source=JetBrains) 6.9 Conditional processing of logback.xml configuration file, in conjuction with Spring Framework and Janino * [CVE-2024-12798](https://www.mend.io/vulnerability-database/CVE-2024-12798?utm_source=JetBrains) 6.6 JaninoEventEvaluator vulnerability * [CVE-2024-12801](https://www.mend.io/vulnerability-database/CVE-2024-12801?utm_source=JetBrains) 4.4 SaxEventRecorder vulnerable to Server-Side Request Forgery (SSRF) attacks Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-monitoring/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-websocket:6.1.5 * [CVE-2025-41254](https://www.mend.io/vulnerability-database/CVE-2025-41254?utm_source=Jetbrains) 4.3 Spring Framework STOMP CSRF Vulnerability Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-core/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-beans:6.1.5 * [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-perf/pom.xml#L49
Provides transitive vulnerable dependency maven:org.apache.commons:commons-lang3:3.13.0 * [CVE-2025-48924](https://www.mend.io/vulnerability-database/CVE-2025-48924?utm_source=Jetbrains) 5.3 Insufficient Information Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-monitoring/pom.xml#L22
Provides transitive vulnerable dependency maven:org.apache.commons:commons-lang3:3.13.0 * [CVE-2025-48924](https://www.mend.io/vulnerability-database/CVE-2025-48924?utm_source=Jetbrains) 5.3 Insufficient Information Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-spring-boot-starter/pom.xml#L40
Provides transitive vulnerable dependency maven:ch.qos.logback:logback-classic:1.5.3 * [CVE-2024-12798](https://www.mend.io/vulnerability-database/CVE-2024-12798?utm_source=JetBrains) 6.6 JaninoEventEvaluator vulnerability Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-e2e/pom.xml#L54
Provides transitive vulnerable dependency maven:org.apache.commons:commons-lang3:3.13.0 * [CVE-2025-48924](https://www.mend.io/vulnerability-database/CVE-2025-48924?utm_source=Jetbrains) 5.3 Insufficient Information Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-admin/pom.xml#L22
Provides transitive vulnerable dependency maven:org.apache.commons:commons-lang3:3.13.0 * [CVE-2025-48924](https://www.mend.io/vulnerability-database/CVE-2025-48924?utm_source=Jetbrains) 5.3 Insufficient Information Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-spring-boot-starter/pom.xml#L22
Provides transitive vulnerable dependency maven:org.apache.commons:commons-lang3:3.13.0 * [CVE-2025-48924](https://www.mend.io/vulnerability-database/CVE-2025-48924?utm_source=Jetbrains) 5.3 Insufficient Information Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-account/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-websocket:6.1.5 * [CVE-2025-41254](https://www.mend.io/vulnerability-database/CVE-2025-41254?utm_source=Jetbrains) 4.3 Spring Framework STOMP CSRF Vulnerability Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-monitoring/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-context:6.1.5 * [CVE-2025-22233](https://www.mend.io/vulnerability-database/CVE-2025-22233?utm_source=Jetbrains) 3.1 Spring Framework DataBinder Case Sensitive Match Exception * [CVE-2024-38820](https://www.mend.io/vulnerability-database/CVE-2024-38820?utm_source=JetBrains) 3.1 Improper Handling of Case Sensitivity Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-connection/pom.xml#L28
Provides transitive vulnerable dependency maven:org.springframework:spring-websocket:6.1.5 * [CVE-2025-41254](https://www.mend.io/vulnerability-database/CVE-2025-41254?utm_source=Jetbrains) 4.3 Spring Framework STOMP CSRF Vulnerability Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-it/pom.xml#L66
Provides transitive vulnerable dependency maven:org.xmlunit:xmlunit-core:2.9.1 * [CVE-2024-31573](https://www.mend.io/vulnerability-database/CVE-2024-31573?utm_source=JetBrains) 4.0 Insufficient Information Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-admin/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-context:6.1.5 * [CVE-2025-22233](https://www.mend.io/vulnerability-database/CVE-2025-22233?utm_source=Jetbrains) 3.1 Spring Framework DataBinder Case Sensitive Match Exception * [CVE-2024-38820](https://www.mend.io/vulnerability-database/CVE-2024-38820?utm_source=JetBrains) 3.1 Improper Handling of Case Sensitivity Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-account/pom.xml#L22
Provides transitive vulnerable dependency maven:org.apache.commons:commons-lang3:3.13.0 * [CVE-2025-48924](https://www.mend.io/vulnerability-database/CVE-2025-48924?utm_source=Jetbrains) 5.3 Insufficient Information Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-chaos/pom.xml#L78
Provides transitive vulnerable dependency maven:ch.qos.logback:logback-core:1.5.3 * [CVE-2025-11226](https://www.mend.io/vulnerability-database/CVE-2025-11226?utm_source=JetBrains) 6.9 Conditional processing of logback.xml configuration file, in conjuction with Spring Framework and Janino * [CVE-2024-12798](https://www.mend.io/vulnerability-database/CVE-2024-12798?utm_source=JetBrains) 6.6 JaninoEventEvaluator vulnerability * [CVE-2024-12801](https://www.mend.io/vulnerability-database/CVE-2024-12801?utm_source=JetBrains) 4.4 SaxEventRecorder vulnerable to Server-Side Request Forgery (SSRF) attacks Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-spring-boot-starter/pom.xml#L78
Provides transitive vulnerable dependency maven:org.xmlunit:xmlunit-core:2.9.1 * [CVE-2024-31573](https://www.mend.io/vulnerability-database/CVE-2024-31573?utm_source=JetBrains) 4.0 Insufficient Information Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-spring-boot-starter/pom.xml#L26
Provides transitive vulnerable dependency maven:org.springframework:spring-beans:6.1.5 * [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-spring-boot-starter/pom.xml#L26
Provides transitive vulnerable dependency maven:org.springframework:spring-websocket:6.1.5 * [CVE-2025-41254](https://www.mend.io/vulnerability-database/CVE-2025-41254?utm_source=Jetbrains) 4.3 Spring Framework STOMP CSRF Vulnerability Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-core/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-context:6.1.5 * [CVE-2025-22233](https://www.mend.io/vulnerability-database/CVE-2025-22233?utm_source=Jetbrains) 3.1 Spring Framework DataBinder Case Sensitive Match Exception * [CVE-2024-38820](https://www.mend.io/vulnerability-database/CVE-2024-38820?utm_source=JetBrains) 3.1 Improper Handling of Case Sensitivity Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-perf/pom.xml#L92
Provides transitive vulnerable dependency maven:ch.qos.logback:logback-core:1.5.3 * [CVE-2025-11226](https://www.mend.io/vulnerability-database/CVE-2025-11226?utm_source=JetBrains) 6.9 Conditional processing of logback.xml configuration file, in conjuction with Spring Framework and Janino * [CVE-2024-12798](https://www.mend.io/vulnerability-database/CVE-2024-12798?utm_source=JetBrains) 6.6 JaninoEventEvaluator vulnerability * [CVE-2024-12801](https://www.mend.io/vulnerability-database/CVE-2024-12801?utm_source=JetBrains) 4.4 SaxEventRecorder vulnerable to Server-Side Request Forgery (SSRF) attacks Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-spring-boot-starter/pom.xml#L26
Provides transitive vulnerable dependency maven:org.springframework:spring-context:6.1.5 * [CVE-2025-22233](https://www.mend.io/vulnerability-database/CVE-2025-22233?utm_source=Jetbrains) 3.1 Spring Framework DataBinder Case Sensitive Match Exception * [CVE-2024-38820](https://www.mend.io/vulnerability-database/CVE-2024-38820?utm_source=JetBrains) 3.1 Improper Handling of Case Sensitivity Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-account/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-context:6.1.5 * [CVE-2025-22233](https://www.mend.io/vulnerability-database/CVE-2025-22233?utm_source=Jetbrains) 3.1 Spring Framework DataBinder Case Sensitive Match Exception * [CVE-2024-38820](https://www.mend.io/vulnerability-database/CVE-2024-38820?utm_source=JetBrains) 3.1 Improper Handling of Case Sensitivity Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-connection/pom.xml#L28
Provides transitive vulnerable dependency maven:org.apache.commons:commons-lang3:3.13.0 * [CVE-2025-48924](https://www.mend.io/vulnerability-database/CVE-2025-48924?utm_source=Jetbrains) 5.3 Insufficient Information Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-it/pom.xml#L25
Provides transitive vulnerable dependency maven:org.apache.commons:commons-lang3:3.13.0 * [CVE-2025-48924](https://www.mend.io/vulnerability-database/CVE-2025-48924?utm_source=Jetbrains) 5.3 Insufficient Information Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-core/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-websocket:6.1.5 * [CVE-2025-41254](https://www.mend.io/vulnerability-database/CVE-2025-41254?utm_source=Jetbrains) 4.3 Spring Framework STOMP CSRF Vulnerability Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-protocol/pom.xml#L32
Provides transitive vulnerable dependency maven:org.springframework:spring-context:6.1.5 * [CVE-2025-22233](https://www.mend.io/vulnerability-database/CVE-2025-22233?utm_source=Jetbrains) 3.1 Spring Framework DataBinder Case Sensitive Match Exception * [CVE-2024-38820](https://www.mend.io/vulnerability-database/CVE-2024-38820?utm_source=JetBrains) 3.1 Improper Handling of Case Sensitivity Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-chaos/pom.xml#L44
Provides transitive vulnerable dependency maven:org.apache.commons:commons-lang3:3.13.0 * [CVE-2025-48924](https://www.mend.io/vulnerability-database/CVE-2025-48924?utm_source=Jetbrains) 5.3 Insufficient Information Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-security/pom.xml#L19
Provides transitive vulnerable dependency maven:org.apache.commons:commons-lang3:3.13.0 * [CVE-2025-48924](https://www.mend.io/vulnerability-database/CVE-2025-48924?utm_source=Jetbrains) 5.3 Insufficient Information Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-security/pom.xml#L19
Provides transitive vulnerable dependency maven:org.springframework:spring-beans:6.1.5 * [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-e2e/pom.xml#L54
Provides transitive vulnerable dependency maven:org.springframework:spring-beans:6.1.5 * [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-protocol/pom.xml#L32
Provides transitive vulnerable dependency maven:org.springframework:spring-beans:6.1.5 * [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-chaos/pom.xml#L44
Provides transitive vulnerable dependency maven:org.springframework:spring-beans:6.1.5 * [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-monitoring/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-beans:6.1.5 * [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-admin/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-websocket:6.1.5 * [CVE-2025-41254](https://www.mend.io/vulnerability-database/CVE-2025-41254?utm_source=Jetbrains) 4.3 Spring Framework STOMP CSRF Vulnerability Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-client/pom.xml#L36
Provides transitive vulnerable dependency maven:org.springframework:spring-context:6.1.5 * [CVE-2025-22233](https://www.mend.io/vulnerability-database/CVE-2025-22233?utm_source=Jetbrains) 3.1 Spring Framework DataBinder Case Sensitive Match Exception * [CVE-2024-38820](https://www.mend.io/vulnerability-database/CVE-2024-38820?utm_source=JetBrains) 3.1 Improper Handling of Case Sensitivity Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-e2e/pom.xml#L54
Provides transitive vulnerable dependency maven:org.springframework:spring-websocket:6.1.5 * [CVE-2025-41254](https://www.mend.io/vulnerability-database/CVE-2025-41254?utm_source=Jetbrains) 4.3 Spring Framework STOMP CSRF Vulnerability Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-admin/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-beans:6.1.5 * [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-security/pom.xml#L19
Provides transitive vulnerable dependency maven:org.springframework:spring-context:6.1.5 * [CVE-2025-22233](https://www.mend.io/vulnerability-database/CVE-2025-22233?utm_source=Jetbrains) 3.1 Spring Framework DataBinder Case Sensitive Match Exception * [CVE-2024-38820](https://www.mend.io/vulnerability-database/CVE-2024-38820?utm_source=JetBrains) 3.1 Improper Handling of Case Sensitivity Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-it/pom.xml#L25
Provides transitive vulnerable dependency maven:org.springframework:spring-context:6.1.5 * [CVE-2025-22233](https://www.mend.io/vulnerability-database/CVE-2025-22233?utm_source=Jetbrains) 3.1 Spring Framework DataBinder Case Sensitive Match Exception * [CVE-2024-38820](https://www.mend.io/vulnerability-database/CVE-2024-38820?utm_source=JetBrains) 3.1 Improper Handling of Case Sensitivity Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-security/pom.xml#L19
Provides transitive vulnerable dependency maven:org.springframework:spring-websocket:6.1.5 * [CVE-2025-41254](https://www.mend.io/vulnerability-database/CVE-2025-41254?utm_source=Jetbrains) 4.3 Spring Framework STOMP CSRF Vulnerability Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-client/pom.xml#L36
Provides transitive vulnerable dependency maven:org.springframework:spring-beans:6.1.5 * [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-e2e/pom.xml#L54
Provides transitive vulnerable dependency maven:org.springframework:spring-context:6.1.5 * [CVE-2025-22233](https://www.mend.io/vulnerability-database/CVE-2025-22233?utm_source=Jetbrains) 3.1 Spring Framework DataBinder Case Sensitive Match Exception * [CVE-2024-38820](https://www.mend.io/vulnerability-database/CVE-2024-38820?utm_source=JetBrains) 3.1 Improper Handling of Case Sensitivity Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-account/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-beans:6.1.5 * [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-it/pom.xml#L25
Provides transitive vulnerable dependency maven:org.springframework:spring-beans:6.1.5 * [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-it/pom.xml#L66
Provides transitive vulnerable dependency maven:ch.qos.logback:logback-classic:1.5.3 * [CVE-2024-12798](https://www.mend.io/vulnerability-database/CVE-2024-12798?utm_source=JetBrains) 6.6 JaninoEventEvaluator vulnerability Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-client/pom.xml#L36
Provides transitive vulnerable dependency maven:org.apache.commons:commons-lang3:3.13.0 * [CVE-2025-48924](https://www.mend.io/vulnerability-database/CVE-2025-48924?utm_source=Jetbrains) 5.3 Insufficient Information Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-it/pom.xml#L66
Provides transitive vulnerable dependency maven:ch.qos.logback:logback-core:1.5.3 * [CVE-2025-11226](https://www.mend.io/vulnerability-database/CVE-2025-11226?utm_source=JetBrains) 6.9 Conditional processing of logback.xml configuration file, in conjuction with Spring Framework and Janino * [CVE-2024-12798](https://www.mend.io/vulnerability-database/CVE-2024-12798?utm_source=JetBrains) 6.6 JaninoEventEvaluator vulnerability * [CVE-2024-12801](https://www.mend.io/vulnerability-database/CVE-2024-12801?utm_source=JetBrains) 4.4 SaxEventRecorder vulnerable to Server-Side Request Forgery (SSRF) attacks Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-chaos/pom.xml#L44
Provides transitive vulnerable dependency maven:org.springframework:spring-websocket:6.1.5 * [CVE-2025-41254](https://www.mend.io/vulnerability-database/CVE-2025-41254?utm_source=Jetbrains) 4.3 Spring Framework STOMP CSRF Vulnerability Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-connection/pom.xml#L28
Provides transitive vulnerable dependency maven:org.springframework:spring-beans:6.1.5 * [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-it/pom.xml#L25
Provides transitive vulnerable dependency maven:org.springframework:spring-websocket:6.1.5 * [CVE-2025-41254](https://www.mend.io/vulnerability-database/CVE-2025-41254?utm_source=Jetbrains) 4.3 Spring Framework STOMP CSRF Vulnerability Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-connection/pom.xml#L28
Provides transitive vulnerable dependency maven:org.springframework:spring-context:6.1.5 * [CVE-2025-22233](https://www.mend.io/vulnerability-database/CVE-2025-22233?utm_source=Jetbrains) 3.1 Spring Framework DataBinder Case Sensitive Match Exception * [CVE-2024-38820](https://www.mend.io/vulnerability-database/CVE-2024-38820?utm_source=JetBrains) 3.1 Improper Handling of Case Sensitivity Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-spring-boot-starter/pom.xml#L40
Provides transitive vulnerable dependency maven:ch.qos.logback:logback-core:1.5.3 * [CVE-2025-11226](https://www.mend.io/vulnerability-database/CVE-2025-11226?utm_source=JetBrains) 6.9 Conditional processing of logback.xml configuration file, in conjuction with Spring Framework and Janino * [CVE-2024-12798](https://www.mend.io/vulnerability-database/CVE-2024-12798?utm_source=JetBrains) 6.6 JaninoEventEvaluator vulnerability * [CVE-2024-12801](https://www.mend.io/vulnerability-database/CVE-2024-12801?utm_source=JetBrains) 4.4 SaxEventRecorder vulnerable to Server-Side Request Forgery (SSRF) attacks Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-core/pom.xml#L22
Provides transitive vulnerable dependency maven:org.apache.commons:commons-lang3:3.13.0 * [CVE-2025-48924](https://www.mend.io/vulnerability-database/CVE-2025-48924?utm_source=Jetbrains) 5.3 Insufficient Information Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-client/pom.xml#L36
Provides transitive vulnerable dependency maven:org.springframework:spring-websocket:6.1.5 * [CVE-2025-41254](https://www.mend.io/vulnerability-database/CVE-2025-41254?utm_source=Jetbrains) 4.3 Spring Framework STOMP CSRF Vulnerability Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-e2e/pom.xml#L76
Provides transitive vulnerable dependency maven:ch.qos.logback:logback-core:1.5.3 * [CVE-2025-11226](https://www.mend.io/vulnerability-database/CVE-2025-11226?utm_source=JetBrains) 6.9 Conditional processing of logback.xml configuration file, in conjuction with Spring Framework and Janino * [CVE-2024-12798](https://www.mend.io/vulnerability-database/CVE-2024-12798?utm_source=JetBrains) 6.6 JaninoEventEvaluator vulnerability * [CVE-2024-12801](https://www.mend.io/vulnerability-database/CVE-2024-12801?utm_source=JetBrains) 4.4 SaxEventRecorder vulnerable to Server-Side Request Forgery (SSRF) attacks Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-perf/pom.xml#L49
Provides transitive vulnerable dependency maven:org.springframework:spring-websocket:6.1.5 * [CVE-2025-41254](https://www.mend.io/vulnerability-database/CVE-2025-41254?utm_source=Jetbrains) 4.3 Spring Framework STOMP CSRF Vulnerability Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-perf/pom.xml#L49
Provides transitive vulnerable dependency maven:org.springframework:spring-beans:6.1.5 * [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-perf/pom.xml#L49
Provides transitive vulnerable dependency maven:org.springframework:spring-context:6.1.5 * [CVE-2025-22233](https://www.mend.io/vulnerability-database/CVE-2025-22233?utm_source=Jetbrains) 3.1 Spring Framework DataBinder Case Sensitive Match Exception * [CVE-2024-38820](https://www.mend.io/vulnerability-database/CVE-2024-38820?utm_source=JetBrains) 3.1 Improper Handling of Case Sensitivity Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-chaos/pom.xml#L44
Provides transitive vulnerable dependency maven:org.springframework:spring-context:6.1.5 * [CVE-2025-22233](https://www.mend.io/vulnerability-database/CVE-2025-22233?utm_source=Jetbrains) 3.1 Spring Framework DataBinder Case Sensitive Match Exception * [CVE-2024-38820](https://www.mend.io/vulnerability-database/CVE-2024-38820?utm_source=JetBrains) 3.1 Improper Handling of Case Sensitivity Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-protocol/pom.xml#L32
Provides transitive vulnerable dependency maven:org.springframework:spring-websocket:6.1.5 * [CVE-2025-41254](https://www.mend.io/vulnerability-database/CVE-2025-41254?utm_source=Jetbrains) 4.3 Spring Framework STOMP CSRF Vulnerability Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-protocol/pom.xml#L32
Provides transitive vulnerable dependency maven:org.apache.commons:commons-lang3:3.13.0 * [CVE-2025-48924](https://www.mend.io/vulnerability-database/CVE-2025-48924?utm_source=Jetbrains) 5.3 Insufficient Information Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-security/pom.xml#L92
Provides transitive vulnerable dependency maven:ch.qos.logback:logback-core:1.5.3 * [CVE-2025-11226](https://www.mend.io/vulnerability-database/CVE-2025-11226?utm_source=JetBrains) 6.9 Conditional processing of logback.xml configuration file, in conjuction with Spring Framework and Janino * [CVE-2024-12798](https://www.mend.io/vulnerability-database/CVE-2024-12798?utm_source=JetBrains) 6.6 JaninoEventEvaluator vulnerability * [CVE-2024-12801](https://www.mend.io/vulnerability-database/CVE-2024-12801?utm_source=JetBrains) 4.4 SaxEventRecorder vulnerable to Server-Side Request Forgery (SSRF) attacks Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-monitoring/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-websocket:6.1.5 * [CVE-2025-41254](https://www.mend.io/vulnerability-database/CVE-2025-41254?utm_source=Jetbrains) 4.3 Spring Framework STOMP CSRF Vulnerability Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-core/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-beans:6.1.5 * [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-perf/pom.xml#L49
Provides transitive vulnerable dependency maven:org.apache.commons:commons-lang3:3.13.0 * [CVE-2025-48924](https://www.mend.io/vulnerability-database/CVE-2025-48924?utm_source=Jetbrains) 5.3 Insufficient Information Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-monitoring/pom.xml#L22
Provides transitive vulnerable dependency maven:org.apache.commons:commons-lang3:3.13.0 * [CVE-2025-48924](https://www.mend.io/vulnerability-database/CVE-2025-48924?utm_source=Jetbrains) 5.3 Insufficient Information Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-spring-boot-starter/pom.xml#L40
Provides transitive vulnerable dependency maven:ch.qos.logback:logback-classic:1.5.3 * [CVE-2024-12798](https://www.mend.io/vulnerability-database/CVE-2024-12798?utm_source=JetBrains) 6.6 JaninoEventEvaluator vulnerability Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-e2e/pom.xml#L54
Provides transitive vulnerable dependency maven:org.apache.commons:commons-lang3:3.13.0 * [CVE-2025-48924](https://www.mend.io/vulnerability-database/CVE-2025-48924?utm_source=Jetbrains) 5.3 Insufficient Information Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-admin/pom.xml#L22
Provides transitive vulnerable dependency maven:org.apache.commons:commons-lang3:3.13.0 * [CVE-2025-48924](https://www.mend.io/vulnerability-database/CVE-2025-48924?utm_source=Jetbrains) 5.3 Insufficient Information Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-spring-boot-starter/pom.xml#L22
Provides transitive vulnerable dependency maven:org.apache.commons:commons-lang3:3.13.0 * [CVE-2025-48924](https://www.mend.io/vulnerability-database/CVE-2025-48924?utm_source=Jetbrains) 5.3 Insufficient Information Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-account/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-websocket:6.1.5 * [CVE-2025-41254](https://www.mend.io/vulnerability-database/CVE-2025-41254?utm_source=Jetbrains) 4.3 Spring Framework STOMP CSRF Vulnerability Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-monitoring/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-context:6.1.5 * [CVE-2025-22233](https://www.mend.io/vulnerability-database/CVE-2025-22233?utm_source=Jetbrains) 3.1 Spring Framework DataBinder Case Sensitive Match Exception * [CVE-2024-38820](https://www.mend.io/vulnerability-database/CVE-2024-38820?utm_source=JetBrains) 3.1 Improper Handling of Case Sensitivity Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-connection/pom.xml#L28
Provides transitive vulnerable dependency maven:org.springframework:spring-websocket:6.1.5 * [CVE-2025-41254](https://www.mend.io/vulnerability-database/CVE-2025-41254?utm_source=Jetbrains) 4.3 Spring Framework STOMP CSRF Vulnerability Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-it/pom.xml#L66
Provides transitive vulnerable dependency maven:org.xmlunit:xmlunit-core:2.9.1 * [CVE-2024-31573](https://www.mend.io/vulnerability-database/CVE-2024-31573?utm_source=JetBrains) 4.0 Insufficient Information Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-admin/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-context:6.1.5 * [CVE-2025-22233](https://www.mend.io/vulnerability-database/CVE-2025-22233?utm_source=Jetbrains) 3.1 Spring Framework DataBinder Case Sensitive Match Exception * [CVE-2024-38820](https://www.mend.io/vulnerability-database/CVE-2024-38820?utm_source=JetBrains) 3.1 Improper Handling of Case Sensitivity Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-account/pom.xml#L22
Provides transitive vulnerable dependency maven:org.apache.commons:commons-lang3:3.13.0 * [CVE-2025-48924](https://www.mend.io/vulnerability-database/CVE-2025-48924?utm_source=Jetbrains) 5.3 Insufficient Information Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
Vulnerable declared dependency: nsecbunker-tests/nsecbunker-chaos/pom.xml#L78
Provides transitive vulnerable dependency maven:ch.qos.logback:logback-core:1.5.3 * [CVE-2025-11226](https://www.mend.io/vulnerability-database/CVE-2025-11226?utm_source=JetBrains) 6.9 Conditional processing of logback.xml configuration file, in conjuction with Spring Framework and Janino * [CVE-2024-12798](https://www.mend.io/vulnerability-database/CVE-2024-12798?utm_source=JetBrains) 6.6 JaninoEventEvaluator vulnerability * [CVE-2024-12801](https://www.mend.io/vulnerability-database/CVE-2024-12801?utm_source=JetBrains) 4.4 SaxEventRecorder vulnerable to Server-Side Request Forgery (SSRF) attacks Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)

Artifacts

Produced during runtime
Name Size Digest
coverage-reports Expired
1.9 MB
sha256:b5253833c22b41dc45c227f2dd48b61d4b73e8fc5eb8d66c1419b48922955bce
maven-artifacts Expired
37 MB
sha256:a655a3c2284140436429ef6d338bb48ea75141ef7ce10d77e51ee63c93862988
quality-reports Expired
7.82 KB
sha256:9e5b6cc3002196b1e1454b211d095f111c2f7232600869be45f13f7caca5c545
test-results-java-21 Expired
391 KB
sha256:e0f888205b53ec089020708031e2339fc46c3a12e8f9bc769469cb8622e64236