feat(ci): add GitHub Actions workflow for Java code formatting #21
Annotations
27 errors, 138 warnings, and 136 notices
|
Code Quality
Process completed with exit code 1.
|
|
Vulnerable declared dependency:
nsecbunker-client/pom.xml#L36
Provides transitive vulnerable dependency maven:org.apache.tomcat.embed:tomcat-embed-core:10.1.19
* [CVE-2025-31651](https://www.mend.io/vulnerability-database/CVE-2025-31651?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-50379](https://www.mend.io/vulnerability-database/CVE-2024-50379?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-56337](https://www.mend.io/vulnerability-database/CVE-2024-56337?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2025-24813](https://www.mend.io/vulnerability-database/CVE-2025-24813?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-52316](https://www.mend.io/vulnerability-database/CVE-2024-52316?utm_source=Jetbrains) 9.8 Unchecked Error Condition
* [CVE-2025-55754](https://www.mend.io/vulnerability-database/CVE-2025-55754?utm_source=Jetbrains) 9.6 Insufficient Information
* [CVE-2024-38286](https://www.mend.io/vulnerability-database/CVE-2024-38286?utm_source=Jetbrains) 8.6 Allocation of Resources Without Limits or Throttling
* [CVE-2024-34750](https://www.mend.io/vulnerability-database/CVE-2024-34750?utm_source=Jetbrains) 7.5 Improper Handling of Exceptional Conditions
* [CVE-2025-55752](https://www.mend.io/vulnerability-database/CVE-2025-55752?utm_source=Jetbrains) 7.5 Insufficient Information
* [CVE-2025-48989](https://www.mend.io/vulnerability-database/CVE-2025-48989?utm_source=Jetbrains) 7.5 Insufficient Information
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-monitoring/pom.xml#L22
Provides transitive vulnerable dependency maven:org.apache.tomcat.embed:tomcat-embed-core:10.1.19
* [CVE-2025-31651](https://www.mend.io/vulnerability-database/CVE-2025-31651?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-50379](https://www.mend.io/vulnerability-database/CVE-2024-50379?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-56337](https://www.mend.io/vulnerability-database/CVE-2024-56337?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2025-24813](https://www.mend.io/vulnerability-database/CVE-2025-24813?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-52316](https://www.mend.io/vulnerability-database/CVE-2024-52316?utm_source=Jetbrains) 9.8 Unchecked Error Condition
* [CVE-2025-55754](https://www.mend.io/vulnerability-database/CVE-2025-55754?utm_source=Jetbrains) 9.6 Insufficient Information
* [CVE-2024-38286](https://www.mend.io/vulnerability-database/CVE-2024-38286?utm_source=Jetbrains) 8.6 Allocation of Resources Without Limits or Throttling
* [CVE-2024-34750](https://www.mend.io/vulnerability-database/CVE-2024-34750?utm_source=Jetbrains) 7.5 Improper Handling of Exceptional Conditions
* [CVE-2025-55752](https://www.mend.io/vulnerability-database/CVE-2025-55752?utm_source=Jetbrains) 7.5 Insufficient Information
* [CVE-2025-48989](https://www.mend.io/vulnerability-database/CVE-2025-48989?utm_source=Jetbrains) 7.5 Insufficient Information
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-e2e/pom.xml#L54
Provides transitive vulnerable dependency maven:org.apache.tomcat.embed:tomcat-embed-core:10.1.19
* [CVE-2025-31651](https://www.mend.io/vulnerability-database/CVE-2025-31651?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-50379](https://www.mend.io/vulnerability-database/CVE-2024-50379?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-56337](https://www.mend.io/vulnerability-database/CVE-2024-56337?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2025-24813](https://www.mend.io/vulnerability-database/CVE-2025-24813?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-52316](https://www.mend.io/vulnerability-database/CVE-2024-52316?utm_source=Jetbrains) 9.8 Unchecked Error Condition
* [CVE-2025-55754](https://www.mend.io/vulnerability-database/CVE-2025-55754?utm_source=Jetbrains) 9.6 Insufficient Information
* [CVE-2024-38286](https://www.mend.io/vulnerability-database/CVE-2024-38286?utm_source=Jetbrains) 8.6 Allocation of Resources Without Limits or Throttling
* [CVE-2024-34750](https://www.mend.io/vulnerability-database/CVE-2024-34750?utm_source=Jetbrains) 7.5 Improper Handling of Exceptional Conditions
* [CVE-2025-55752](https://www.mend.io/vulnerability-database/CVE-2025-55752?utm_source=Jetbrains) 7.5 Insufficient Information
* [CVE-2025-48989](https://www.mend.io/vulnerability-database/CVE-2025-48989?utm_source=Jetbrains) 7.5 Insufficient Information
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-spring-boot-starter/pom.xml#L26
Provides transitive vulnerable dependency maven:org.apache.tomcat.embed:tomcat-embed-core:10.1.19
* [CVE-2025-31651](https://www.mend.io/vulnerability-database/CVE-2025-31651?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-50379](https://www.mend.io/vulnerability-database/CVE-2024-50379?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-56337](https://www.mend.io/vulnerability-database/CVE-2024-56337?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2025-24813](https://www.mend.io/vulnerability-database/CVE-2025-24813?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-52316](https://www.mend.io/vulnerability-database/CVE-2024-52316?utm_source=Jetbrains) 9.8 Unchecked Error Condition
* [CVE-2025-55754](https://www.mend.io/vulnerability-database/CVE-2025-55754?utm_source=Jetbrains) 9.6 Insufficient Information
* [CVE-2024-38286](https://www.mend.io/vulnerability-database/CVE-2024-38286?utm_source=Jetbrains) 8.6 Allocation of Resources Without Limits or Throttling
* [CVE-2024-34750](https://www.mend.io/vulnerability-database/CVE-2024-34750?utm_source=Jetbrains) 7.5 Improper Handling of Exceptional Conditions
* [CVE-2025-55752](https://www.mend.io/vulnerability-database/CVE-2025-55752?utm_source=Jetbrains) 7.5 Insufficient Information
* [CVE-2025-48989](https://www.mend.io/vulnerability-database/CVE-2025-48989?utm_source=Jetbrains) 7.5 Insufficient Information
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-it/pom.xml#L25
Provides transitive vulnerable dependency maven:org.apache.tomcat.embed:tomcat-embed-core:10.1.19
* [CVE-2025-31651](https://www.mend.io/vulnerability-database/CVE-2025-31651?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-50379](https://www.mend.io/vulnerability-database/CVE-2024-50379?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-56337](https://www.mend.io/vulnerability-database/CVE-2024-56337?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2025-24813](https://www.mend.io/vulnerability-database/CVE-2025-24813?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-52316](https://www.mend.io/vulnerability-database/CVE-2024-52316?utm_source=Jetbrains) 9.8 Unchecked Error Condition
* [CVE-2025-55754](https://www.mend.io/vulnerability-database/CVE-2025-55754?utm_source=Jetbrains) 9.6 Insufficient Information
* [CVE-2024-38286](https://www.mend.io/vulnerability-database/CVE-2024-38286?utm_source=Jetbrains) 8.6 Allocation of Resources Without Limits or Throttling
* [CVE-2024-34750](https://www.mend.io/vulnerability-database/CVE-2024-34750?utm_source=Jetbrains) 7.5 Improper Handling of Exceptional Conditions
* [CVE-2025-55752](https://www.mend.io/vulnerability-database/CVE-2025-55752?utm_source=Jetbrains) 7.5 Insufficient Information
* [CVE-2025-48989](https://www.mend.io/vulnerability-database/CVE-2025-48989?utm_source=Jetbrains) 7.5 Insufficient Information
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-core/pom.xml#L22
Provides transitive vulnerable dependency maven:org.apache.tomcat.embed:tomcat-embed-core:10.1.19
* [CVE-2025-31651](https://www.mend.io/vulnerability-database/CVE-2025-31651?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-50379](https://www.mend.io/vulnerability-database/CVE-2024-50379?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-56337](https://www.mend.io/vulnerability-database/CVE-2024-56337?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2025-24813](https://www.mend.io/vulnerability-database/CVE-2025-24813?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-52316](https://www.mend.io/vulnerability-database/CVE-2024-52316?utm_source=Jetbrains) 9.8 Unchecked Error Condition
* [CVE-2025-55754](https://www.mend.io/vulnerability-database/CVE-2025-55754?utm_source=Jetbrains) 9.6 Insufficient Information
* [CVE-2024-38286](https://www.mend.io/vulnerability-database/CVE-2024-38286?utm_source=Jetbrains) 8.6 Allocation of Resources Without Limits or Throttling
* [CVE-2024-34750](https://www.mend.io/vulnerability-database/CVE-2024-34750?utm_source=Jetbrains) 7.5 Improper Handling of Exceptional Conditions
* [CVE-2025-55752](https://www.mend.io/vulnerability-database/CVE-2025-55752?utm_source=Jetbrains) 7.5 Insufficient Information
* [CVE-2025-48989](https://www.mend.io/vulnerability-database/CVE-2025-48989?utm_source=Jetbrains) 7.5 Insufficient Information
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-chaos/pom.xml#L44
Provides transitive vulnerable dependency maven:org.apache.tomcat.embed:tomcat-embed-core:10.1.19
* [CVE-2025-31651](https://www.mend.io/vulnerability-database/CVE-2025-31651?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-50379](https://www.mend.io/vulnerability-database/CVE-2024-50379?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-56337](https://www.mend.io/vulnerability-database/CVE-2024-56337?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2025-24813](https://www.mend.io/vulnerability-database/CVE-2025-24813?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-52316](https://www.mend.io/vulnerability-database/CVE-2024-52316?utm_source=Jetbrains) 9.8 Unchecked Error Condition
* [CVE-2025-55754](https://www.mend.io/vulnerability-database/CVE-2025-55754?utm_source=Jetbrains) 9.6 Insufficient Information
* [CVE-2024-38286](https://www.mend.io/vulnerability-database/CVE-2024-38286?utm_source=Jetbrains) 8.6 Allocation of Resources Without Limits or Throttling
* [CVE-2024-34750](https://www.mend.io/vulnerability-database/CVE-2024-34750?utm_source=Jetbrains) 7.5 Improper Handling of Exceptional Conditions
* [CVE-2025-55752](https://www.mend.io/vulnerability-database/CVE-2025-55752?utm_source=Jetbrains) 7.5 Insufficient Information
* [CVE-2025-48989](https://www.mend.io/vulnerability-database/CVE-2025-48989?utm_source=Jetbrains) 7.5 Insufficient Information
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-connection/pom.xml#L28
Provides transitive vulnerable dependency maven:org.apache.tomcat.embed:tomcat-embed-core:10.1.19
* [CVE-2025-31651](https://www.mend.io/vulnerability-database/CVE-2025-31651?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-50379](https://www.mend.io/vulnerability-database/CVE-2024-50379?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-56337](https://www.mend.io/vulnerability-database/CVE-2024-56337?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2025-24813](https://www.mend.io/vulnerability-database/CVE-2025-24813?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-52316](https://www.mend.io/vulnerability-database/CVE-2024-52316?utm_source=Jetbrains) 9.8 Unchecked Error Condition
* [CVE-2025-55754](https://www.mend.io/vulnerability-database/CVE-2025-55754?utm_source=Jetbrains) 9.6 Insufficient Information
* [CVE-2024-38286](https://www.mend.io/vulnerability-database/CVE-2024-38286?utm_source=Jetbrains) 8.6 Allocation of Resources Without Limits or Throttling
* [CVE-2024-34750](https://www.mend.io/vulnerability-database/CVE-2024-34750?utm_source=Jetbrains) 7.5 Improper Handling of Exceptional Conditions
* [CVE-2025-55752](https://www.mend.io/vulnerability-database/CVE-2025-55752?utm_source=Jetbrains) 7.5 Insufficient Information
* [CVE-2025-48989](https://www.mend.io/vulnerability-database/CVE-2025-48989?utm_source=Jetbrains) 7.5 Insufficient Information
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-account/pom.xml#L22
Provides transitive vulnerable dependency maven:org.apache.tomcat.embed:tomcat-embed-core:10.1.19
* [CVE-2025-31651](https://www.mend.io/vulnerability-database/CVE-2025-31651?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-50379](https://www.mend.io/vulnerability-database/CVE-2024-50379?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-56337](https://www.mend.io/vulnerability-database/CVE-2024-56337?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2025-24813](https://www.mend.io/vulnerability-database/CVE-2025-24813?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-52316](https://www.mend.io/vulnerability-database/CVE-2024-52316?utm_source=Jetbrains) 9.8 Unchecked Error Condition
* [CVE-2025-55754](https://www.mend.io/vulnerability-database/CVE-2025-55754?utm_source=Jetbrains) 9.6 Insufficient Information
* [CVE-2024-38286](https://www.mend.io/vulnerability-database/CVE-2024-38286?utm_source=Jetbrains) 8.6 Allocation of Resources Without Limits or Throttling
* [CVE-2024-34750](https://www.mend.io/vulnerability-database/CVE-2024-34750?utm_source=Jetbrains) 7.5 Improper Handling of Exceptional Conditions
* [CVE-2025-55752](https://www.mend.io/vulnerability-database/CVE-2025-55752?utm_source=Jetbrains) 7.5 Insufficient Information
* [CVE-2025-48989](https://www.mend.io/vulnerability-database/CVE-2025-48989?utm_source=Jetbrains) 7.5 Insufficient Information
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-protocol/pom.xml#L32
Provides transitive vulnerable dependency maven:org.apache.tomcat.embed:tomcat-embed-core:10.1.19
* [CVE-2025-31651](https://www.mend.io/vulnerability-database/CVE-2025-31651?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-50379](https://www.mend.io/vulnerability-database/CVE-2024-50379?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-56337](https://www.mend.io/vulnerability-database/CVE-2024-56337?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2025-24813](https://www.mend.io/vulnerability-database/CVE-2025-24813?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-52316](https://www.mend.io/vulnerability-database/CVE-2024-52316?utm_source=Jetbrains) 9.8 Unchecked Error Condition
* [CVE-2025-55754](https://www.mend.io/vulnerability-database/CVE-2025-55754?utm_source=Jetbrains) 9.6 Insufficient Information
* [CVE-2024-38286](https://www.mend.io/vulnerability-database/CVE-2024-38286?utm_source=Jetbrains) 8.6 Allocation of Resources Without Limits or Throttling
* [CVE-2024-34750](https://www.mend.io/vulnerability-database/CVE-2024-34750?utm_source=Jetbrains) 7.5 Improper Handling of Exceptional Conditions
* [CVE-2025-55752](https://www.mend.io/vulnerability-database/CVE-2025-55752?utm_source=Jetbrains) 7.5 Insufficient Information
* [CVE-2025-48989](https://www.mend.io/vulnerability-database/CVE-2025-48989?utm_source=Jetbrains) 7.5 Insufficient Information
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-admin/pom.xml#L22
Provides transitive vulnerable dependency maven:org.apache.tomcat.embed:tomcat-embed-core:10.1.19
* [CVE-2025-31651](https://www.mend.io/vulnerability-database/CVE-2025-31651?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-50379](https://www.mend.io/vulnerability-database/CVE-2024-50379?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-56337](https://www.mend.io/vulnerability-database/CVE-2024-56337?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2025-24813](https://www.mend.io/vulnerability-database/CVE-2025-24813?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-52316](https://www.mend.io/vulnerability-database/CVE-2024-52316?utm_source=Jetbrains) 9.8 Unchecked Error Condition
* [CVE-2025-55754](https://www.mend.io/vulnerability-database/CVE-2025-55754?utm_source=Jetbrains) 9.6 Insufficient Information
* [CVE-2024-38286](https://www.mend.io/vulnerability-database/CVE-2024-38286?utm_source=Jetbrains) 8.6 Allocation of Resources Without Limits or Throttling
* [CVE-2024-34750](https://www.mend.io/vulnerability-database/CVE-2024-34750?utm_source=Jetbrains) 7.5 Improper Handling of Exceptional Conditions
* [CVE-2025-55752](https://www.mend.io/vulnerability-database/CVE-2025-55752?utm_source=Jetbrains) 7.5 Insufficient Information
* [CVE-2025-48989](https://www.mend.io/vulnerability-database/CVE-2025-48989?utm_source=Jetbrains) 7.5 Insufficient Information
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-perf/pom.xml#L49
Provides transitive vulnerable dependency maven:org.apache.tomcat.embed:tomcat-embed-core:10.1.19
* [CVE-2025-31651](https://www.mend.io/vulnerability-database/CVE-2025-31651?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-50379](https://www.mend.io/vulnerability-database/CVE-2024-50379?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-56337](https://www.mend.io/vulnerability-database/CVE-2024-56337?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2025-24813](https://www.mend.io/vulnerability-database/CVE-2025-24813?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-52316](https://www.mend.io/vulnerability-database/CVE-2024-52316?utm_source=Jetbrains) 9.8 Unchecked Error Condition
* [CVE-2025-55754](https://www.mend.io/vulnerability-database/CVE-2025-55754?utm_source=Jetbrains) 9.6 Insufficient Information
* [CVE-2024-38286](https://www.mend.io/vulnerability-database/CVE-2024-38286?utm_source=Jetbrains) 8.6 Allocation of Resources Without Limits or Throttling
* [CVE-2024-34750](https://www.mend.io/vulnerability-database/CVE-2024-34750?utm_source=Jetbrains) 7.5 Improper Handling of Exceptional Conditions
* [CVE-2025-55752](https://www.mend.io/vulnerability-database/CVE-2025-55752?utm_source=Jetbrains) 7.5 Insufficient Information
* [CVE-2025-48989](https://www.mend.io/vulnerability-database/CVE-2025-48989?utm_source=Jetbrains) 7.5 Insufficient Information
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-security/pom.xml#L19
Provides transitive vulnerable dependency maven:org.apache.tomcat.embed:tomcat-embed-core:10.1.19
* [CVE-2025-31651](https://www.mend.io/vulnerability-database/CVE-2025-31651?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-50379](https://www.mend.io/vulnerability-database/CVE-2024-50379?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-56337](https://www.mend.io/vulnerability-database/CVE-2024-56337?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2025-24813](https://www.mend.io/vulnerability-database/CVE-2025-24813?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-52316](https://www.mend.io/vulnerability-database/CVE-2024-52316?utm_source=Jetbrains) 9.8 Unchecked Error Condition
* [CVE-2025-55754](https://www.mend.io/vulnerability-database/CVE-2025-55754?utm_source=Jetbrains) 9.6 Insufficient Information
* [CVE-2024-38286](https://www.mend.io/vulnerability-database/CVE-2024-38286?utm_source=Jetbrains) 8.6 Allocation of Resources Without Limits or Throttling
* [CVE-2024-34750](https://www.mend.io/vulnerability-database/CVE-2024-34750?utm_source=Jetbrains) 7.5 Improper Handling of Exceptional Conditions
* [CVE-2025-55752](https://www.mend.io/vulnerability-database/CVE-2025-55752?utm_source=Jetbrains) 7.5 Insufficient Information
* [CVE-2025-48989](https://www.mend.io/vulnerability-database/CVE-2025-48989?utm_source=Jetbrains) 7.5 Insufficient Information
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-client/pom.xml#L36
Provides transitive vulnerable dependency maven:org.apache.tomcat.embed:tomcat-embed-core:10.1.19
* [CVE-2025-31651](https://www.mend.io/vulnerability-database/CVE-2025-31651?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-50379](https://www.mend.io/vulnerability-database/CVE-2024-50379?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-56337](https://www.mend.io/vulnerability-database/CVE-2024-56337?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2025-24813](https://www.mend.io/vulnerability-database/CVE-2025-24813?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-52316](https://www.mend.io/vulnerability-database/CVE-2024-52316?utm_source=Jetbrains) 9.8 Unchecked Error Condition
* [CVE-2025-55754](https://www.mend.io/vulnerability-database/CVE-2025-55754?utm_source=Jetbrains) 9.6 Insufficient Information
* [CVE-2024-38286](https://www.mend.io/vulnerability-database/CVE-2024-38286?utm_source=Jetbrains) 8.6 Allocation of Resources Without Limits or Throttling
* [CVE-2024-34750](https://www.mend.io/vulnerability-database/CVE-2024-34750?utm_source=Jetbrains) 7.5 Improper Handling of Exceptional Conditions
* [CVE-2025-55752](https://www.mend.io/vulnerability-database/CVE-2025-55752?utm_source=Jetbrains) 7.5 Insufficient Information
* [CVE-2025-48989](https://www.mend.io/vulnerability-database/CVE-2025-48989?utm_source=Jetbrains) 7.5 Insufficient Information
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-monitoring/pom.xml#L22
Provides transitive vulnerable dependency maven:org.apache.tomcat.embed:tomcat-embed-core:10.1.19
* [CVE-2025-31651](https://www.mend.io/vulnerability-database/CVE-2025-31651?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-50379](https://www.mend.io/vulnerability-database/CVE-2024-50379?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-56337](https://www.mend.io/vulnerability-database/CVE-2024-56337?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2025-24813](https://www.mend.io/vulnerability-database/CVE-2025-24813?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-52316](https://www.mend.io/vulnerability-database/CVE-2024-52316?utm_source=Jetbrains) 9.8 Unchecked Error Condition
* [CVE-2025-55754](https://www.mend.io/vulnerability-database/CVE-2025-55754?utm_source=Jetbrains) 9.6 Insufficient Information
* [CVE-2024-38286](https://www.mend.io/vulnerability-database/CVE-2024-38286?utm_source=Jetbrains) 8.6 Allocation of Resources Without Limits or Throttling
* [CVE-2024-34750](https://www.mend.io/vulnerability-database/CVE-2024-34750?utm_source=Jetbrains) 7.5 Improper Handling of Exceptional Conditions
* [CVE-2025-55752](https://www.mend.io/vulnerability-database/CVE-2025-55752?utm_source=Jetbrains) 7.5 Insufficient Information
* [CVE-2025-48989](https://www.mend.io/vulnerability-database/CVE-2025-48989?utm_source=Jetbrains) 7.5 Insufficient Information
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-e2e/pom.xml#L54
Provides transitive vulnerable dependency maven:org.apache.tomcat.embed:tomcat-embed-core:10.1.19
* [CVE-2025-31651](https://www.mend.io/vulnerability-database/CVE-2025-31651?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-50379](https://www.mend.io/vulnerability-database/CVE-2024-50379?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-56337](https://www.mend.io/vulnerability-database/CVE-2024-56337?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2025-24813](https://www.mend.io/vulnerability-database/CVE-2025-24813?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-52316](https://www.mend.io/vulnerability-database/CVE-2024-52316?utm_source=Jetbrains) 9.8 Unchecked Error Condition
* [CVE-2025-55754](https://www.mend.io/vulnerability-database/CVE-2025-55754?utm_source=Jetbrains) 9.6 Insufficient Information
* [CVE-2024-38286](https://www.mend.io/vulnerability-database/CVE-2024-38286?utm_source=Jetbrains) 8.6 Allocation of Resources Without Limits or Throttling
* [CVE-2024-34750](https://www.mend.io/vulnerability-database/CVE-2024-34750?utm_source=Jetbrains) 7.5 Improper Handling of Exceptional Conditions
* [CVE-2025-55752](https://www.mend.io/vulnerability-database/CVE-2025-55752?utm_source=Jetbrains) 7.5 Insufficient Information
* [CVE-2025-48989](https://www.mend.io/vulnerability-database/CVE-2025-48989?utm_source=Jetbrains) 7.5 Insufficient Information
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-spring-boot-starter/pom.xml#L26
Provides transitive vulnerable dependency maven:org.apache.tomcat.embed:tomcat-embed-core:10.1.19
* [CVE-2025-31651](https://www.mend.io/vulnerability-database/CVE-2025-31651?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-50379](https://www.mend.io/vulnerability-database/CVE-2024-50379?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-56337](https://www.mend.io/vulnerability-database/CVE-2024-56337?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2025-24813](https://www.mend.io/vulnerability-database/CVE-2025-24813?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-52316](https://www.mend.io/vulnerability-database/CVE-2024-52316?utm_source=Jetbrains) 9.8 Unchecked Error Condition
* [CVE-2025-55754](https://www.mend.io/vulnerability-database/CVE-2025-55754?utm_source=Jetbrains) 9.6 Insufficient Information
* [CVE-2024-38286](https://www.mend.io/vulnerability-database/CVE-2024-38286?utm_source=Jetbrains) 8.6 Allocation of Resources Without Limits or Throttling
* [CVE-2024-34750](https://www.mend.io/vulnerability-database/CVE-2024-34750?utm_source=Jetbrains) 7.5 Improper Handling of Exceptional Conditions
* [CVE-2025-55752](https://www.mend.io/vulnerability-database/CVE-2025-55752?utm_source=Jetbrains) 7.5 Insufficient Information
* [CVE-2025-48989](https://www.mend.io/vulnerability-database/CVE-2025-48989?utm_source=Jetbrains) 7.5 Insufficient Information
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-it/pom.xml#L25
Provides transitive vulnerable dependency maven:org.apache.tomcat.embed:tomcat-embed-core:10.1.19
* [CVE-2025-31651](https://www.mend.io/vulnerability-database/CVE-2025-31651?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-50379](https://www.mend.io/vulnerability-database/CVE-2024-50379?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-56337](https://www.mend.io/vulnerability-database/CVE-2024-56337?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2025-24813](https://www.mend.io/vulnerability-database/CVE-2025-24813?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-52316](https://www.mend.io/vulnerability-database/CVE-2024-52316?utm_source=Jetbrains) 9.8 Unchecked Error Condition
* [CVE-2025-55754](https://www.mend.io/vulnerability-database/CVE-2025-55754?utm_source=Jetbrains) 9.6 Insufficient Information
* [CVE-2024-38286](https://www.mend.io/vulnerability-database/CVE-2024-38286?utm_source=Jetbrains) 8.6 Allocation of Resources Without Limits or Throttling
* [CVE-2024-34750](https://www.mend.io/vulnerability-database/CVE-2024-34750?utm_source=Jetbrains) 7.5 Improper Handling of Exceptional Conditions
* [CVE-2025-55752](https://www.mend.io/vulnerability-database/CVE-2025-55752?utm_source=Jetbrains) 7.5 Insufficient Information
* [CVE-2025-48989](https://www.mend.io/vulnerability-database/CVE-2025-48989?utm_source=Jetbrains) 7.5 Insufficient Information
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-core/pom.xml#L22
Provides transitive vulnerable dependency maven:org.apache.tomcat.embed:tomcat-embed-core:10.1.19
* [CVE-2025-31651](https://www.mend.io/vulnerability-database/CVE-2025-31651?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-50379](https://www.mend.io/vulnerability-database/CVE-2024-50379?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-56337](https://www.mend.io/vulnerability-database/CVE-2024-56337?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2025-24813](https://www.mend.io/vulnerability-database/CVE-2025-24813?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-52316](https://www.mend.io/vulnerability-database/CVE-2024-52316?utm_source=Jetbrains) 9.8 Unchecked Error Condition
* [CVE-2025-55754](https://www.mend.io/vulnerability-database/CVE-2025-55754?utm_source=Jetbrains) 9.6 Insufficient Information
* [CVE-2024-38286](https://www.mend.io/vulnerability-database/CVE-2024-38286?utm_source=Jetbrains) 8.6 Allocation of Resources Without Limits or Throttling
* [CVE-2024-34750](https://www.mend.io/vulnerability-database/CVE-2024-34750?utm_source=Jetbrains) 7.5 Improper Handling of Exceptional Conditions
* [CVE-2025-55752](https://www.mend.io/vulnerability-database/CVE-2025-55752?utm_source=Jetbrains) 7.5 Insufficient Information
* [CVE-2025-48989](https://www.mend.io/vulnerability-database/CVE-2025-48989?utm_source=Jetbrains) 7.5 Insufficient Information
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-chaos/pom.xml#L44
Provides transitive vulnerable dependency maven:org.apache.tomcat.embed:tomcat-embed-core:10.1.19
* [CVE-2025-31651](https://www.mend.io/vulnerability-database/CVE-2025-31651?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-50379](https://www.mend.io/vulnerability-database/CVE-2024-50379?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-56337](https://www.mend.io/vulnerability-database/CVE-2024-56337?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2025-24813](https://www.mend.io/vulnerability-database/CVE-2025-24813?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-52316](https://www.mend.io/vulnerability-database/CVE-2024-52316?utm_source=Jetbrains) 9.8 Unchecked Error Condition
* [CVE-2025-55754](https://www.mend.io/vulnerability-database/CVE-2025-55754?utm_source=Jetbrains) 9.6 Insufficient Information
* [CVE-2024-38286](https://www.mend.io/vulnerability-database/CVE-2024-38286?utm_source=Jetbrains) 8.6 Allocation of Resources Without Limits or Throttling
* [CVE-2024-34750](https://www.mend.io/vulnerability-database/CVE-2024-34750?utm_source=Jetbrains) 7.5 Improper Handling of Exceptional Conditions
* [CVE-2025-55752](https://www.mend.io/vulnerability-database/CVE-2025-55752?utm_source=Jetbrains) 7.5 Insufficient Information
* [CVE-2025-48989](https://www.mend.io/vulnerability-database/CVE-2025-48989?utm_source=Jetbrains) 7.5 Insufficient Information
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-connection/pom.xml#L28
Provides transitive vulnerable dependency maven:org.apache.tomcat.embed:tomcat-embed-core:10.1.19
* [CVE-2025-31651](https://www.mend.io/vulnerability-database/CVE-2025-31651?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-50379](https://www.mend.io/vulnerability-database/CVE-2024-50379?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-56337](https://www.mend.io/vulnerability-database/CVE-2024-56337?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2025-24813](https://www.mend.io/vulnerability-database/CVE-2025-24813?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-52316](https://www.mend.io/vulnerability-database/CVE-2024-52316?utm_source=Jetbrains) 9.8 Unchecked Error Condition
* [CVE-2025-55754](https://www.mend.io/vulnerability-database/CVE-2025-55754?utm_source=Jetbrains) 9.6 Insufficient Information
* [CVE-2024-38286](https://www.mend.io/vulnerability-database/CVE-2024-38286?utm_source=Jetbrains) 8.6 Allocation of Resources Without Limits or Throttling
* [CVE-2024-34750](https://www.mend.io/vulnerability-database/CVE-2024-34750?utm_source=Jetbrains) 7.5 Improper Handling of Exceptional Conditions
* [CVE-2025-55752](https://www.mend.io/vulnerability-database/CVE-2025-55752?utm_source=Jetbrains) 7.5 Insufficient Information
* [CVE-2025-48989](https://www.mend.io/vulnerability-database/CVE-2025-48989?utm_source=Jetbrains) 7.5 Insufficient Information
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-account/pom.xml#L22
Provides transitive vulnerable dependency maven:org.apache.tomcat.embed:tomcat-embed-core:10.1.19
* [CVE-2025-31651](https://www.mend.io/vulnerability-database/CVE-2025-31651?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-50379](https://www.mend.io/vulnerability-database/CVE-2024-50379?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-56337](https://www.mend.io/vulnerability-database/CVE-2024-56337?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2025-24813](https://www.mend.io/vulnerability-database/CVE-2025-24813?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-52316](https://www.mend.io/vulnerability-database/CVE-2024-52316?utm_source=Jetbrains) 9.8 Unchecked Error Condition
* [CVE-2025-55754](https://www.mend.io/vulnerability-database/CVE-2025-55754?utm_source=Jetbrains) 9.6 Insufficient Information
* [CVE-2024-38286](https://www.mend.io/vulnerability-database/CVE-2024-38286?utm_source=Jetbrains) 8.6 Allocation of Resources Without Limits or Throttling
* [CVE-2024-34750](https://www.mend.io/vulnerability-database/CVE-2024-34750?utm_source=Jetbrains) 7.5 Improper Handling of Exceptional Conditions
* [CVE-2025-55752](https://www.mend.io/vulnerability-database/CVE-2025-55752?utm_source=Jetbrains) 7.5 Insufficient Information
* [CVE-2025-48989](https://www.mend.io/vulnerability-database/CVE-2025-48989?utm_source=Jetbrains) 7.5 Insufficient Information
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-protocol/pom.xml#L32
Provides transitive vulnerable dependency maven:org.apache.tomcat.embed:tomcat-embed-core:10.1.19
* [CVE-2025-31651](https://www.mend.io/vulnerability-database/CVE-2025-31651?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-50379](https://www.mend.io/vulnerability-database/CVE-2024-50379?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-56337](https://www.mend.io/vulnerability-database/CVE-2024-56337?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2025-24813](https://www.mend.io/vulnerability-database/CVE-2025-24813?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-52316](https://www.mend.io/vulnerability-database/CVE-2024-52316?utm_source=Jetbrains) 9.8 Unchecked Error Condition
* [CVE-2025-55754](https://www.mend.io/vulnerability-database/CVE-2025-55754?utm_source=Jetbrains) 9.6 Insufficient Information
* [CVE-2024-38286](https://www.mend.io/vulnerability-database/CVE-2024-38286?utm_source=Jetbrains) 8.6 Allocation of Resources Without Limits or Throttling
* [CVE-2024-34750](https://www.mend.io/vulnerability-database/CVE-2024-34750?utm_source=Jetbrains) 7.5 Improper Handling of Exceptional Conditions
* [CVE-2025-55752](https://www.mend.io/vulnerability-database/CVE-2025-55752?utm_source=Jetbrains) 7.5 Insufficient Information
* [CVE-2025-48989](https://www.mend.io/vulnerability-database/CVE-2025-48989?utm_source=Jetbrains) 7.5 Insufficient Information
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-admin/pom.xml#L22
Provides transitive vulnerable dependency maven:org.apache.tomcat.embed:tomcat-embed-core:10.1.19
* [CVE-2025-31651](https://www.mend.io/vulnerability-database/CVE-2025-31651?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-50379](https://www.mend.io/vulnerability-database/CVE-2024-50379?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-56337](https://www.mend.io/vulnerability-database/CVE-2024-56337?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2025-24813](https://www.mend.io/vulnerability-database/CVE-2025-24813?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-52316](https://www.mend.io/vulnerability-database/CVE-2024-52316?utm_source=Jetbrains) 9.8 Unchecked Error Condition
* [CVE-2025-55754](https://www.mend.io/vulnerability-database/CVE-2025-55754?utm_source=Jetbrains) 9.6 Insufficient Information
* [CVE-2024-38286](https://www.mend.io/vulnerability-database/CVE-2024-38286?utm_source=Jetbrains) 8.6 Allocation of Resources Without Limits or Throttling
* [CVE-2024-34750](https://www.mend.io/vulnerability-database/CVE-2024-34750?utm_source=Jetbrains) 7.5 Improper Handling of Exceptional Conditions
* [CVE-2025-55752](https://www.mend.io/vulnerability-database/CVE-2025-55752?utm_source=Jetbrains) 7.5 Insufficient Information
* [CVE-2025-48989](https://www.mend.io/vulnerability-database/CVE-2025-48989?utm_source=Jetbrains) 7.5 Insufficient Information
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-perf/pom.xml#L49
Provides transitive vulnerable dependency maven:org.apache.tomcat.embed:tomcat-embed-core:10.1.19
* [CVE-2025-31651](https://www.mend.io/vulnerability-database/CVE-2025-31651?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-50379](https://www.mend.io/vulnerability-database/CVE-2024-50379?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-56337](https://www.mend.io/vulnerability-database/CVE-2024-56337?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2025-24813](https://www.mend.io/vulnerability-database/CVE-2025-24813?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-52316](https://www.mend.io/vulnerability-database/CVE-2024-52316?utm_source=Jetbrains) 9.8 Unchecked Error Condition
* [CVE-2025-55754](https://www.mend.io/vulnerability-database/CVE-2025-55754?utm_source=Jetbrains) 9.6 Insufficient Information
* [CVE-2024-38286](https://www.mend.io/vulnerability-database/CVE-2024-38286?utm_source=Jetbrains) 8.6 Allocation of Resources Without Limits or Throttling
* [CVE-2024-34750](https://www.mend.io/vulnerability-database/CVE-2024-34750?utm_source=Jetbrains) 7.5 Improper Handling of Exceptional Conditions
* [CVE-2025-55752](https://www.mend.io/vulnerability-database/CVE-2025-55752?utm_source=Jetbrains) 7.5 Insufficient Information
* [CVE-2025-48989](https://www.mend.io/vulnerability-database/CVE-2025-48989?utm_source=Jetbrains) 7.5 Insufficient Information
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-security/pom.xml#L19
Provides transitive vulnerable dependency maven:org.apache.tomcat.embed:tomcat-embed-core:10.1.19
* [CVE-2025-31651](https://www.mend.io/vulnerability-database/CVE-2025-31651?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-50379](https://www.mend.io/vulnerability-database/CVE-2024-50379?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-56337](https://www.mend.io/vulnerability-database/CVE-2024-56337?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2025-24813](https://www.mend.io/vulnerability-database/CVE-2025-24813?utm_source=Jetbrains) 9.8 Insufficient Information
* [CVE-2024-52316](https://www.mend.io/vulnerability-database/CVE-2024-52316?utm_source=Jetbrains) 9.8 Unchecked Error Condition
* [CVE-2025-55754](https://www.mend.io/vulnerability-database/CVE-2025-55754?utm_source=Jetbrains) 9.6 Insufficient Information
* [CVE-2024-38286](https://www.mend.io/vulnerability-database/CVE-2024-38286?utm_source=Jetbrains) 8.6 Allocation of Resources Without Limits or Throttling
* [CVE-2024-34750](https://www.mend.io/vulnerability-database/CVE-2024-34750?utm_source=Jetbrains) 7.5 Improper Handling of Exceptional Conditions
* [CVE-2025-55752](https://www.mend.io/vulnerability-database/CVE-2025-55752?utm_source=Jetbrains) 7.5 Insufficient Information
* [CVE-2025-48989](https://www.mend.io/vulnerability-database/CVE-2025-48989?utm_source=Jetbrains) 7.5 Insufficient Information
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Inner class may be 'static':
nsecbunker-admin/src/main/java/xyz/tcheeric/nsecbunker/admin/NsecBunkerAdminClient.java#L653
Inner class `AdminConnectionListener` may be 'static'
|
|
Mismatched query and update of collection:
nsecbunker-monitoring/src/main/java/xyz/tcheeric/nsecbunker/monitoring/alerting/WebhookAlertDelivery.java#L158
Contents of collection `headers` are updated, but never queried
|
|
Mismatched query and update of collection:
nsecbunker-connection/src/main/java/xyz/tcheeric/nsecbunker/connection/RelayPool.java#L354
Contents of collection `errors` are updated, but never queried
|
|
'@Serial' annotation can be used:
nsecbunker-core/src/main/java/xyz/tcheeric/nsecbunker/core/exception/BunkerKeyException.java#L11
`serialVersionUID` can be annotated with '@serial' annotation
|
|
'@Serial' annotation can be used:
nsecbunker-core/src/main/java/xyz/tcheeric/nsecbunker/core/exception/BunkerConnectionException.java#L11
`serialVersionUID` can be annotated with '@serial' annotation
|
|
'@Serial' annotation can be used:
nsecbunker-core/src/main/java/xyz/tcheeric/nsecbunker/core/exception/BunkerAuthenticationException.java#L11
`serialVersionUID` can be annotated with '@serial' annotation
|
|
'@Serial' annotation can be used:
nsecbunker-core/src/main/java/xyz/tcheeric/nsecbunker/core/exception/BunkerAuthorizationException.java#L11
`serialVersionUID` can be annotated with '@serial' annotation
|
|
'@Serial' annotation can be used:
nsecbunker-core/src/main/java/xyz/tcheeric/nsecbunker/core/exception/BunkerTimeoutException.java#L13
`serialVersionUID` can be annotated with '@serial' annotation
|
|
'@Serial' annotation can be used:
nsecbunker-core/src/main/java/xyz/tcheeric/nsecbunker/core/exception/BunkerProtocolException.java#L11
`serialVersionUID` can be annotated with '@serial' annotation
|
|
'@Serial' annotation can be used:
nsecbunker-core/src/main/java/xyz/tcheeric/nsecbunker/core/exception/BunkerException.java#L11
`serialVersionUID` can be annotated with '@serial' annotation
|
|
Vulnerable declared dependency:
nsecbunker-admin/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-web:6.1.5
* [CVE-2024-22262](https://www.mend.io/vulnerability-database/CVE-2024-22262?utm_source=JetBrains) 8.1 Server-Side Request Forgery (SSRF)
* [CVE-2025-41234](https://www.mend.io/vulnerability-database/CVE-2025-41234?utm_source=Jetbrains) 6.5 RFD Attack via "Content-Disposition" Header Sourced from Request
* [CVE-2024-38809](https://www.mend.io/vulnerability-database/CVE-2024-38809?utm_source=Jetbrains) 5.3 Uncontrolled Resource Consumption ('Resource Exhaustion')
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-it/pom.xml#L25
Provides transitive vulnerable dependency maven:org.springframework:spring-webmvc:6.1.5
* [CVE-2024-38816](https://www.mend.io/vulnerability-database/CVE-2024-38816?utm_source=Jetbrains) 7.5 Path Traversal
* [CVE-2024-38819](https://www.mend.io/vulnerability-database/CVE-2024-38819?utm_source=JetBrains) 7.5 Information Leak / Disclosure
* [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-spring-boot-starter/pom.xml#L53
Provides transitive vulnerable dependency maven:org.springframework.boot:spring-boot-actuator-autoconfigure:3.2.4
* [CVE-2025-22235](https://www.mend.io/vulnerability-database/CVE-2025-22235?utm_source=Jetbrains) 7.3 Spring Boot EndpointRequest.to() creates wrong matcher if actuator endpoint is not exposed
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-core/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-webmvc:6.1.5
* [CVE-2024-38816](https://www.mend.io/vulnerability-database/CVE-2024-38816?utm_source=Jetbrains) 7.5 Path Traversal
* [CVE-2024-38819](https://www.mend.io/vulnerability-database/CVE-2024-38819?utm_source=JetBrains) 7.5 Information Leak / Disclosure
* [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-e2e/pom.xml#L54
Provides transitive vulnerable dependency maven:org.springframework:spring-core:6.1.5
* [CVE-2025-41249](https://www.mend.io/vulnerability-database/CVE-2025-41249?utm_source=Jetbrains) 7.5 CVE-2025-41249: Spring Framework Annotation Detection Vulnerability
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-spring-boot-starter/pom.xml#L26
Provides transitive vulnerable dependency maven:org.springframework:spring-web:6.1.5
* [CVE-2024-22262](https://www.mend.io/vulnerability-database/CVE-2024-22262?utm_source=JetBrains) 8.1 Server-Side Request Forgery (SSRF)
* [CVE-2025-41234](https://www.mend.io/vulnerability-database/CVE-2025-41234?utm_source=Jetbrains) 6.5 RFD Attack via "Content-Disposition" Header Sourced from Request
* [CVE-2024-38809](https://www.mend.io/vulnerability-database/CVE-2024-38809?utm_source=Jetbrains) 5.3 Uncontrolled Resource Consumption ('Resource Exhaustion')
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-it/pom.xml#L66
Provides transitive vulnerable dependency maven:org.springframework.boot:spring-boot:3.2.4
* [CVE-2025-22235](https://www.mend.io/vulnerability-database/CVE-2025-22235?utm_source=Jetbrains) 7.3 Spring Boot EndpointRequest.to() creates wrong matcher if actuator endpoint is not exposed
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-spring-boot-starter/pom.xml#L78
Provides transitive vulnerable dependency maven:net.minidev:json-smart:2.5.0
* [CVE-2024-57699](https://www.mend.io/vulnerability-database/CVE-2024-57699?utm_source=JetBrains) 7.5 Insufficient Information
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-client/pom.xml#L36
Provides transitive vulnerable dependency maven:org.springframework:spring-web:6.1.5
* [CVE-2024-22262](https://www.mend.io/vulnerability-database/CVE-2024-22262?utm_source=JetBrains) 8.1 Server-Side Request Forgery (SSRF)
* [CVE-2025-41234](https://www.mend.io/vulnerability-database/CVE-2025-41234?utm_source=Jetbrains) 6.5 RFD Attack via "Content-Disposition" Header Sourced from Request
* [CVE-2024-38809](https://www.mend.io/vulnerability-database/CVE-2024-38809?utm_source=Jetbrains) 5.3 Uncontrolled Resource Consumption ('Resource Exhaustion')
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-monitoring/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-core:6.1.5
* [CVE-2025-41249](https://www.mend.io/vulnerability-database/CVE-2025-41249?utm_source=Jetbrains) 7.5 CVE-2025-41249: Spring Framework Annotation Detection Vulnerability
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-perf/pom.xml#L49
Provides transitive vulnerable dependency maven:org.springframework:spring-webmvc:6.1.5
* [CVE-2024-38816](https://www.mend.io/vulnerability-database/CVE-2024-38816?utm_source=Jetbrains) 7.5 Path Traversal
* [CVE-2024-38819](https://www.mend.io/vulnerability-database/CVE-2024-38819?utm_source=JetBrains) 7.5 Information Leak / Disclosure
* [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-e2e/pom.xml#L54
Provides transitive vulnerable dependency maven:org.springframework:spring-webmvc:6.1.5
* [CVE-2024-38816](https://www.mend.io/vulnerability-database/CVE-2024-38816?utm_source=Jetbrains) 7.5 Path Traversal
* [CVE-2024-38819](https://www.mend.io/vulnerability-database/CVE-2024-38819?utm_source=JetBrains) 7.5 Information Leak / Disclosure
* [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-security/pom.xml#L19
Provides transitive vulnerable dependency maven:org.springframework:spring-web:6.1.5
* [CVE-2024-22262](https://www.mend.io/vulnerability-database/CVE-2024-22262?utm_source=JetBrains) 8.1 Server-Side Request Forgery (SSRF)
* [CVE-2025-41234](https://www.mend.io/vulnerability-database/CVE-2025-41234?utm_source=Jetbrains) 6.5 RFD Attack via "Content-Disposition" Header Sourced from Request
* [CVE-2024-38809](https://www.mend.io/vulnerability-database/CVE-2024-38809?utm_source=Jetbrains) 5.3 Uncontrolled Resource Consumption ('Resource Exhaustion')
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-connection/pom.xml#L28
Provides transitive vulnerable dependency maven:org.springframework:spring-webmvc:6.1.5
* [CVE-2024-38816](https://www.mend.io/vulnerability-database/CVE-2024-38816?utm_source=Jetbrains) 7.5 Path Traversal
* [CVE-2024-38819](https://www.mend.io/vulnerability-database/CVE-2024-38819?utm_source=JetBrains) 7.5 Information Leak / Disclosure
* [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-client/pom.xml#L36
Provides transitive vulnerable dependency maven:org.springframework.boot:spring-boot:3.2.4
* [CVE-2025-22235](https://www.mend.io/vulnerability-database/CVE-2025-22235?utm_source=Jetbrains) 7.3 Spring Boot EndpointRequest.to() creates wrong matcher if actuator endpoint is not exposed
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-admin/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework.boot:spring-boot:3.2.4
* [CVE-2025-22235](https://www.mend.io/vulnerability-database/CVE-2025-22235?utm_source=Jetbrains) 7.3 Spring Boot EndpointRequest.to() creates wrong matcher if actuator endpoint is not exposed
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-protocol/pom.xml#L32
Provides transitive vulnerable dependency maven:org.springframework:spring-webmvc:6.1.5
* [CVE-2024-38816](https://www.mend.io/vulnerability-database/CVE-2024-38816?utm_source=Jetbrains) 7.5 Path Traversal
* [CVE-2024-38819](https://www.mend.io/vulnerability-database/CVE-2024-38819?utm_source=JetBrains) 7.5 Information Leak / Disclosure
* [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-it/pom.xml#L66
Provides transitive vulnerable dependency maven:net.minidev:json-smart:2.5.0
* [CVE-2024-57699](https://www.mend.io/vulnerability-database/CVE-2024-57699?utm_source=JetBrains) 7.5 Insufficient Information
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-account/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-web:6.1.5
* [CVE-2024-22262](https://www.mend.io/vulnerability-database/CVE-2024-22262?utm_source=JetBrains) 8.1 Server-Side Request Forgery (SSRF)
* [CVE-2025-41234](https://www.mend.io/vulnerability-database/CVE-2025-41234?utm_source=Jetbrains) 6.5 RFD Attack via "Content-Disposition" Header Sourced from Request
* [CVE-2024-38809](https://www.mend.io/vulnerability-database/CVE-2024-38809?utm_source=Jetbrains) 5.3 Uncontrolled Resource Consumption ('Resource Exhaustion')
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-monitoring/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-web:6.1.5
* [CVE-2024-22262](https://www.mend.io/vulnerability-database/CVE-2024-22262?utm_source=JetBrains) 8.1 Server-Side Request Forgery (SSRF)
* [CVE-2025-41234](https://www.mend.io/vulnerability-database/CVE-2025-41234?utm_source=Jetbrains) 6.5 RFD Attack via "Content-Disposition" Header Sourced from Request
* [CVE-2024-38809](https://www.mend.io/vulnerability-database/CVE-2024-38809?utm_source=Jetbrains) 5.3 Uncontrolled Resource Consumption ('Resource Exhaustion')
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-perf/pom.xml#L49
Provides transitive vulnerable dependency maven:org.springframework.boot:spring-boot:3.2.4
* [CVE-2025-22235](https://www.mend.io/vulnerability-database/CVE-2025-22235?utm_source=Jetbrains) 7.3 Spring Boot EndpointRequest.to() creates wrong matcher if actuator endpoint is not exposed
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-monitoring/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework.boot:spring-boot:3.2.4
* [CVE-2025-22235](https://www.mend.io/vulnerability-database/CVE-2025-22235?utm_source=Jetbrains) 7.3 Spring Boot EndpointRequest.to() creates wrong matcher if actuator endpoint is not exposed
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-monitoring/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-webmvc:6.1.5
* [CVE-2024-38816](https://www.mend.io/vulnerability-database/CVE-2024-38816?utm_source=Jetbrains) 7.5 Path Traversal
* [CVE-2024-38819](https://www.mend.io/vulnerability-database/CVE-2024-38819?utm_source=JetBrains) 7.5 Information Leak / Disclosure
* [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-spring-boot-starter/pom.xml#L40
Provides transitive vulnerable dependency maven:org.springframework.boot:spring-boot:3.2.4
* [CVE-2025-22235](https://www.mend.io/vulnerability-database/CVE-2025-22235?utm_source=Jetbrains) 7.3 Spring Boot EndpointRequest.to() creates wrong matcher if actuator endpoint is not exposed
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-account/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-core:6.1.5
* [CVE-2025-41249](https://www.mend.io/vulnerability-database/CVE-2025-41249?utm_source=Jetbrains) 7.5 CVE-2025-41249: Spring Framework Annotation Detection Vulnerability
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-client/pom.xml#L36
Provides transitive vulnerable dependency maven:org.springframework:spring-core:6.1.5
* [CVE-2025-41249](https://www.mend.io/vulnerability-database/CVE-2025-41249?utm_source=Jetbrains) 7.5 CVE-2025-41249: Spring Framework Annotation Detection Vulnerability
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-spring-boot-starter/pom.xml#L26
Provides transitive vulnerable dependency maven:org.springframework:spring-core:6.1.5
* [CVE-2025-41249](https://www.mend.io/vulnerability-database/CVE-2025-41249?utm_source=Jetbrains) 7.5 CVE-2025-41249: Spring Framework Annotation Detection Vulnerability
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-protocol/pom.xml#L32
Provides transitive vulnerable dependency maven:org.springframework:spring-core:6.1.5
* [CVE-2025-41249](https://www.mend.io/vulnerability-database/CVE-2025-41249?utm_source=Jetbrains) 7.5 CVE-2025-41249: Spring Framework Annotation Detection Vulnerability
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-admin/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-core:6.1.5
* [CVE-2025-41249](https://www.mend.io/vulnerability-database/CVE-2025-41249?utm_source=Jetbrains) 7.5 CVE-2025-41249: Spring Framework Annotation Detection Vulnerability
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-e2e/pom.xml#L54
Provides transitive vulnerable dependency maven:org.springframework.boot:spring-boot:3.2.4
* [CVE-2025-22235](https://www.mend.io/vulnerability-database/CVE-2025-22235?utm_source=Jetbrains) 7.3 Spring Boot EndpointRequest.to() creates wrong matcher if actuator endpoint is not exposed
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-perf/pom.xml#L49
Provides transitive vulnerable dependency maven:org.springframework:spring-core:6.1.5
* [CVE-2025-41249](https://www.mend.io/vulnerability-database/CVE-2025-41249?utm_source=Jetbrains) 7.5 CVE-2025-41249: Spring Framework Annotation Detection Vulnerability
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-spring-boot-starter/pom.xml#L26
Provides transitive vulnerable dependency maven:org.springframework:spring-webmvc:6.1.5
* [CVE-2024-38816](https://www.mend.io/vulnerability-database/CVE-2024-38816?utm_source=Jetbrains) 7.5 Path Traversal
* [CVE-2024-38819](https://www.mend.io/vulnerability-database/CVE-2024-38819?utm_source=JetBrains) 7.5 Information Leak / Disclosure
* [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-account/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-webmvc:6.1.5
* [CVE-2024-38816](https://www.mend.io/vulnerability-database/CVE-2024-38816?utm_source=Jetbrains) 7.5 Path Traversal
* [CVE-2024-38819](https://www.mend.io/vulnerability-database/CVE-2024-38819?utm_source=JetBrains) 7.5 Information Leak / Disclosure
* [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-perf/pom.xml#L49
Provides transitive vulnerable dependency maven:org.springframework:spring-web:6.1.5
* [CVE-2024-22262](https://www.mend.io/vulnerability-database/CVE-2024-22262?utm_source=JetBrains) 8.1 Server-Side Request Forgery (SSRF)
* [CVE-2025-41234](https://www.mend.io/vulnerability-database/CVE-2025-41234?utm_source=Jetbrains) 6.5 RFD Attack via "Content-Disposition" Header Sourced from Request
* [CVE-2024-38809](https://www.mend.io/vulnerability-database/CVE-2024-38809?utm_source=Jetbrains) 5.3 Uncontrolled Resource Consumption ('Resource Exhaustion')
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-it/pom.xml#L71
Provides transitive vulnerable dependency maven:org.springframework.boot:spring-boot-actuator-autoconfigure:3.2.4
* [CVE-2025-22235](https://www.mend.io/vulnerability-database/CVE-2025-22235?utm_source=Jetbrains) 7.3 Spring Boot EndpointRequest.to() creates wrong matcher if actuator endpoint is not exposed
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-core/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-web:6.1.5
* [CVE-2024-22262](https://www.mend.io/vulnerability-database/CVE-2024-22262?utm_source=JetBrains) 8.1 Server-Side Request Forgery (SSRF)
* [CVE-2025-41234](https://www.mend.io/vulnerability-database/CVE-2025-41234?utm_source=Jetbrains) 6.5 RFD Attack via "Content-Disposition" Header Sourced from Request
* [CVE-2024-38809](https://www.mend.io/vulnerability-database/CVE-2024-38809?utm_source=Jetbrains) 5.3 Uncontrolled Resource Consumption ('Resource Exhaustion')
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-core/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework.boot:spring-boot:3.2.4
* [CVE-2025-22235](https://www.mend.io/vulnerability-database/CVE-2025-22235?utm_source=Jetbrains) 7.3 Spring Boot EndpointRequest.to() creates wrong matcher if actuator endpoint is not exposed
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-chaos/pom.xml#L44
Provides transitive vulnerable dependency maven:org.springframework.boot:spring-boot:3.2.4
* [CVE-2025-22235](https://www.mend.io/vulnerability-database/CVE-2025-22235?utm_source=Jetbrains) 7.3 Spring Boot EndpointRequest.to() creates wrong matcher if actuator endpoint is not exposed
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-connection/pom.xml#L28
Provides transitive vulnerable dependency maven:org.springframework.boot:spring-boot:3.2.4
* [CVE-2025-22235](https://www.mend.io/vulnerability-database/CVE-2025-22235?utm_source=Jetbrains) 7.3 Spring Boot EndpointRequest.to() creates wrong matcher if actuator endpoint is not exposed
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-chaos/pom.xml#L44
Provides transitive vulnerable dependency maven:org.springframework:spring-core:6.1.5
* [CVE-2025-41249](https://www.mend.io/vulnerability-database/CVE-2025-41249?utm_source=Jetbrains) 7.5 CVE-2025-41249: Spring Framework Annotation Detection Vulnerability
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-account/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework.boot:spring-boot:3.2.4
* [CVE-2025-22235](https://www.mend.io/vulnerability-database/CVE-2025-22235?utm_source=Jetbrains) 7.3 Spring Boot EndpointRequest.to() creates wrong matcher if actuator endpoint is not exposed
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-security/pom.xml#L19
Provides transitive vulnerable dependency maven:org.springframework:spring-webmvc:6.1.5
* [CVE-2024-38816](https://www.mend.io/vulnerability-database/CVE-2024-38816?utm_source=Jetbrains) 7.5 Path Traversal
* [CVE-2024-38819](https://www.mend.io/vulnerability-database/CVE-2024-38819?utm_source=JetBrains) 7.5 Information Leak / Disclosure
* [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-connection/pom.xml#L28
Provides transitive vulnerable dependency maven:org.springframework:spring-web:6.1.5
* [CVE-2024-22262](https://www.mend.io/vulnerability-database/CVE-2024-22262?utm_source=JetBrains) 8.1 Server-Side Request Forgery (SSRF)
* [CVE-2025-41234](https://www.mend.io/vulnerability-database/CVE-2025-41234?utm_source=Jetbrains) 6.5 RFD Attack via "Content-Disposition" Header Sourced from Request
* [CVE-2024-38809](https://www.mend.io/vulnerability-database/CVE-2024-38809?utm_source=Jetbrains) 5.3 Uncontrolled Resource Consumption ('Resource Exhaustion')
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-chaos/pom.xml#L44
Provides transitive vulnerable dependency maven:org.springframework:spring-webmvc:6.1.5
* [CVE-2024-38816](https://www.mend.io/vulnerability-database/CVE-2024-38816?utm_source=Jetbrains) 7.5 Path Traversal
* [CVE-2024-38819](https://www.mend.io/vulnerability-database/CVE-2024-38819?utm_source=JetBrains) 7.5 Information Leak / Disclosure
* [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-chaos/pom.xml#L44
Provides transitive vulnerable dependency maven:org.springframework:spring-web:6.1.5
* [CVE-2024-22262](https://www.mend.io/vulnerability-database/CVE-2024-22262?utm_source=JetBrains) 8.1 Server-Side Request Forgery (SSRF)
* [CVE-2025-41234](https://www.mend.io/vulnerability-database/CVE-2025-41234?utm_source=Jetbrains) 6.5 RFD Attack via "Content-Disposition" Header Sourced from Request
* [CVE-2024-38809](https://www.mend.io/vulnerability-database/CVE-2024-38809?utm_source=Jetbrains) 5.3 Uncontrolled Resource Consumption ('Resource Exhaustion')
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-e2e/pom.xml#L54
Provides transitive vulnerable dependency maven:org.springframework:spring-web:6.1.5
* [CVE-2024-22262](https://www.mend.io/vulnerability-database/CVE-2024-22262?utm_source=JetBrains) 8.1 Server-Side Request Forgery (SSRF)
* [CVE-2025-41234](https://www.mend.io/vulnerability-database/CVE-2025-41234?utm_source=Jetbrains) 6.5 RFD Attack via "Content-Disposition" Header Sourced from Request
* [CVE-2024-38809](https://www.mend.io/vulnerability-database/CVE-2024-38809?utm_source=Jetbrains) 5.3 Uncontrolled Resource Consumption ('Resource Exhaustion')
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-e2e/pom.xml#L112
Provides transitive vulnerable dependency maven:org.apache.commons:commons-compress:1.24.0
* [CVE-2024-25710](https://www.mend.io/vulnerability-database/CVE-2024-25710?utm_source=JetBrains) 8.1 Loop with Unreachable Exit Condition ('Infinite Loop')
* [CVE-2024-26308](https://www.mend.io/vulnerability-database/CVE-2024-26308?utm_source=JetBrains) 5.5 Allocation of Resources Without Limits or Throttling
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-protocol/pom.xml#L32
Provides transitive vulnerable dependency maven:org.springframework:spring-web:6.1.5
* [CVE-2024-22262](https://www.mend.io/vulnerability-database/CVE-2024-22262?utm_source=JetBrains) 8.1 Server-Side Request Forgery (SSRF)
* [CVE-2025-41234](https://www.mend.io/vulnerability-database/CVE-2025-41234?utm_source=Jetbrains) 6.5 RFD Attack via "Content-Disposition" Header Sourced from Request
* [CVE-2024-38809](https://www.mend.io/vulnerability-database/CVE-2024-38809?utm_source=Jetbrains) 5.3 Uncontrolled Resource Consumption ('Resource Exhaustion')
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-admin/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-webmvc:6.1.5
* [CVE-2024-38816](https://www.mend.io/vulnerability-database/CVE-2024-38816?utm_source=Jetbrains) 7.5 Path Traversal
* [CVE-2024-38819](https://www.mend.io/vulnerability-database/CVE-2024-38819?utm_source=JetBrains) 7.5 Information Leak / Disclosure
* [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-connection/pom.xml#L28
Provides transitive vulnerable dependency maven:org.springframework:spring-core:6.1.5
* [CVE-2025-41249](https://www.mend.io/vulnerability-database/CVE-2025-41249?utm_source=Jetbrains) 7.5 CVE-2025-41249: Spring Framework Annotation Detection Vulnerability
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-it/pom.xml#L51
Provides transitive vulnerable dependency maven:org.apache.commons:commons-compress:1.24.0
* [CVE-2024-25710](https://www.mend.io/vulnerability-database/CVE-2024-25710?utm_source=JetBrains) 8.1 Loop with Unreachable Exit Condition ('Infinite Loop')
* [CVE-2024-26308](https://www.mend.io/vulnerability-database/CVE-2024-26308?utm_source=JetBrains) 5.5 Allocation of Resources Without Limits or Throttling
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-perf/pom.xml#L118
Provides transitive vulnerable dependency maven:org.apache.commons:commons-compress:1.24.0
* [CVE-2024-25710](https://www.mend.io/vulnerability-database/CVE-2024-25710?utm_source=JetBrains) 8.1 Loop with Unreachable Exit Condition ('Infinite Loop')
* [CVE-2024-26308](https://www.mend.io/vulnerability-database/CVE-2024-26308?utm_source=JetBrains) 5.5 Allocation of Resources Without Limits or Throttling
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-it/pom.xml#L25
Provides transitive vulnerable dependency maven:org.springframework:spring-web:6.1.5
* [CVE-2024-22262](https://www.mend.io/vulnerability-database/CVE-2024-22262?utm_source=JetBrains) 8.1 Server-Side Request Forgery (SSRF)
* [CVE-2025-41234](https://www.mend.io/vulnerability-database/CVE-2025-41234?utm_source=Jetbrains) 6.5 RFD Attack via "Content-Disposition" Header Sourced from Request
* [CVE-2024-38809](https://www.mend.io/vulnerability-database/CVE-2024-38809?utm_source=Jetbrains) 5.3 Uncontrolled Resource Consumption ('Resource Exhaustion')
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-protocol/pom.xml#L32
Provides transitive vulnerable dependency maven:org.springframework.boot:spring-boot:3.2.4
* [CVE-2025-22235](https://www.mend.io/vulnerability-database/CVE-2025-22235?utm_source=Jetbrains) 7.3 Spring Boot EndpointRequest.to() creates wrong matcher if actuator endpoint is not exposed
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-security/pom.xml#L19
Provides transitive vulnerable dependency maven:org.springframework.boot:spring-boot:3.2.4
* [CVE-2025-22235](https://www.mend.io/vulnerability-database/CVE-2025-22235?utm_source=Jetbrains) 7.3 Spring Boot EndpointRequest.to() creates wrong matcher if actuator endpoint is not exposed
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-security/pom.xml#L19
Provides transitive vulnerable dependency maven:org.springframework:spring-core:6.1.5
* [CVE-2025-41249](https://www.mend.io/vulnerability-database/CVE-2025-41249?utm_source=Jetbrains) 7.5 CVE-2025-41249: Spring Framework Annotation Detection Vulnerability
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-core/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-core:6.1.5
* [CVE-2025-41249](https://www.mend.io/vulnerability-database/CVE-2025-41249?utm_source=Jetbrains) 7.5 CVE-2025-41249: Spring Framework Annotation Detection Vulnerability
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-client/pom.xml#L36
Provides transitive vulnerable dependency maven:org.springframework:spring-webmvc:6.1.5
* [CVE-2024-38816](https://www.mend.io/vulnerability-database/CVE-2024-38816?utm_source=Jetbrains) 7.5 Path Traversal
* [CVE-2024-38819](https://www.mend.io/vulnerability-database/CVE-2024-38819?utm_source=JetBrains) 7.5 Information Leak / Disclosure
* [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-it/pom.xml#L25
Provides transitive vulnerable dependency maven:org.springframework:spring-core:6.1.5
* [CVE-2025-41249](https://www.mend.io/vulnerability-database/CVE-2025-41249?utm_source=Jetbrains) 7.5 CVE-2025-41249: Spring Framework Annotation Detection Vulnerability
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Inner class may be 'static':
nsecbunker-admin/src/main/java/xyz/tcheeric/nsecbunker/admin/NsecBunkerAdminClient.java#L653
Inner class `AdminConnectionListener` may be 'static'
|
|
Mismatched query and update of collection:
nsecbunker-monitoring/src/main/java/xyz/tcheeric/nsecbunker/monitoring/alerting/WebhookAlertDelivery.java#L158
Contents of collection `headers` are updated, but never queried
|
|
Mismatched query and update of collection:
nsecbunker-connection/src/main/java/xyz/tcheeric/nsecbunker/connection/RelayPool.java#L354
Contents of collection `errors` are updated, but never queried
|
|
'@Serial' annotation can be used:
nsecbunker-core/src/main/java/xyz/tcheeric/nsecbunker/core/exception/BunkerKeyException.java#L11
`serialVersionUID` can be annotated with '@serial' annotation
|
|
'@Serial' annotation can be used:
nsecbunker-core/src/main/java/xyz/tcheeric/nsecbunker/core/exception/BunkerConnectionException.java#L11
`serialVersionUID` can be annotated with '@serial' annotation
|
|
'@Serial' annotation can be used:
nsecbunker-core/src/main/java/xyz/tcheeric/nsecbunker/core/exception/BunkerAuthenticationException.java#L11
`serialVersionUID` can be annotated with '@serial' annotation
|
|
'@Serial' annotation can be used:
nsecbunker-core/src/main/java/xyz/tcheeric/nsecbunker/core/exception/BunkerAuthorizationException.java#L11
`serialVersionUID` can be annotated with '@serial' annotation
|
|
'@Serial' annotation can be used:
nsecbunker-core/src/main/java/xyz/tcheeric/nsecbunker/core/exception/BunkerTimeoutException.java#L13
`serialVersionUID` can be annotated with '@serial' annotation
|
|
'@Serial' annotation can be used:
nsecbunker-core/src/main/java/xyz/tcheeric/nsecbunker/core/exception/BunkerProtocolException.java#L11
`serialVersionUID` can be annotated with '@serial' annotation
|
|
'@Serial' annotation can be used:
nsecbunker-core/src/main/java/xyz/tcheeric/nsecbunker/core/exception/BunkerException.java#L11
`serialVersionUID` can be annotated with '@serial' annotation
|
|
Vulnerable declared dependency:
nsecbunker-admin/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-web:6.1.5
* [CVE-2024-22262](https://www.mend.io/vulnerability-database/CVE-2024-22262?utm_source=JetBrains) 8.1 Server-Side Request Forgery (SSRF)
* [CVE-2025-41234](https://www.mend.io/vulnerability-database/CVE-2025-41234?utm_source=Jetbrains) 6.5 RFD Attack via "Content-Disposition" Header Sourced from Request
* [CVE-2024-38809](https://www.mend.io/vulnerability-database/CVE-2024-38809?utm_source=Jetbrains) 5.3 Uncontrolled Resource Consumption ('Resource Exhaustion')
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-it/pom.xml#L25
Provides transitive vulnerable dependency maven:org.springframework:spring-webmvc:6.1.5
* [CVE-2024-38816](https://www.mend.io/vulnerability-database/CVE-2024-38816?utm_source=Jetbrains) 7.5 Path Traversal
* [CVE-2024-38819](https://www.mend.io/vulnerability-database/CVE-2024-38819?utm_source=JetBrains) 7.5 Information Leak / Disclosure
* [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-spring-boot-starter/pom.xml#L53
Provides transitive vulnerable dependency maven:org.springframework.boot:spring-boot-actuator-autoconfigure:3.2.4
* [CVE-2025-22235](https://www.mend.io/vulnerability-database/CVE-2025-22235?utm_source=Jetbrains) 7.3 Spring Boot EndpointRequest.to() creates wrong matcher if actuator endpoint is not exposed
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-core/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-webmvc:6.1.5
* [CVE-2024-38816](https://www.mend.io/vulnerability-database/CVE-2024-38816?utm_source=Jetbrains) 7.5 Path Traversal
* [CVE-2024-38819](https://www.mend.io/vulnerability-database/CVE-2024-38819?utm_source=JetBrains) 7.5 Information Leak / Disclosure
* [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-e2e/pom.xml#L54
Provides transitive vulnerable dependency maven:org.springframework:spring-core:6.1.5
* [CVE-2025-41249](https://www.mend.io/vulnerability-database/CVE-2025-41249?utm_source=Jetbrains) 7.5 CVE-2025-41249: Spring Framework Annotation Detection Vulnerability
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-spring-boot-starter/pom.xml#L26
Provides transitive vulnerable dependency maven:org.springframework:spring-web:6.1.5
* [CVE-2024-22262](https://www.mend.io/vulnerability-database/CVE-2024-22262?utm_source=JetBrains) 8.1 Server-Side Request Forgery (SSRF)
* [CVE-2025-41234](https://www.mend.io/vulnerability-database/CVE-2025-41234?utm_source=Jetbrains) 6.5 RFD Attack via "Content-Disposition" Header Sourced from Request
* [CVE-2024-38809](https://www.mend.io/vulnerability-database/CVE-2024-38809?utm_source=Jetbrains) 5.3 Uncontrolled Resource Consumption ('Resource Exhaustion')
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-it/pom.xml#L66
Provides transitive vulnerable dependency maven:org.springframework.boot:spring-boot:3.2.4
* [CVE-2025-22235](https://www.mend.io/vulnerability-database/CVE-2025-22235?utm_source=Jetbrains) 7.3 Spring Boot EndpointRequest.to() creates wrong matcher if actuator endpoint is not exposed
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-spring-boot-starter/pom.xml#L78
Provides transitive vulnerable dependency maven:net.minidev:json-smart:2.5.0
* [CVE-2024-57699](https://www.mend.io/vulnerability-database/CVE-2024-57699?utm_source=JetBrains) 7.5 Insufficient Information
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-client/pom.xml#L36
Provides transitive vulnerable dependency maven:org.springframework:spring-web:6.1.5
* [CVE-2024-22262](https://www.mend.io/vulnerability-database/CVE-2024-22262?utm_source=JetBrains) 8.1 Server-Side Request Forgery (SSRF)
* [CVE-2025-41234](https://www.mend.io/vulnerability-database/CVE-2025-41234?utm_source=Jetbrains) 6.5 RFD Attack via "Content-Disposition" Header Sourced from Request
* [CVE-2024-38809](https://www.mend.io/vulnerability-database/CVE-2024-38809?utm_source=Jetbrains) 5.3 Uncontrolled Resource Consumption ('Resource Exhaustion')
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-monitoring/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-core:6.1.5
* [CVE-2025-41249](https://www.mend.io/vulnerability-database/CVE-2025-41249?utm_source=Jetbrains) 7.5 CVE-2025-41249: Spring Framework Annotation Detection Vulnerability
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-perf/pom.xml#L49
Provides transitive vulnerable dependency maven:org.springframework:spring-webmvc:6.1.5
* [CVE-2024-38816](https://www.mend.io/vulnerability-database/CVE-2024-38816?utm_source=Jetbrains) 7.5 Path Traversal
* [CVE-2024-38819](https://www.mend.io/vulnerability-database/CVE-2024-38819?utm_source=JetBrains) 7.5 Information Leak / Disclosure
* [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-e2e/pom.xml#L54
Provides transitive vulnerable dependency maven:org.springframework:spring-webmvc:6.1.5
* [CVE-2024-38816](https://www.mend.io/vulnerability-database/CVE-2024-38816?utm_source=Jetbrains) 7.5 Path Traversal
* [CVE-2024-38819](https://www.mend.io/vulnerability-database/CVE-2024-38819?utm_source=JetBrains) 7.5 Information Leak / Disclosure
* [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-security/pom.xml#L19
Provides transitive vulnerable dependency maven:org.springframework:spring-web:6.1.5
* [CVE-2024-22262](https://www.mend.io/vulnerability-database/CVE-2024-22262?utm_source=JetBrains) 8.1 Server-Side Request Forgery (SSRF)
* [CVE-2025-41234](https://www.mend.io/vulnerability-database/CVE-2025-41234?utm_source=Jetbrains) 6.5 RFD Attack via "Content-Disposition" Header Sourced from Request
* [CVE-2024-38809](https://www.mend.io/vulnerability-database/CVE-2024-38809?utm_source=Jetbrains) 5.3 Uncontrolled Resource Consumption ('Resource Exhaustion')
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-connection/pom.xml#L28
Provides transitive vulnerable dependency maven:org.springframework:spring-webmvc:6.1.5
* [CVE-2024-38816](https://www.mend.io/vulnerability-database/CVE-2024-38816?utm_source=Jetbrains) 7.5 Path Traversal
* [CVE-2024-38819](https://www.mend.io/vulnerability-database/CVE-2024-38819?utm_source=JetBrains) 7.5 Information Leak / Disclosure
* [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-client/pom.xml#L36
Provides transitive vulnerable dependency maven:org.springframework.boot:spring-boot:3.2.4
* [CVE-2025-22235](https://www.mend.io/vulnerability-database/CVE-2025-22235?utm_source=Jetbrains) 7.3 Spring Boot EndpointRequest.to() creates wrong matcher if actuator endpoint is not exposed
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-admin/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework.boot:spring-boot:3.2.4
* [CVE-2025-22235](https://www.mend.io/vulnerability-database/CVE-2025-22235?utm_source=Jetbrains) 7.3 Spring Boot EndpointRequest.to() creates wrong matcher if actuator endpoint is not exposed
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-protocol/pom.xml#L32
Provides transitive vulnerable dependency maven:org.springframework:spring-webmvc:6.1.5
* [CVE-2024-38816](https://www.mend.io/vulnerability-database/CVE-2024-38816?utm_source=Jetbrains) 7.5 Path Traversal
* [CVE-2024-38819](https://www.mend.io/vulnerability-database/CVE-2024-38819?utm_source=JetBrains) 7.5 Information Leak / Disclosure
* [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-it/pom.xml#L66
Provides transitive vulnerable dependency maven:net.minidev:json-smart:2.5.0
* [CVE-2024-57699](https://www.mend.io/vulnerability-database/CVE-2024-57699?utm_source=JetBrains) 7.5 Insufficient Information
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-account/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-web:6.1.5
* [CVE-2024-22262](https://www.mend.io/vulnerability-database/CVE-2024-22262?utm_source=JetBrains) 8.1 Server-Side Request Forgery (SSRF)
* [CVE-2025-41234](https://www.mend.io/vulnerability-database/CVE-2025-41234?utm_source=Jetbrains) 6.5 RFD Attack via "Content-Disposition" Header Sourced from Request
* [CVE-2024-38809](https://www.mend.io/vulnerability-database/CVE-2024-38809?utm_source=Jetbrains) 5.3 Uncontrolled Resource Consumption ('Resource Exhaustion')
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-monitoring/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-web:6.1.5
* [CVE-2024-22262](https://www.mend.io/vulnerability-database/CVE-2024-22262?utm_source=JetBrains) 8.1 Server-Side Request Forgery (SSRF)
* [CVE-2025-41234](https://www.mend.io/vulnerability-database/CVE-2025-41234?utm_source=Jetbrains) 6.5 RFD Attack via "Content-Disposition" Header Sourced from Request
* [CVE-2024-38809](https://www.mend.io/vulnerability-database/CVE-2024-38809?utm_source=Jetbrains) 5.3 Uncontrolled Resource Consumption ('Resource Exhaustion')
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-perf/pom.xml#L49
Provides transitive vulnerable dependency maven:org.springframework.boot:spring-boot:3.2.4
* [CVE-2025-22235](https://www.mend.io/vulnerability-database/CVE-2025-22235?utm_source=Jetbrains) 7.3 Spring Boot EndpointRequest.to() creates wrong matcher if actuator endpoint is not exposed
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-monitoring/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework.boot:spring-boot:3.2.4
* [CVE-2025-22235](https://www.mend.io/vulnerability-database/CVE-2025-22235?utm_source=Jetbrains) 7.3 Spring Boot EndpointRequest.to() creates wrong matcher if actuator endpoint is not exposed
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-monitoring/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-webmvc:6.1.5
* [CVE-2024-38816](https://www.mend.io/vulnerability-database/CVE-2024-38816?utm_source=Jetbrains) 7.5 Path Traversal
* [CVE-2024-38819](https://www.mend.io/vulnerability-database/CVE-2024-38819?utm_source=JetBrains) 7.5 Information Leak / Disclosure
* [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-spring-boot-starter/pom.xml#L40
Provides transitive vulnerable dependency maven:org.springframework.boot:spring-boot:3.2.4
* [CVE-2025-22235](https://www.mend.io/vulnerability-database/CVE-2025-22235?utm_source=Jetbrains) 7.3 Spring Boot EndpointRequest.to() creates wrong matcher if actuator endpoint is not exposed
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-account/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-core:6.1.5
* [CVE-2025-41249](https://www.mend.io/vulnerability-database/CVE-2025-41249?utm_source=Jetbrains) 7.5 CVE-2025-41249: Spring Framework Annotation Detection Vulnerability
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-client/pom.xml#L36
Provides transitive vulnerable dependency maven:org.springframework:spring-core:6.1.5
* [CVE-2025-41249](https://www.mend.io/vulnerability-database/CVE-2025-41249?utm_source=Jetbrains) 7.5 CVE-2025-41249: Spring Framework Annotation Detection Vulnerability
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-spring-boot-starter/pom.xml#L26
Provides transitive vulnerable dependency maven:org.springframework:spring-core:6.1.5
* [CVE-2025-41249](https://www.mend.io/vulnerability-database/CVE-2025-41249?utm_source=Jetbrains) 7.5 CVE-2025-41249: Spring Framework Annotation Detection Vulnerability
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-protocol/pom.xml#L32
Provides transitive vulnerable dependency maven:org.springframework:spring-core:6.1.5
* [CVE-2025-41249](https://www.mend.io/vulnerability-database/CVE-2025-41249?utm_source=Jetbrains) 7.5 CVE-2025-41249: Spring Framework Annotation Detection Vulnerability
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-admin/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-core:6.1.5
* [CVE-2025-41249](https://www.mend.io/vulnerability-database/CVE-2025-41249?utm_source=Jetbrains) 7.5 CVE-2025-41249: Spring Framework Annotation Detection Vulnerability
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-e2e/pom.xml#L54
Provides transitive vulnerable dependency maven:org.springframework.boot:spring-boot:3.2.4
* [CVE-2025-22235](https://www.mend.io/vulnerability-database/CVE-2025-22235?utm_source=Jetbrains) 7.3 Spring Boot EndpointRequest.to() creates wrong matcher if actuator endpoint is not exposed
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-perf/pom.xml#L49
Provides transitive vulnerable dependency maven:org.springframework:spring-core:6.1.5
* [CVE-2025-41249](https://www.mend.io/vulnerability-database/CVE-2025-41249?utm_source=Jetbrains) 7.5 CVE-2025-41249: Spring Framework Annotation Detection Vulnerability
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-spring-boot-starter/pom.xml#L26
Provides transitive vulnerable dependency maven:org.springframework:spring-webmvc:6.1.5
* [CVE-2024-38816](https://www.mend.io/vulnerability-database/CVE-2024-38816?utm_source=Jetbrains) 7.5 Path Traversal
* [CVE-2024-38819](https://www.mend.io/vulnerability-database/CVE-2024-38819?utm_source=JetBrains) 7.5 Information Leak / Disclosure
* [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-account/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-webmvc:6.1.5
* [CVE-2024-38816](https://www.mend.io/vulnerability-database/CVE-2024-38816?utm_source=Jetbrains) 7.5 Path Traversal
* [CVE-2024-38819](https://www.mend.io/vulnerability-database/CVE-2024-38819?utm_source=JetBrains) 7.5 Information Leak / Disclosure
* [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-perf/pom.xml#L49
Provides transitive vulnerable dependency maven:org.springframework:spring-web:6.1.5
* [CVE-2024-22262](https://www.mend.io/vulnerability-database/CVE-2024-22262?utm_source=JetBrains) 8.1 Server-Side Request Forgery (SSRF)
* [CVE-2025-41234](https://www.mend.io/vulnerability-database/CVE-2025-41234?utm_source=Jetbrains) 6.5 RFD Attack via "Content-Disposition" Header Sourced from Request
* [CVE-2024-38809](https://www.mend.io/vulnerability-database/CVE-2024-38809?utm_source=Jetbrains) 5.3 Uncontrolled Resource Consumption ('Resource Exhaustion')
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-it/pom.xml#L71
Provides transitive vulnerable dependency maven:org.springframework.boot:spring-boot-actuator-autoconfigure:3.2.4
* [CVE-2025-22235](https://www.mend.io/vulnerability-database/CVE-2025-22235?utm_source=Jetbrains) 7.3 Spring Boot EndpointRequest.to() creates wrong matcher if actuator endpoint is not exposed
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-core/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-web:6.1.5
* [CVE-2024-22262](https://www.mend.io/vulnerability-database/CVE-2024-22262?utm_source=JetBrains) 8.1 Server-Side Request Forgery (SSRF)
* [CVE-2025-41234](https://www.mend.io/vulnerability-database/CVE-2025-41234?utm_source=Jetbrains) 6.5 RFD Attack via "Content-Disposition" Header Sourced from Request
* [CVE-2024-38809](https://www.mend.io/vulnerability-database/CVE-2024-38809?utm_source=Jetbrains) 5.3 Uncontrolled Resource Consumption ('Resource Exhaustion')
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-core/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework.boot:spring-boot:3.2.4
* [CVE-2025-22235](https://www.mend.io/vulnerability-database/CVE-2025-22235?utm_source=Jetbrains) 7.3 Spring Boot EndpointRequest.to() creates wrong matcher if actuator endpoint is not exposed
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-chaos/pom.xml#L44
Provides transitive vulnerable dependency maven:org.springframework.boot:spring-boot:3.2.4
* [CVE-2025-22235](https://www.mend.io/vulnerability-database/CVE-2025-22235?utm_source=Jetbrains) 7.3 Spring Boot EndpointRequest.to() creates wrong matcher if actuator endpoint is not exposed
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-connection/pom.xml#L28
Provides transitive vulnerable dependency maven:org.springframework.boot:spring-boot:3.2.4
* [CVE-2025-22235](https://www.mend.io/vulnerability-database/CVE-2025-22235?utm_source=Jetbrains) 7.3 Spring Boot EndpointRequest.to() creates wrong matcher if actuator endpoint is not exposed
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-chaos/pom.xml#L44
Provides transitive vulnerable dependency maven:org.springframework:spring-core:6.1.5
* [CVE-2025-41249](https://www.mend.io/vulnerability-database/CVE-2025-41249?utm_source=Jetbrains) 7.5 CVE-2025-41249: Spring Framework Annotation Detection Vulnerability
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-account/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework.boot:spring-boot:3.2.4
* [CVE-2025-22235](https://www.mend.io/vulnerability-database/CVE-2025-22235?utm_source=Jetbrains) 7.3 Spring Boot EndpointRequest.to() creates wrong matcher if actuator endpoint is not exposed
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-security/pom.xml#L19
Provides transitive vulnerable dependency maven:org.springframework:spring-webmvc:6.1.5
* [CVE-2024-38816](https://www.mend.io/vulnerability-database/CVE-2024-38816?utm_source=Jetbrains) 7.5 Path Traversal
* [CVE-2024-38819](https://www.mend.io/vulnerability-database/CVE-2024-38819?utm_source=JetBrains) 7.5 Information Leak / Disclosure
* [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-connection/pom.xml#L28
Provides transitive vulnerable dependency maven:org.springframework:spring-web:6.1.5
* [CVE-2024-22262](https://www.mend.io/vulnerability-database/CVE-2024-22262?utm_source=JetBrains) 8.1 Server-Side Request Forgery (SSRF)
* [CVE-2025-41234](https://www.mend.io/vulnerability-database/CVE-2025-41234?utm_source=Jetbrains) 6.5 RFD Attack via "Content-Disposition" Header Sourced from Request
* [CVE-2024-38809](https://www.mend.io/vulnerability-database/CVE-2024-38809?utm_source=Jetbrains) 5.3 Uncontrolled Resource Consumption ('Resource Exhaustion')
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-chaos/pom.xml#L44
Provides transitive vulnerable dependency maven:org.springframework:spring-webmvc:6.1.5
* [CVE-2024-38816](https://www.mend.io/vulnerability-database/CVE-2024-38816?utm_source=Jetbrains) 7.5 Path Traversal
* [CVE-2024-38819](https://www.mend.io/vulnerability-database/CVE-2024-38819?utm_source=JetBrains) 7.5 Information Leak / Disclosure
* [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-chaos/pom.xml#L44
Provides transitive vulnerable dependency maven:org.springframework:spring-web:6.1.5
* [CVE-2024-22262](https://www.mend.io/vulnerability-database/CVE-2024-22262?utm_source=JetBrains) 8.1 Server-Side Request Forgery (SSRF)
* [CVE-2025-41234](https://www.mend.io/vulnerability-database/CVE-2025-41234?utm_source=Jetbrains) 6.5 RFD Attack via "Content-Disposition" Header Sourced from Request
* [CVE-2024-38809](https://www.mend.io/vulnerability-database/CVE-2024-38809?utm_source=Jetbrains) 5.3 Uncontrolled Resource Consumption ('Resource Exhaustion')
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-e2e/pom.xml#L54
Provides transitive vulnerable dependency maven:org.springframework:spring-web:6.1.5
* [CVE-2024-22262](https://www.mend.io/vulnerability-database/CVE-2024-22262?utm_source=JetBrains) 8.1 Server-Side Request Forgery (SSRF)
* [CVE-2025-41234](https://www.mend.io/vulnerability-database/CVE-2025-41234?utm_source=Jetbrains) 6.5 RFD Attack via "Content-Disposition" Header Sourced from Request
* [CVE-2024-38809](https://www.mend.io/vulnerability-database/CVE-2024-38809?utm_source=Jetbrains) 5.3 Uncontrolled Resource Consumption ('Resource Exhaustion')
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-e2e/pom.xml#L112
Provides transitive vulnerable dependency maven:org.apache.commons:commons-compress:1.24.0
* [CVE-2024-25710](https://www.mend.io/vulnerability-database/CVE-2024-25710?utm_source=JetBrains) 8.1 Loop with Unreachable Exit Condition ('Infinite Loop')
* [CVE-2024-26308](https://www.mend.io/vulnerability-database/CVE-2024-26308?utm_source=JetBrains) 5.5 Allocation of Resources Without Limits or Throttling
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-protocol/pom.xml#L32
Provides transitive vulnerable dependency maven:org.springframework:spring-web:6.1.5
* [CVE-2024-22262](https://www.mend.io/vulnerability-database/CVE-2024-22262?utm_source=JetBrains) 8.1 Server-Side Request Forgery (SSRF)
* [CVE-2025-41234](https://www.mend.io/vulnerability-database/CVE-2025-41234?utm_source=Jetbrains) 6.5 RFD Attack via "Content-Disposition" Header Sourced from Request
* [CVE-2024-38809](https://www.mend.io/vulnerability-database/CVE-2024-38809?utm_source=Jetbrains) 5.3 Uncontrolled Resource Consumption ('Resource Exhaustion')
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-admin/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-webmvc:6.1.5
* [CVE-2024-38816](https://www.mend.io/vulnerability-database/CVE-2024-38816?utm_source=Jetbrains) 7.5 Path Traversal
* [CVE-2024-38819](https://www.mend.io/vulnerability-database/CVE-2024-38819?utm_source=JetBrains) 7.5 Information Leak / Disclosure
* [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-connection/pom.xml#L28
Provides transitive vulnerable dependency maven:org.springframework:spring-core:6.1.5
* [CVE-2025-41249](https://www.mend.io/vulnerability-database/CVE-2025-41249?utm_source=Jetbrains) 7.5 CVE-2025-41249: Spring Framework Annotation Detection Vulnerability
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-it/pom.xml#L51
Provides transitive vulnerable dependency maven:org.apache.commons:commons-compress:1.24.0
* [CVE-2024-25710](https://www.mend.io/vulnerability-database/CVE-2024-25710?utm_source=JetBrains) 8.1 Loop with Unreachable Exit Condition ('Infinite Loop')
* [CVE-2024-26308](https://www.mend.io/vulnerability-database/CVE-2024-26308?utm_source=JetBrains) 5.5 Allocation of Resources Without Limits or Throttling
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-perf/pom.xml#L118
Provides transitive vulnerable dependency maven:org.apache.commons:commons-compress:1.24.0
* [CVE-2024-25710](https://www.mend.io/vulnerability-database/CVE-2024-25710?utm_source=JetBrains) 8.1 Loop with Unreachable Exit Condition ('Infinite Loop')
* [CVE-2024-26308](https://www.mend.io/vulnerability-database/CVE-2024-26308?utm_source=JetBrains) 5.5 Allocation of Resources Without Limits or Throttling
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-it/pom.xml#L25
Provides transitive vulnerable dependency maven:org.springframework:spring-web:6.1.5
* [CVE-2024-22262](https://www.mend.io/vulnerability-database/CVE-2024-22262?utm_source=JetBrains) 8.1 Server-Side Request Forgery (SSRF)
* [CVE-2025-41234](https://www.mend.io/vulnerability-database/CVE-2025-41234?utm_source=Jetbrains) 6.5 RFD Attack via "Content-Disposition" Header Sourced from Request
* [CVE-2024-38809](https://www.mend.io/vulnerability-database/CVE-2024-38809?utm_source=Jetbrains) 5.3 Uncontrolled Resource Consumption ('Resource Exhaustion')
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-protocol/pom.xml#L32
Provides transitive vulnerable dependency maven:org.springframework.boot:spring-boot:3.2.4
* [CVE-2025-22235](https://www.mend.io/vulnerability-database/CVE-2025-22235?utm_source=Jetbrains) 7.3 Spring Boot EndpointRequest.to() creates wrong matcher if actuator endpoint is not exposed
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-security/pom.xml#L19
Provides transitive vulnerable dependency maven:org.springframework.boot:spring-boot:3.2.4
* [CVE-2025-22235](https://www.mend.io/vulnerability-database/CVE-2025-22235?utm_source=Jetbrains) 7.3 Spring Boot EndpointRequest.to() creates wrong matcher if actuator endpoint is not exposed
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-security/pom.xml#L19
Provides transitive vulnerable dependency maven:org.springframework:spring-core:6.1.5
* [CVE-2025-41249](https://www.mend.io/vulnerability-database/CVE-2025-41249?utm_source=Jetbrains) 7.5 CVE-2025-41249: Spring Framework Annotation Detection Vulnerability
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-core/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-core:6.1.5
* [CVE-2025-41249](https://www.mend.io/vulnerability-database/CVE-2025-41249?utm_source=Jetbrains) 7.5 CVE-2025-41249: Spring Framework Annotation Detection Vulnerability
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-client/pom.xml#L36
Provides transitive vulnerable dependency maven:org.springframework:spring-webmvc:6.1.5
* [CVE-2024-38816](https://www.mend.io/vulnerability-database/CVE-2024-38816?utm_source=Jetbrains) 7.5 Path Traversal
* [CVE-2024-38819](https://www.mend.io/vulnerability-database/CVE-2024-38819?utm_source=JetBrains) 7.5 Information Leak / Disclosure
* [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-it/pom.xml#L25
Provides transitive vulnerable dependency maven:org.springframework:spring-core:6.1.5
* [CVE-2025-41249](https://www.mend.io/vulnerability-database/CVE-2025-41249?utm_source=Jetbrains) 7.5 CVE-2025-41249: Spring Framework Annotation Detection Vulnerability
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
|
|
|
|
|
|
|
|
|
|
|
|
Vulnerable declared dependency:
nsecbunker-spring-boot-starter/pom.xml#L78
Provides transitive vulnerable dependency maven:org.xmlunit:xmlunit-core:2.9.1
* [CVE-2024-31573](https://www.mend.io/vulnerability-database/CVE-2024-31573?utm_source=JetBrains) 4.0 Insufficient Information
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-spring-boot-starter/pom.xml#L26
Provides transitive vulnerable dependency maven:org.springframework:spring-beans:6.1.5
* [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-spring-boot-starter/pom.xml#L26
Provides transitive vulnerable dependency maven:org.springframework:spring-websocket:6.1.5
* [CVE-2025-41254](https://www.mend.io/vulnerability-database/CVE-2025-41254?utm_source=Jetbrains) 4.3 Spring Framework STOMP CSRF Vulnerability
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-core/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-context:6.1.5
* [CVE-2025-22233](https://www.mend.io/vulnerability-database/CVE-2025-22233?utm_source=Jetbrains) 3.1 Spring Framework DataBinder Case Sensitive Match Exception
* [CVE-2024-38820](https://www.mend.io/vulnerability-database/CVE-2024-38820?utm_source=JetBrains) 3.1 Improper Handling of Case Sensitivity
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-perf/pom.xml#L92
Provides transitive vulnerable dependency maven:ch.qos.logback:logback-core:1.5.3
* [CVE-2025-11226](https://www.mend.io/vulnerability-database/CVE-2025-11226?utm_source=JetBrains) 6.9 Conditional processing of logback.xml configuration file, in conjuction with Spring Framework and Janino
* [CVE-2024-12798](https://www.mend.io/vulnerability-database/CVE-2024-12798?utm_source=JetBrains) 6.6 JaninoEventEvaluator vulnerability
* [CVE-2024-12801](https://www.mend.io/vulnerability-database/CVE-2024-12801?utm_source=JetBrains) 4.4 SaxEventRecorder vulnerable to Server-Side Request Forgery (SSRF) attacks
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-spring-boot-starter/pom.xml#L26
Provides transitive vulnerable dependency maven:org.springframework:spring-context:6.1.5
* [CVE-2025-22233](https://www.mend.io/vulnerability-database/CVE-2025-22233?utm_source=Jetbrains) 3.1 Spring Framework DataBinder Case Sensitive Match Exception
* [CVE-2024-38820](https://www.mend.io/vulnerability-database/CVE-2024-38820?utm_source=JetBrains) 3.1 Improper Handling of Case Sensitivity
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-account/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-context:6.1.5
* [CVE-2025-22233](https://www.mend.io/vulnerability-database/CVE-2025-22233?utm_source=Jetbrains) 3.1 Spring Framework DataBinder Case Sensitive Match Exception
* [CVE-2024-38820](https://www.mend.io/vulnerability-database/CVE-2024-38820?utm_source=JetBrains) 3.1 Improper Handling of Case Sensitivity
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-connection/pom.xml#L28
Provides transitive vulnerable dependency maven:org.apache.commons:commons-lang3:3.13.0
* [CVE-2025-48924](https://www.mend.io/vulnerability-database/CVE-2025-48924?utm_source=Jetbrains) 5.3 Insufficient Information
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-it/pom.xml#L25
Provides transitive vulnerable dependency maven:org.apache.commons:commons-lang3:3.13.0
* [CVE-2025-48924](https://www.mend.io/vulnerability-database/CVE-2025-48924?utm_source=Jetbrains) 5.3 Insufficient Information
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-core/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-websocket:6.1.5
* [CVE-2025-41254](https://www.mend.io/vulnerability-database/CVE-2025-41254?utm_source=Jetbrains) 4.3 Spring Framework STOMP CSRF Vulnerability
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-protocol/pom.xml#L32
Provides transitive vulnerable dependency maven:org.springframework:spring-context:6.1.5
* [CVE-2025-22233](https://www.mend.io/vulnerability-database/CVE-2025-22233?utm_source=Jetbrains) 3.1 Spring Framework DataBinder Case Sensitive Match Exception
* [CVE-2024-38820](https://www.mend.io/vulnerability-database/CVE-2024-38820?utm_source=JetBrains) 3.1 Improper Handling of Case Sensitivity
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-chaos/pom.xml#L44
Provides transitive vulnerable dependency maven:org.apache.commons:commons-lang3:3.13.0
* [CVE-2025-48924](https://www.mend.io/vulnerability-database/CVE-2025-48924?utm_source=Jetbrains) 5.3 Insufficient Information
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-security/pom.xml#L19
Provides transitive vulnerable dependency maven:org.apache.commons:commons-lang3:3.13.0
* [CVE-2025-48924](https://www.mend.io/vulnerability-database/CVE-2025-48924?utm_source=Jetbrains) 5.3 Insufficient Information
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-security/pom.xml#L19
Provides transitive vulnerable dependency maven:org.springframework:spring-beans:6.1.5
* [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-e2e/pom.xml#L54
Provides transitive vulnerable dependency maven:org.springframework:spring-beans:6.1.5
* [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-protocol/pom.xml#L32
Provides transitive vulnerable dependency maven:org.springframework:spring-beans:6.1.5
* [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-chaos/pom.xml#L44
Provides transitive vulnerable dependency maven:org.springframework:spring-beans:6.1.5
* [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-monitoring/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-beans:6.1.5
* [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-admin/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-websocket:6.1.5
* [CVE-2025-41254](https://www.mend.io/vulnerability-database/CVE-2025-41254?utm_source=Jetbrains) 4.3 Spring Framework STOMP CSRF Vulnerability
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-client/pom.xml#L36
Provides transitive vulnerable dependency maven:org.springframework:spring-context:6.1.5
* [CVE-2025-22233](https://www.mend.io/vulnerability-database/CVE-2025-22233?utm_source=Jetbrains) 3.1 Spring Framework DataBinder Case Sensitive Match Exception
* [CVE-2024-38820](https://www.mend.io/vulnerability-database/CVE-2024-38820?utm_source=JetBrains) 3.1 Improper Handling of Case Sensitivity
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-e2e/pom.xml#L54
Provides transitive vulnerable dependency maven:org.springframework:spring-websocket:6.1.5
* [CVE-2025-41254](https://www.mend.io/vulnerability-database/CVE-2025-41254?utm_source=Jetbrains) 4.3 Spring Framework STOMP CSRF Vulnerability
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-admin/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-beans:6.1.5
* [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-security/pom.xml#L19
Provides transitive vulnerable dependency maven:org.springframework:spring-context:6.1.5
* [CVE-2025-22233](https://www.mend.io/vulnerability-database/CVE-2025-22233?utm_source=Jetbrains) 3.1 Spring Framework DataBinder Case Sensitive Match Exception
* [CVE-2024-38820](https://www.mend.io/vulnerability-database/CVE-2024-38820?utm_source=JetBrains) 3.1 Improper Handling of Case Sensitivity
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-it/pom.xml#L25
Provides transitive vulnerable dependency maven:org.springframework:spring-context:6.1.5
* [CVE-2025-22233](https://www.mend.io/vulnerability-database/CVE-2025-22233?utm_source=Jetbrains) 3.1 Spring Framework DataBinder Case Sensitive Match Exception
* [CVE-2024-38820](https://www.mend.io/vulnerability-database/CVE-2024-38820?utm_source=JetBrains) 3.1 Improper Handling of Case Sensitivity
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-security/pom.xml#L19
Provides transitive vulnerable dependency maven:org.springframework:spring-websocket:6.1.5
* [CVE-2025-41254](https://www.mend.io/vulnerability-database/CVE-2025-41254?utm_source=Jetbrains) 4.3 Spring Framework STOMP CSRF Vulnerability
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-client/pom.xml#L36
Provides transitive vulnerable dependency maven:org.springframework:spring-beans:6.1.5
* [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-e2e/pom.xml#L54
Provides transitive vulnerable dependency maven:org.springframework:spring-context:6.1.5
* [CVE-2025-22233](https://www.mend.io/vulnerability-database/CVE-2025-22233?utm_source=Jetbrains) 3.1 Spring Framework DataBinder Case Sensitive Match Exception
* [CVE-2024-38820](https://www.mend.io/vulnerability-database/CVE-2024-38820?utm_source=JetBrains) 3.1 Improper Handling of Case Sensitivity
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-account/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-beans:6.1.5
* [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-it/pom.xml#L25
Provides transitive vulnerable dependency maven:org.springframework:spring-beans:6.1.5
* [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-it/pom.xml#L66
Provides transitive vulnerable dependency maven:ch.qos.logback:logback-classic:1.5.3
* [CVE-2024-12798](https://www.mend.io/vulnerability-database/CVE-2024-12798?utm_source=JetBrains) 6.6 JaninoEventEvaluator vulnerability
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-client/pom.xml#L36
Provides transitive vulnerable dependency maven:org.apache.commons:commons-lang3:3.13.0
* [CVE-2025-48924](https://www.mend.io/vulnerability-database/CVE-2025-48924?utm_source=Jetbrains) 5.3 Insufficient Information
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-it/pom.xml#L66
Provides transitive vulnerable dependency maven:ch.qos.logback:logback-core:1.5.3
* [CVE-2025-11226](https://www.mend.io/vulnerability-database/CVE-2025-11226?utm_source=JetBrains) 6.9 Conditional processing of logback.xml configuration file, in conjuction with Spring Framework and Janino
* [CVE-2024-12798](https://www.mend.io/vulnerability-database/CVE-2024-12798?utm_source=JetBrains) 6.6 JaninoEventEvaluator vulnerability
* [CVE-2024-12801](https://www.mend.io/vulnerability-database/CVE-2024-12801?utm_source=JetBrains) 4.4 SaxEventRecorder vulnerable to Server-Side Request Forgery (SSRF) attacks
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-chaos/pom.xml#L44
Provides transitive vulnerable dependency maven:org.springframework:spring-websocket:6.1.5
* [CVE-2025-41254](https://www.mend.io/vulnerability-database/CVE-2025-41254?utm_source=Jetbrains) 4.3 Spring Framework STOMP CSRF Vulnerability
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-connection/pom.xml#L28
Provides transitive vulnerable dependency maven:org.springframework:spring-beans:6.1.5
* [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-it/pom.xml#L25
Provides transitive vulnerable dependency maven:org.springframework:spring-websocket:6.1.5
* [CVE-2025-41254](https://www.mend.io/vulnerability-database/CVE-2025-41254?utm_source=Jetbrains) 4.3 Spring Framework STOMP CSRF Vulnerability
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-connection/pom.xml#L28
Provides transitive vulnerable dependency maven:org.springframework:spring-context:6.1.5
* [CVE-2025-22233](https://www.mend.io/vulnerability-database/CVE-2025-22233?utm_source=Jetbrains) 3.1 Spring Framework DataBinder Case Sensitive Match Exception
* [CVE-2024-38820](https://www.mend.io/vulnerability-database/CVE-2024-38820?utm_source=JetBrains) 3.1 Improper Handling of Case Sensitivity
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-spring-boot-starter/pom.xml#L40
Provides transitive vulnerable dependency maven:ch.qos.logback:logback-core:1.5.3
* [CVE-2025-11226](https://www.mend.io/vulnerability-database/CVE-2025-11226?utm_source=JetBrains) 6.9 Conditional processing of logback.xml configuration file, in conjuction with Spring Framework and Janino
* [CVE-2024-12798](https://www.mend.io/vulnerability-database/CVE-2024-12798?utm_source=JetBrains) 6.6 JaninoEventEvaluator vulnerability
* [CVE-2024-12801](https://www.mend.io/vulnerability-database/CVE-2024-12801?utm_source=JetBrains) 4.4 SaxEventRecorder vulnerable to Server-Side Request Forgery (SSRF) attacks
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-core/pom.xml#L22
Provides transitive vulnerable dependency maven:org.apache.commons:commons-lang3:3.13.0
* [CVE-2025-48924](https://www.mend.io/vulnerability-database/CVE-2025-48924?utm_source=Jetbrains) 5.3 Insufficient Information
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-client/pom.xml#L36
Provides transitive vulnerable dependency maven:org.springframework:spring-websocket:6.1.5
* [CVE-2025-41254](https://www.mend.io/vulnerability-database/CVE-2025-41254?utm_source=Jetbrains) 4.3 Spring Framework STOMP CSRF Vulnerability
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-e2e/pom.xml#L76
Provides transitive vulnerable dependency maven:ch.qos.logback:logback-core:1.5.3
* [CVE-2025-11226](https://www.mend.io/vulnerability-database/CVE-2025-11226?utm_source=JetBrains) 6.9 Conditional processing of logback.xml configuration file, in conjuction with Spring Framework and Janino
* [CVE-2024-12798](https://www.mend.io/vulnerability-database/CVE-2024-12798?utm_source=JetBrains) 6.6 JaninoEventEvaluator vulnerability
* [CVE-2024-12801](https://www.mend.io/vulnerability-database/CVE-2024-12801?utm_source=JetBrains) 4.4 SaxEventRecorder vulnerable to Server-Side Request Forgery (SSRF) attacks
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-perf/pom.xml#L49
Provides transitive vulnerable dependency maven:org.springframework:spring-websocket:6.1.5
* [CVE-2025-41254](https://www.mend.io/vulnerability-database/CVE-2025-41254?utm_source=Jetbrains) 4.3 Spring Framework STOMP CSRF Vulnerability
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-perf/pom.xml#L49
Provides transitive vulnerable dependency maven:org.springframework:spring-beans:6.1.5
* [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-perf/pom.xml#L49
Provides transitive vulnerable dependency maven:org.springframework:spring-context:6.1.5
* [CVE-2025-22233](https://www.mend.io/vulnerability-database/CVE-2025-22233?utm_source=Jetbrains) 3.1 Spring Framework DataBinder Case Sensitive Match Exception
* [CVE-2024-38820](https://www.mend.io/vulnerability-database/CVE-2024-38820?utm_source=JetBrains) 3.1 Improper Handling of Case Sensitivity
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-chaos/pom.xml#L44
Provides transitive vulnerable dependency maven:org.springframework:spring-context:6.1.5
* [CVE-2025-22233](https://www.mend.io/vulnerability-database/CVE-2025-22233?utm_source=Jetbrains) 3.1 Spring Framework DataBinder Case Sensitive Match Exception
* [CVE-2024-38820](https://www.mend.io/vulnerability-database/CVE-2024-38820?utm_source=JetBrains) 3.1 Improper Handling of Case Sensitivity
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-protocol/pom.xml#L32
Provides transitive vulnerable dependency maven:org.springframework:spring-websocket:6.1.5
* [CVE-2025-41254](https://www.mend.io/vulnerability-database/CVE-2025-41254?utm_source=Jetbrains) 4.3 Spring Framework STOMP CSRF Vulnerability
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-protocol/pom.xml#L32
Provides transitive vulnerable dependency maven:org.apache.commons:commons-lang3:3.13.0
* [CVE-2025-48924](https://www.mend.io/vulnerability-database/CVE-2025-48924?utm_source=Jetbrains) 5.3 Insufficient Information
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-security/pom.xml#L92
Provides transitive vulnerable dependency maven:ch.qos.logback:logback-core:1.5.3
* [CVE-2025-11226](https://www.mend.io/vulnerability-database/CVE-2025-11226?utm_source=JetBrains) 6.9 Conditional processing of logback.xml configuration file, in conjuction with Spring Framework and Janino
* [CVE-2024-12798](https://www.mend.io/vulnerability-database/CVE-2024-12798?utm_source=JetBrains) 6.6 JaninoEventEvaluator vulnerability
* [CVE-2024-12801](https://www.mend.io/vulnerability-database/CVE-2024-12801?utm_source=JetBrains) 4.4 SaxEventRecorder vulnerable to Server-Side Request Forgery (SSRF) attacks
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-monitoring/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-websocket:6.1.5
* [CVE-2025-41254](https://www.mend.io/vulnerability-database/CVE-2025-41254?utm_source=Jetbrains) 4.3 Spring Framework STOMP CSRF Vulnerability
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-core/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-beans:6.1.5
* [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-perf/pom.xml#L49
Provides transitive vulnerable dependency maven:org.apache.commons:commons-lang3:3.13.0
* [CVE-2025-48924](https://www.mend.io/vulnerability-database/CVE-2025-48924?utm_source=Jetbrains) 5.3 Insufficient Information
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-monitoring/pom.xml#L22
Provides transitive vulnerable dependency maven:org.apache.commons:commons-lang3:3.13.0
* [CVE-2025-48924](https://www.mend.io/vulnerability-database/CVE-2025-48924?utm_source=Jetbrains) 5.3 Insufficient Information
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-spring-boot-starter/pom.xml#L40
Provides transitive vulnerable dependency maven:ch.qos.logback:logback-classic:1.5.3
* [CVE-2024-12798](https://www.mend.io/vulnerability-database/CVE-2024-12798?utm_source=JetBrains) 6.6 JaninoEventEvaluator vulnerability
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-e2e/pom.xml#L54
Provides transitive vulnerable dependency maven:org.apache.commons:commons-lang3:3.13.0
* [CVE-2025-48924](https://www.mend.io/vulnerability-database/CVE-2025-48924?utm_source=Jetbrains) 5.3 Insufficient Information
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-admin/pom.xml#L22
Provides transitive vulnerable dependency maven:org.apache.commons:commons-lang3:3.13.0
* [CVE-2025-48924](https://www.mend.io/vulnerability-database/CVE-2025-48924?utm_source=Jetbrains) 5.3 Insufficient Information
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-spring-boot-starter/pom.xml#L22
Provides transitive vulnerable dependency maven:org.apache.commons:commons-lang3:3.13.0
* [CVE-2025-48924](https://www.mend.io/vulnerability-database/CVE-2025-48924?utm_source=Jetbrains) 5.3 Insufficient Information
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-account/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-websocket:6.1.5
* [CVE-2025-41254](https://www.mend.io/vulnerability-database/CVE-2025-41254?utm_source=Jetbrains) 4.3 Spring Framework STOMP CSRF Vulnerability
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-monitoring/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-context:6.1.5
* [CVE-2025-22233](https://www.mend.io/vulnerability-database/CVE-2025-22233?utm_source=Jetbrains) 3.1 Spring Framework DataBinder Case Sensitive Match Exception
* [CVE-2024-38820](https://www.mend.io/vulnerability-database/CVE-2024-38820?utm_source=JetBrains) 3.1 Improper Handling of Case Sensitivity
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-connection/pom.xml#L28
Provides transitive vulnerable dependency maven:org.springframework:spring-websocket:6.1.5
* [CVE-2025-41254](https://www.mend.io/vulnerability-database/CVE-2025-41254?utm_source=Jetbrains) 4.3 Spring Framework STOMP CSRF Vulnerability
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-it/pom.xml#L66
Provides transitive vulnerable dependency maven:org.xmlunit:xmlunit-core:2.9.1
* [CVE-2024-31573](https://www.mend.io/vulnerability-database/CVE-2024-31573?utm_source=JetBrains) 4.0 Insufficient Information
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-admin/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-context:6.1.5
* [CVE-2025-22233](https://www.mend.io/vulnerability-database/CVE-2025-22233?utm_source=Jetbrains) 3.1 Spring Framework DataBinder Case Sensitive Match Exception
* [CVE-2024-38820](https://www.mend.io/vulnerability-database/CVE-2024-38820?utm_source=JetBrains) 3.1 Improper Handling of Case Sensitivity
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-account/pom.xml#L22
Provides transitive vulnerable dependency maven:org.apache.commons:commons-lang3:3.13.0
* [CVE-2025-48924](https://www.mend.io/vulnerability-database/CVE-2025-48924?utm_source=Jetbrains) 5.3 Insufficient Information
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-chaos/pom.xml#L78
Provides transitive vulnerable dependency maven:ch.qos.logback:logback-core:1.5.3
* [CVE-2025-11226](https://www.mend.io/vulnerability-database/CVE-2025-11226?utm_source=JetBrains) 6.9 Conditional processing of logback.xml configuration file, in conjuction with Spring Framework and Janino
* [CVE-2024-12798](https://www.mend.io/vulnerability-database/CVE-2024-12798?utm_source=JetBrains) 6.6 JaninoEventEvaluator vulnerability
* [CVE-2024-12801](https://www.mend.io/vulnerability-database/CVE-2024-12801?utm_source=JetBrains) 4.4 SaxEventRecorder vulnerable to Server-Side Request Forgery (SSRF) attacks
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
|
|
|
|
|
|
|
|
|
|
|
|
Vulnerable declared dependency:
nsecbunker-spring-boot-starter/pom.xml#L78
Provides transitive vulnerable dependency maven:org.xmlunit:xmlunit-core:2.9.1
* [CVE-2024-31573](https://www.mend.io/vulnerability-database/CVE-2024-31573?utm_source=JetBrains) 4.0 Insufficient Information
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-spring-boot-starter/pom.xml#L26
Provides transitive vulnerable dependency maven:org.springframework:spring-beans:6.1.5
* [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-spring-boot-starter/pom.xml#L26
Provides transitive vulnerable dependency maven:org.springframework:spring-websocket:6.1.5
* [CVE-2025-41254](https://www.mend.io/vulnerability-database/CVE-2025-41254?utm_source=Jetbrains) 4.3 Spring Framework STOMP CSRF Vulnerability
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-core/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-context:6.1.5
* [CVE-2025-22233](https://www.mend.io/vulnerability-database/CVE-2025-22233?utm_source=Jetbrains) 3.1 Spring Framework DataBinder Case Sensitive Match Exception
* [CVE-2024-38820](https://www.mend.io/vulnerability-database/CVE-2024-38820?utm_source=JetBrains) 3.1 Improper Handling of Case Sensitivity
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-perf/pom.xml#L92
Provides transitive vulnerable dependency maven:ch.qos.logback:logback-core:1.5.3
* [CVE-2025-11226](https://www.mend.io/vulnerability-database/CVE-2025-11226?utm_source=JetBrains) 6.9 Conditional processing of logback.xml configuration file, in conjuction with Spring Framework and Janino
* [CVE-2024-12798](https://www.mend.io/vulnerability-database/CVE-2024-12798?utm_source=JetBrains) 6.6 JaninoEventEvaluator vulnerability
* [CVE-2024-12801](https://www.mend.io/vulnerability-database/CVE-2024-12801?utm_source=JetBrains) 4.4 SaxEventRecorder vulnerable to Server-Side Request Forgery (SSRF) attacks
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-spring-boot-starter/pom.xml#L26
Provides transitive vulnerable dependency maven:org.springframework:spring-context:6.1.5
* [CVE-2025-22233](https://www.mend.io/vulnerability-database/CVE-2025-22233?utm_source=Jetbrains) 3.1 Spring Framework DataBinder Case Sensitive Match Exception
* [CVE-2024-38820](https://www.mend.io/vulnerability-database/CVE-2024-38820?utm_source=JetBrains) 3.1 Improper Handling of Case Sensitivity
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-account/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-context:6.1.5
* [CVE-2025-22233](https://www.mend.io/vulnerability-database/CVE-2025-22233?utm_source=Jetbrains) 3.1 Spring Framework DataBinder Case Sensitive Match Exception
* [CVE-2024-38820](https://www.mend.io/vulnerability-database/CVE-2024-38820?utm_source=JetBrains) 3.1 Improper Handling of Case Sensitivity
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-connection/pom.xml#L28
Provides transitive vulnerable dependency maven:org.apache.commons:commons-lang3:3.13.0
* [CVE-2025-48924](https://www.mend.io/vulnerability-database/CVE-2025-48924?utm_source=Jetbrains) 5.3 Insufficient Information
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-it/pom.xml#L25
Provides transitive vulnerable dependency maven:org.apache.commons:commons-lang3:3.13.0
* [CVE-2025-48924](https://www.mend.io/vulnerability-database/CVE-2025-48924?utm_source=Jetbrains) 5.3 Insufficient Information
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-core/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-websocket:6.1.5
* [CVE-2025-41254](https://www.mend.io/vulnerability-database/CVE-2025-41254?utm_source=Jetbrains) 4.3 Spring Framework STOMP CSRF Vulnerability
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-protocol/pom.xml#L32
Provides transitive vulnerable dependency maven:org.springframework:spring-context:6.1.5
* [CVE-2025-22233](https://www.mend.io/vulnerability-database/CVE-2025-22233?utm_source=Jetbrains) 3.1 Spring Framework DataBinder Case Sensitive Match Exception
* [CVE-2024-38820](https://www.mend.io/vulnerability-database/CVE-2024-38820?utm_source=JetBrains) 3.1 Improper Handling of Case Sensitivity
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-chaos/pom.xml#L44
Provides transitive vulnerable dependency maven:org.apache.commons:commons-lang3:3.13.0
* [CVE-2025-48924](https://www.mend.io/vulnerability-database/CVE-2025-48924?utm_source=Jetbrains) 5.3 Insufficient Information
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-security/pom.xml#L19
Provides transitive vulnerable dependency maven:org.apache.commons:commons-lang3:3.13.0
* [CVE-2025-48924](https://www.mend.io/vulnerability-database/CVE-2025-48924?utm_source=Jetbrains) 5.3 Insufficient Information
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-security/pom.xml#L19
Provides transitive vulnerable dependency maven:org.springframework:spring-beans:6.1.5
* [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-e2e/pom.xml#L54
Provides transitive vulnerable dependency maven:org.springframework:spring-beans:6.1.5
* [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-protocol/pom.xml#L32
Provides transitive vulnerable dependency maven:org.springframework:spring-beans:6.1.5
* [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-chaos/pom.xml#L44
Provides transitive vulnerable dependency maven:org.springframework:spring-beans:6.1.5
* [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-monitoring/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-beans:6.1.5
* [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-admin/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-websocket:6.1.5
* [CVE-2025-41254](https://www.mend.io/vulnerability-database/CVE-2025-41254?utm_source=Jetbrains) 4.3 Spring Framework STOMP CSRF Vulnerability
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-client/pom.xml#L36
Provides transitive vulnerable dependency maven:org.springframework:spring-context:6.1.5
* [CVE-2025-22233](https://www.mend.io/vulnerability-database/CVE-2025-22233?utm_source=Jetbrains) 3.1 Spring Framework DataBinder Case Sensitive Match Exception
* [CVE-2024-38820](https://www.mend.io/vulnerability-database/CVE-2024-38820?utm_source=JetBrains) 3.1 Improper Handling of Case Sensitivity
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-e2e/pom.xml#L54
Provides transitive vulnerable dependency maven:org.springframework:spring-websocket:6.1.5
* [CVE-2025-41254](https://www.mend.io/vulnerability-database/CVE-2025-41254?utm_source=Jetbrains) 4.3 Spring Framework STOMP CSRF Vulnerability
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-admin/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-beans:6.1.5
* [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-security/pom.xml#L19
Provides transitive vulnerable dependency maven:org.springframework:spring-context:6.1.5
* [CVE-2025-22233](https://www.mend.io/vulnerability-database/CVE-2025-22233?utm_source=Jetbrains) 3.1 Spring Framework DataBinder Case Sensitive Match Exception
* [CVE-2024-38820](https://www.mend.io/vulnerability-database/CVE-2024-38820?utm_source=JetBrains) 3.1 Improper Handling of Case Sensitivity
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-it/pom.xml#L25
Provides transitive vulnerable dependency maven:org.springframework:spring-context:6.1.5
* [CVE-2025-22233](https://www.mend.io/vulnerability-database/CVE-2025-22233?utm_source=Jetbrains) 3.1 Spring Framework DataBinder Case Sensitive Match Exception
* [CVE-2024-38820](https://www.mend.io/vulnerability-database/CVE-2024-38820?utm_source=JetBrains) 3.1 Improper Handling of Case Sensitivity
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-security/pom.xml#L19
Provides transitive vulnerable dependency maven:org.springframework:spring-websocket:6.1.5
* [CVE-2025-41254](https://www.mend.io/vulnerability-database/CVE-2025-41254?utm_source=Jetbrains) 4.3 Spring Framework STOMP CSRF Vulnerability
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-client/pom.xml#L36
Provides transitive vulnerable dependency maven:org.springframework:spring-beans:6.1.5
* [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-e2e/pom.xml#L54
Provides transitive vulnerable dependency maven:org.springframework:spring-context:6.1.5
* [CVE-2025-22233](https://www.mend.io/vulnerability-database/CVE-2025-22233?utm_source=Jetbrains) 3.1 Spring Framework DataBinder Case Sensitive Match Exception
* [CVE-2024-38820](https://www.mend.io/vulnerability-database/CVE-2024-38820?utm_source=JetBrains) 3.1 Improper Handling of Case Sensitivity
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-account/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-beans:6.1.5
* [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-it/pom.xml#L25
Provides transitive vulnerable dependency maven:org.springframework:spring-beans:6.1.5
* [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-it/pom.xml#L66
Provides transitive vulnerable dependency maven:ch.qos.logback:logback-classic:1.5.3
* [CVE-2024-12798](https://www.mend.io/vulnerability-database/CVE-2024-12798?utm_source=JetBrains) 6.6 JaninoEventEvaluator vulnerability
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-client/pom.xml#L36
Provides transitive vulnerable dependency maven:org.apache.commons:commons-lang3:3.13.0
* [CVE-2025-48924](https://www.mend.io/vulnerability-database/CVE-2025-48924?utm_source=Jetbrains) 5.3 Insufficient Information
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-it/pom.xml#L66
Provides transitive vulnerable dependency maven:ch.qos.logback:logback-core:1.5.3
* [CVE-2025-11226](https://www.mend.io/vulnerability-database/CVE-2025-11226?utm_source=JetBrains) 6.9 Conditional processing of logback.xml configuration file, in conjuction with Spring Framework and Janino
* [CVE-2024-12798](https://www.mend.io/vulnerability-database/CVE-2024-12798?utm_source=JetBrains) 6.6 JaninoEventEvaluator vulnerability
* [CVE-2024-12801](https://www.mend.io/vulnerability-database/CVE-2024-12801?utm_source=JetBrains) 4.4 SaxEventRecorder vulnerable to Server-Side Request Forgery (SSRF) attacks
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-chaos/pom.xml#L44
Provides transitive vulnerable dependency maven:org.springframework:spring-websocket:6.1.5
* [CVE-2025-41254](https://www.mend.io/vulnerability-database/CVE-2025-41254?utm_source=Jetbrains) 4.3 Spring Framework STOMP CSRF Vulnerability
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-connection/pom.xml#L28
Provides transitive vulnerable dependency maven:org.springframework:spring-beans:6.1.5
* [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-it/pom.xml#L25
Provides transitive vulnerable dependency maven:org.springframework:spring-websocket:6.1.5
* [CVE-2025-41254](https://www.mend.io/vulnerability-database/CVE-2025-41254?utm_source=Jetbrains) 4.3 Spring Framework STOMP CSRF Vulnerability
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-connection/pom.xml#L28
Provides transitive vulnerable dependency maven:org.springframework:spring-context:6.1.5
* [CVE-2025-22233](https://www.mend.io/vulnerability-database/CVE-2025-22233?utm_source=Jetbrains) 3.1 Spring Framework DataBinder Case Sensitive Match Exception
* [CVE-2024-38820](https://www.mend.io/vulnerability-database/CVE-2024-38820?utm_source=JetBrains) 3.1 Improper Handling of Case Sensitivity
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-spring-boot-starter/pom.xml#L40
Provides transitive vulnerable dependency maven:ch.qos.logback:logback-core:1.5.3
* [CVE-2025-11226](https://www.mend.io/vulnerability-database/CVE-2025-11226?utm_source=JetBrains) 6.9 Conditional processing of logback.xml configuration file, in conjuction with Spring Framework and Janino
* [CVE-2024-12798](https://www.mend.io/vulnerability-database/CVE-2024-12798?utm_source=JetBrains) 6.6 JaninoEventEvaluator vulnerability
* [CVE-2024-12801](https://www.mend.io/vulnerability-database/CVE-2024-12801?utm_source=JetBrains) 4.4 SaxEventRecorder vulnerable to Server-Side Request Forgery (SSRF) attacks
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-core/pom.xml#L22
Provides transitive vulnerable dependency maven:org.apache.commons:commons-lang3:3.13.0
* [CVE-2025-48924](https://www.mend.io/vulnerability-database/CVE-2025-48924?utm_source=Jetbrains) 5.3 Insufficient Information
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-client/pom.xml#L36
Provides transitive vulnerable dependency maven:org.springframework:spring-websocket:6.1.5
* [CVE-2025-41254](https://www.mend.io/vulnerability-database/CVE-2025-41254?utm_source=Jetbrains) 4.3 Spring Framework STOMP CSRF Vulnerability
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-e2e/pom.xml#L76
Provides transitive vulnerable dependency maven:ch.qos.logback:logback-core:1.5.3
* [CVE-2025-11226](https://www.mend.io/vulnerability-database/CVE-2025-11226?utm_source=JetBrains) 6.9 Conditional processing of logback.xml configuration file, in conjuction with Spring Framework and Janino
* [CVE-2024-12798](https://www.mend.io/vulnerability-database/CVE-2024-12798?utm_source=JetBrains) 6.6 JaninoEventEvaluator vulnerability
* [CVE-2024-12801](https://www.mend.io/vulnerability-database/CVE-2024-12801?utm_source=JetBrains) 4.4 SaxEventRecorder vulnerable to Server-Side Request Forgery (SSRF) attacks
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-perf/pom.xml#L49
Provides transitive vulnerable dependency maven:org.springframework:spring-websocket:6.1.5
* [CVE-2025-41254](https://www.mend.io/vulnerability-database/CVE-2025-41254?utm_source=Jetbrains) 4.3 Spring Framework STOMP CSRF Vulnerability
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-perf/pom.xml#L49
Provides transitive vulnerable dependency maven:org.springframework:spring-beans:6.1.5
* [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-perf/pom.xml#L49
Provides transitive vulnerable dependency maven:org.springframework:spring-context:6.1.5
* [CVE-2025-22233](https://www.mend.io/vulnerability-database/CVE-2025-22233?utm_source=Jetbrains) 3.1 Spring Framework DataBinder Case Sensitive Match Exception
* [CVE-2024-38820](https://www.mend.io/vulnerability-database/CVE-2024-38820?utm_source=JetBrains) 3.1 Improper Handling of Case Sensitivity
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-chaos/pom.xml#L44
Provides transitive vulnerable dependency maven:org.springframework:spring-context:6.1.5
* [CVE-2025-22233](https://www.mend.io/vulnerability-database/CVE-2025-22233?utm_source=Jetbrains) 3.1 Spring Framework DataBinder Case Sensitive Match Exception
* [CVE-2024-38820](https://www.mend.io/vulnerability-database/CVE-2024-38820?utm_source=JetBrains) 3.1 Improper Handling of Case Sensitivity
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-protocol/pom.xml#L32
Provides transitive vulnerable dependency maven:org.springframework:spring-websocket:6.1.5
* [CVE-2025-41254](https://www.mend.io/vulnerability-database/CVE-2025-41254?utm_source=Jetbrains) 4.3 Spring Framework STOMP CSRF Vulnerability
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-protocol/pom.xml#L32
Provides transitive vulnerable dependency maven:org.apache.commons:commons-lang3:3.13.0
* [CVE-2025-48924](https://www.mend.io/vulnerability-database/CVE-2025-48924?utm_source=Jetbrains) 5.3 Insufficient Information
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-security/pom.xml#L92
Provides transitive vulnerable dependency maven:ch.qos.logback:logback-core:1.5.3
* [CVE-2025-11226](https://www.mend.io/vulnerability-database/CVE-2025-11226?utm_source=JetBrains) 6.9 Conditional processing of logback.xml configuration file, in conjuction with Spring Framework and Janino
* [CVE-2024-12798](https://www.mend.io/vulnerability-database/CVE-2024-12798?utm_source=JetBrains) 6.6 JaninoEventEvaluator vulnerability
* [CVE-2024-12801](https://www.mend.io/vulnerability-database/CVE-2024-12801?utm_source=JetBrains) 4.4 SaxEventRecorder vulnerable to Server-Side Request Forgery (SSRF) attacks
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-monitoring/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-websocket:6.1.5
* [CVE-2025-41254](https://www.mend.io/vulnerability-database/CVE-2025-41254?utm_source=Jetbrains) 4.3 Spring Framework STOMP CSRF Vulnerability
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-core/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-beans:6.1.5
* [CVE-2025-41242](https://www.mend.io/vulnerability-database/CVE-2025-41242?utm_source=JetBrains) 5.9 CVE-2025-41242: Path traversal vulnerability on non-compliant Servlet containers
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-perf/pom.xml#L49
Provides transitive vulnerable dependency maven:org.apache.commons:commons-lang3:3.13.0
* [CVE-2025-48924](https://www.mend.io/vulnerability-database/CVE-2025-48924?utm_source=Jetbrains) 5.3 Insufficient Information
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-monitoring/pom.xml#L22
Provides transitive vulnerable dependency maven:org.apache.commons:commons-lang3:3.13.0
* [CVE-2025-48924](https://www.mend.io/vulnerability-database/CVE-2025-48924?utm_source=Jetbrains) 5.3 Insufficient Information
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-spring-boot-starter/pom.xml#L40
Provides transitive vulnerable dependency maven:ch.qos.logback:logback-classic:1.5.3
* [CVE-2024-12798](https://www.mend.io/vulnerability-database/CVE-2024-12798?utm_source=JetBrains) 6.6 JaninoEventEvaluator vulnerability
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-e2e/pom.xml#L54
Provides transitive vulnerable dependency maven:org.apache.commons:commons-lang3:3.13.0
* [CVE-2025-48924](https://www.mend.io/vulnerability-database/CVE-2025-48924?utm_source=Jetbrains) 5.3 Insufficient Information
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-admin/pom.xml#L22
Provides transitive vulnerable dependency maven:org.apache.commons:commons-lang3:3.13.0
* [CVE-2025-48924](https://www.mend.io/vulnerability-database/CVE-2025-48924?utm_source=Jetbrains) 5.3 Insufficient Information
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-spring-boot-starter/pom.xml#L22
Provides transitive vulnerable dependency maven:org.apache.commons:commons-lang3:3.13.0
* [CVE-2025-48924](https://www.mend.io/vulnerability-database/CVE-2025-48924?utm_source=Jetbrains) 5.3 Insufficient Information
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-account/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-websocket:6.1.5
* [CVE-2025-41254](https://www.mend.io/vulnerability-database/CVE-2025-41254?utm_source=Jetbrains) 4.3 Spring Framework STOMP CSRF Vulnerability
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-monitoring/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-context:6.1.5
* [CVE-2025-22233](https://www.mend.io/vulnerability-database/CVE-2025-22233?utm_source=Jetbrains) 3.1 Spring Framework DataBinder Case Sensitive Match Exception
* [CVE-2024-38820](https://www.mend.io/vulnerability-database/CVE-2024-38820?utm_source=JetBrains) 3.1 Improper Handling of Case Sensitivity
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-connection/pom.xml#L28
Provides transitive vulnerable dependency maven:org.springframework:spring-websocket:6.1.5
* [CVE-2025-41254](https://www.mend.io/vulnerability-database/CVE-2025-41254?utm_source=Jetbrains) 4.3 Spring Framework STOMP CSRF Vulnerability
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-it/pom.xml#L66
Provides transitive vulnerable dependency maven:org.xmlunit:xmlunit-core:2.9.1
* [CVE-2024-31573](https://www.mend.io/vulnerability-database/CVE-2024-31573?utm_source=JetBrains) 4.0 Insufficient Information
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-admin/pom.xml#L22
Provides transitive vulnerable dependency maven:org.springframework:spring-context:6.1.5
* [CVE-2025-22233](https://www.mend.io/vulnerability-database/CVE-2025-22233?utm_source=Jetbrains) 3.1 Spring Framework DataBinder Case Sensitive Match Exception
* [CVE-2024-38820](https://www.mend.io/vulnerability-database/CVE-2024-38820?utm_source=JetBrains) 3.1 Improper Handling of Case Sensitivity
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-account/pom.xml#L22
Provides transitive vulnerable dependency maven:org.apache.commons:commons-lang3:3.13.0
* [CVE-2025-48924](https://www.mend.io/vulnerability-database/CVE-2025-48924?utm_source=Jetbrains) 5.3 Insufficient Information
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
nsecbunker-tests/nsecbunker-chaos/pom.xml#L78
Provides transitive vulnerable dependency maven:ch.qos.logback:logback-core:1.5.3
* [CVE-2025-11226](https://www.mend.io/vulnerability-database/CVE-2025-11226?utm_source=JetBrains) 6.9 Conditional processing of logback.xml configuration file, in conjuction with Spring Framework and Janino
* [CVE-2024-12798](https://www.mend.io/vulnerability-database/CVE-2024-12798?utm_source=JetBrains) 6.6 JaninoEventEvaluator vulnerability
* [CVE-2024-12801](https://www.mend.io/vulnerability-database/CVE-2024-12801?utm_source=JetBrains) 4.4 SaxEventRecorder vulnerable to Server-Side Request Forgery (SSRF) attacks
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
Artifacts
Produced during runtime
| Name | Size | Digest | |
|---|---|---|---|
|
coverage-reports
Expired
|
1.9 MB |
sha256:b5253833c22b41dc45c227f2dd48b61d4b73e8fc5eb8d66c1419b48922955bce
|
|
|
maven-artifacts
Expired
|
37 MB |
sha256:a655a3c2284140436429ef6d338bb48ea75141ef7ce10d77e51ee63c93862988
|
|
|
quality-reports
Expired
|
7.82 KB |
sha256:9e5b6cc3002196b1e1454b211d095f111c2f7232600869be45f13f7caca5c545
|
|
|
test-results-java-21
Expired
|
391 KB |
sha256:e0f888205b53ec089020708031e2339fc46c3a12e8f9bc769469cb8622e64236
|
|