Open Source Vulnerabilities
CVE-2019-12454 does not affect BellSoft software
CVE-2019-12455 does not affect BellSoft software
org.apache.tomcat.embed:tomcat-embed-core, org.apache.tomcat.embed:tomcat-embed-core, org.apache.tomcat.embed:tomcat-embed-core, org.apache.tomcat:tomcat-catalina, org.apache.tomcat:tomcat-catalina, org.apache.tomcat:tomcat-catalina, org.apache.tomcat:tomcat, org.apache.tomcat:tomcat, org.apache.tomcat:tomcat
Cross-site scripting in Apache Tomcat
org.apache.tomcat.embed:tomcat-embed-core/ org.apache.tomcat.embed:tomcat-embed-core/ org.apache.tomcat.embed:tomcat-embed-core/ org.apache.tomcat:tomcat-catalina/ org.apache.tomcat:tomcat-catalina/ org.apache.tomcat:tomcat-catalina/ org.apache.tomcat:tomcat/ org.apache.tomcat:tomcat/ org.apache.tomcat:tomcat
Cross-site scripting in Apache Tomcat
jquery.terminal
Reflected Cross-Site Scripting in jquery.terminal
jquery.terminal
Reflected Cross-Site Scripting in jquery.terminal
terriajs-server
Server-Side Request Forgery in terriajs-server
terriajs-server
Server-Side Request Forgery in terriajs-server
fs-git
Duplicate Advisory: Command Injection in fs-git
concat-with-sourcemaps
Out-of-bounds Read in concat-with-sourcemaps
concat-with-sourcemaps
Out-of-bounds Read in concat-with-sourcemaps
omniauth
OmniAuth Ruby gem Cross-site Request Forgery in request phase
omniauth
OmniAuth Ruby gem Cross-site Request Forgery in request phase
org.apache.zookeeper:zookeeper, org.apache.zookeeper:zookeeper
Access control bypass in Apache ZooKeeper
org.apache.zookeeper:zookeeper/ org.apache.zookeeper:zookeeper
Access control bypass in Apache ZooKeeper
buildbot, buildbot
Improper Authentication in Buildbot
shave
Cross-Site Scripting in shave
org.apache.camel:camel-core, org.apache.camel:camel-xmljson
XML External Entity injection in Apache Camel
org.apache.camel:camel-core/ org.apache.camel:camel-xmljson
XML External Entity injection in Apache Camel
de.tudarmstadt.ukp.dkpro.core:de.tudarmstadt.ukp.dkpro.core.api.datasets-asl
Path Traversal in DKPro Core
de.tudarmstadt.ukp.dkpro.core:de.tudarmstadt.ukp.dkpro.core.api.datasets-asl
Path Traversal in DKPro Core
com.thoughtworks.xstream:xstream, com.thoughtworks.xstream:xstream
Command Injection in Xstream
com.thoughtworks.xstream:xstream/ com.thoughtworks.xstream:xstream
Command Injection in Xstream
remarkable
Cross-site Scripting in remarkable
verdaccio
Cross-Site Scripting (XSS) in Verdaccio
