Skip to content

commons-dbcp-1.4.jar: 1 vulnerabilities (highest severity is: 9.8) [master] #42

@mend-developer-platform-dev

Description

@mend-developer-platform-dev
📂 Vulnerable Library - commons-dbcp-1.4.jar

Commons Database Connection Pooling

Path to dependency file: /pom.xml

Path to vulnerable library: /home/wss-scanner/.m2/repository/commons-dbcp/commons-dbcp/1.4/commons-dbcp-1.4.jar

Findings

Finding Severity 🎯 CVSS Exploit Maturity EPSS Library Type Fixed in Remediation Available Reachability
CVE-853521-722872 🟣 Critical 9.8 N/A N/A commons-pool-1.5.4.jar Transitive N/A

Details

🟣CVE-853521-722872

Vulnerable Library - commons-pool-1.5.4.jar

Commons Object Pooling Library

Library home page: http://www.apache.org/

Path to dependency file: /pom.xml

Path to vulnerable library: /home/wss-scanner/.m2/repository/commons-pool/commons-pool/1.5.4/commons-pool-1.5.4.jar

Dependency Hierarchy:

  • commons-dbcp-1.4.jar (Root Library)
    • commons-pool-1.5.4.jar (Vulnerable Library)

Vulnerability Details

Created automatically by the test suite

Publish Date: Jun 07, 2010 05:12 PM

URL: CVE-853521-722872

Threat Assessment

Exploit Maturity:N/A

EPSS:N/A

Score: 9.8


Suggested Fix

Type: Upgrade version

Origin:

Release Date:

Fix Resolution :

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions