This table represents the known exploitable and non-exploitable vulnerabilities in third party packages used in the project.


RepositoryGroupImpact AnalysisAction
usecase-ui-server

com.eclipsesource.jaxrs

False Positive

Pulled in by Springboot, indirect dependency.

No Action
usecase-ui-serverorg.apache.tomcat.embed

False Positive

Pulled in by Springboot, indirect dependency.

No Action
usecase-ui-server

com.fasterxml.jackson.core

False Positive

Explaination: This vulnerability issue only exists if com.fasterxml.jackson.databind.ObjectMapper.setDefaultTyping() is called before it is used for deserialization.

usecase-ui server doesn't invoke this method.

No Action
usecase-ui-serverdom4j

False Positive

Pulled in by Springboot, indirect dependency.

No Action

usecase-ui-server

org.jboss.netty

False positive

Pulled in by Springboot, indirect dependency.

No Action
usecase-ui-serverpostgresqlAll of the existing versions have vulnerabilities issues.

Request exception

usecase-ui-servercommons-codec

False positive

Pulled in by Springboot, indirect dependency.

No Action
usecase-ui-serverorg.springframework.dataNo analysis provided by the projectUnknown