An open index of dependabot pull requests across open source projects.

com.thoughtworks.xstream:xstream

Ecosystem:
maven
Package URL:
pkg:maven/com.thoughtworks.xstream:xstream
Total PRs:
155 Dependabot PRs
Latest PR:
about 2 months ago
Unique Repositories:
133 repositories
Unique Repos (30 days):
2 repositories
Security Advisories
XStream vulnerable to an Arbitrary File Deletion on the local host when unmarshalling
GHSA-jfvx-7wrx-43fh CVE-2020-26259 MODERATE published over 5 years ago • updated 13 days ago
### Impact The vulnerability may allow a remote attacker to delete arbitrary know files on the host as log as the executing process has sufficient ...
Denial of service in XStream
GHSA-7hwc-46rm-65jh CVE-2017-7957 HIGH published almost 6 years ago • updated 13 days ago
XStream through 1.4.9, when a certain denyTypes workaround is not used, mishandles attempts to create an instance of the primitive type 'void' duri...
XStream is vulnerable to a Remote Command Execution attack
GHSA-7chv-rrw6-w6fc CVE-2021-29505 HIGH published about 5 years ago • updated 13 days ago
### Impact The vulnerability may allow a remote attacker has sufficient rights to execute commands of the host only by manipulating the processed i...
XStream is vulnerable to an Arbitrary Code Execution attack
GHSA-hph2-m3g5-xxv4 CVE-2021-39151 HIGH published almost 5 years ago • updated 13 days ago
### Impact The vulnerability may allow a remote attacker to load and execute arbitrary code from a remote host only by manipulating the processed i...
XStream is vulnerable to an Arbitrary Code Execution attack
GHSA-2q8x-2p7f-574v CVE-2021-39153 HIGH published almost 5 years ago • updated 13 days ago
### Impact The vulnerability may allow a remote attacker to load and execute arbitrary code from a remote host only by manipulating the processed i...
Recent PRs
Package Details
Name: com.thoughtworks.xstream:xstream
Ecosystem: maven
PURL Type: maven
Package URL: pkg:maven/com.thoughtworks.xstream:xstream
JSON API: View JSON
Security Advisories

37

Active advisories
CRITICAL 2
HIGH 22
MODERATE 13
View All maven Advisories
Package Information
Description:

XStream is a serialization library from Java objects to XML and back.

Repository: https://github.com/x-stream/xstream
Homepage: http://x-stream.github.io
Latest Release: 1.4.21
over 1 year ago
Dependent Repos: 25,482
Dependent Packages: 1,882
Ranking: Top 0.0366% by dependent repos Top 0.0384% by dependent pkgs
PR Status
Open 101 (65.2%)
Merged 15 (9.7%)
Closed 29 (18.7%)
PR Types
Minor 1 (0.6%)
Patch 144 (92.9%)