org.apache.httpcomponents:httpclient
Ecosystem:
maven
maven
Package URL:
pkg:maven/org.apache.httpcomponents:httpclient
Total PRs:
99 Dependabot PRs
99 Dependabot PRs
Latest PR:
13 days ago
13 days ago
Unique Repositories:
87 repositories
87 repositories
Unique Repos (30 days):
2 repositories
2 repositories
Security Advisories
Hostname verification in Apache HttpClient 4.3 was disabled by default
GHSA-pqwh-44jj-p5rm
CVE-2013-4366
CRITICAL
published about 4 years ago
• updated 3 days ago
http/impl/client/HttpClientBuilder.java in Apache HttpClient 4.3.x before 4.3.1 does not ensure that X509HostnameVerifier is not null, which allows...
Cross-site scripting in Apache HttpClient
GHSA-7r82-7xv7-xcpj
CVE-2020-13956
MODERATE
published about 5 years ago
• updated 3 days ago
Apache HttpClient versions prior to version 4.5.13 and 5.0.3 can misinterpret malformed authority component in request URIs passed to the library a...
Denial of service vulnerability in org.apache.httpcomponents:httpclient
GHSA-fmj5-wv96-r2ch
CVE-2015-5262
MODERATE
published over 7 years ago
• updated 3 days ago
http/conn/ssl/SSLConnectionSocketFactory.java in Apache HttpComponents HttpClient before 4.3.6 ignores the http.socket.timeout configuration settin...
Improper certificate validation in org.apache.httpcomponents:httpclient
GHSA-2x83-r56g-cv47
CVE-2012-6153
HIGH
published over 7 years ago
• updated 3 days ago
http/conn/ssl/AbstractVerifier.java in Apache Commons HttpClient before 4.2.3 does not properly verify that the server hostname matches a domain na...
Exposure of Sensitive Information to an Unauthorized Actor in Apache HttpClient
GHSA-gw85-4gmf-m7rh
CVE-2011-1498
MODERATE
published about 4 years ago
• updated 3 days ago
Apache HttpClient 4.x before 4.1.1 in Apache HttpComponents, when used with an authenticating proxy server, sends the Proxy-Authorization header to...
Recent PRs (filtered by: Patch PRs )
chore(deps): bump org.apache.httpcomponents:httpclient from 4.5.13 to 4.5.14 in /app/server
4.5.13 → 4.5.14
Patch PR
Closed
about 1 year ago
2 comments
chore(deps): bump org.apache.httpcomponents:httpclient from 4.5.13 to 4.5.14
4.5.13 → 4.5.14
Patch PR
Closed
about 1 year ago
1 comment
Bump the maven group across 2 directories with 9 updates
4.5.6 → 4.5.13
Patch PR
Closed
about 1 year ago
1 comment
Bump org.apache.httpcomponents:httpclient from 4.5.13 to 4.5.14
iterate-ch/java-openstack-swift #26
4.5.13 → 4.5.14
Patch PR
Closed
over 1 year ago
3 comments
Bump org.apache.httpcomponents:httpclient from 4.5.13 to 4.5.14
jenkinsci/sonar-gerrit-plugin #179
4.5.13 → 4.5.14
Patch PR
Closed
almost 2 years ago
2 comments
chore(deps): bump org.apache.httpcomponents:httpclient from 4.5.1 to 4.5.13 in /java/3p-resources
googleworkspace/add-ons-samples #191
4.5.1 → 4.5.13
Patch PR
Closed
over 2 years ago
2 comments
Bump org.apache.httpcomponents:httpclient from 4.5.13 to 4.5.14
miurahr/omegat-textra-plugin #112
4.5.13 → 4.5.14
Patch PR
Closed
almost 3 years ago
1 comment
Bump org.apache.httpcomponents:httpclient from 4.5.13 to 4.5.14
hazelcast/hazelcast-eureka #217
4.5.13 → 4.5.14
Patch PR
Closed
almost 3 years ago
Bump org.apache.httpcomponents:httpclient from 4.5.8 to 4.5.13 in /presto-prometheus
4.5.8 → 4.5.13
Patch PR
Closed
almost 3 years ago
1 comment
Package Details
| Name: | org.apache.httpcomponents:httpclient |
| Ecosystem: | maven |
| PURL Type: | maven |
| Package URL: | pkg:maven/org.apache.httpcomponents:httpclient |
| JSON API: | View JSON |
Security Advisories
Package Information
Description:
Apache HttpComponents Client
| Repository: | https://github.com/apache/httpcomponents-client |
| Homepage: | http://hc.apache.org/httpcomponents-client-ga |
| Latest Release: |
4.5.14
over 3 years ago |
| Dependent Repos: | 142,784 |
| Dependent Packages: | 11,971 |
| Ranking: | Top 0.0064% by dependent repos Top 0.0038% by dependent pkgs |