An open index of dependabot pull requests across open source projects.

org.apache.httpcomponents:httpclient

Ecosystem:
maven
Package URL:
pkg:maven/org.apache.httpcomponents:httpclient
Total PRs:
99 Dependabot PRs
Latest PR:
10 days ago
Unique Repositories:
87 repositories
Unique Repos (30 days):
2 repositories
Security Advisories
Hostname verification in Apache HttpClient 4.3 was disabled by default
GHSA-pqwh-44jj-p5rm CVE-2013-4366 CRITICAL published about 4 years ago • updated about 3 hours ago
http/impl/client/HttpClientBuilder.java in Apache HttpClient 4.3.x before 4.3.1 does not ensure that X509HostnameVerifier is not null, which allows...
Cross-site scripting in Apache HttpClient
GHSA-7r82-7xv7-xcpj CVE-2020-13956 MODERATE published about 5 years ago • updated 19 minutes ago
Apache HttpClient versions prior to version 4.5.13 and 5.0.3 can misinterpret malformed authority component in request URIs passed to the library a...
Denial of service vulnerability in org.apache.httpcomponents:httpclient
GHSA-fmj5-wv96-r2ch CVE-2015-5262 MODERATE published over 7 years ago • updated about 1 hour ago
http/conn/ssl/SSLConnectionSocketFactory.java in Apache HttpComponents HttpClient before 4.3.6 ignores the http.socket.timeout configuration settin...
Improper certificate validation in org.apache.httpcomponents:httpclient
GHSA-2x83-r56g-cv47 CVE-2012-6153 HIGH published over 7 years ago • updated about 3 hours ago
http/conn/ssl/AbstractVerifier.java in Apache Commons HttpClient before 4.2.3 does not properly verify that the server hostname matches a domain na...
Exposure of Sensitive Information to an Unauthorized Actor in Apache HttpClient
GHSA-gw85-4gmf-m7rh CVE-2011-1498 MODERATE published about 4 years ago • updated about 3 hours ago
Apache HttpClient 4.x before 4.1.1 in Apache HttpComponents, when used with an authenticating proxy server, sends the Proxy-Authorization header to...
Recent PRs (filtered by: Minor PRs )
Package Details
Name: org.apache.httpcomponents:httpclient
Ecosystem: maven
PURL Type: maven
Package URL: pkg:maven/org.apache.httpcomponents:httpclient
JSON API: View JSON
Security Advisories

6

Active advisories
CRITICAL 1
HIGH 1
MODERATE 4
View All maven Advisories
Package Information
Description:

Apache HttpComponents Client

Repository: https://github.com/apache/httpcomponents-client
Homepage: http://hc.apache.org/httpcomponents-client-ga
Latest Release: 4.5.14
over 3 years ago
Dependent Repos: 142,784
Dependent Packages: 11,971
Ranking: Top 0.0064% by dependent repos Top 0.0038% by dependent pkgs
PR Status
Open 51 (51.5%)
Merged 18 (18.2%)
Closed 22 (22.2%)
PR Types
Minor 24 (24.2%)
Patch 59 (59.6%)