An open index of dependabot pull requests across open source projects.

org.apache.httpcomponents:httpclient

Ecosystem:
maven
Package URL:
pkg:maven/org.apache.httpcomponents:httpclient
Total PRs:
99 Dependabot PRs
Latest PR:
10 days ago
Unique Repositories:
87 repositories
Unique Repos (30 days):
2 repositories
Security Advisories
Hostname verification in Apache HttpClient 4.3 was disabled by default
GHSA-pqwh-44jj-p5rm CVE-2013-4366 CRITICAL published about 4 years ago • updated about 5 hours ago
http/impl/client/HttpClientBuilder.java in Apache HttpClient 4.3.x before 4.3.1 does not ensure that X509HostnameVerifier is not null, which allows...
Cross-site scripting in Apache HttpClient
GHSA-7r82-7xv7-xcpj CVE-2020-13956 MODERATE published about 5 years ago • updated about 2 hours ago
Apache HttpClient versions prior to version 4.5.13 and 5.0.3 can misinterpret malformed authority component in request URIs passed to the library a...
Denial of service vulnerability in org.apache.httpcomponents:httpclient
GHSA-fmj5-wv96-r2ch CVE-2015-5262 MODERATE published over 7 years ago • updated about 3 hours ago
http/conn/ssl/SSLConnectionSocketFactory.java in Apache HttpComponents HttpClient before 4.3.6 ignores the http.socket.timeout configuration settin...
Improper certificate validation in org.apache.httpcomponents:httpclient
GHSA-2x83-r56g-cv47 CVE-2012-6153 HIGH published over 7 years ago • updated about 5 hours ago
http/conn/ssl/AbstractVerifier.java in Apache Commons HttpClient before 4.2.3 does not properly verify that the server hostname matches a domain na...
Exposure of Sensitive Information to an Unauthorized Actor in Apache HttpClient
GHSA-gw85-4gmf-m7rh CVE-2011-1498 MODERATE published about 4 years ago • updated about 5 hours ago
Apache HttpClient 4.x before 4.1.1 in Apache HttpComponents, when used with an authenticating proxy server, sends the Proxy-Authorization header to...
Recent PRs (filtered by: Patch PRs )
Package Details
Name: org.apache.httpcomponents:httpclient
Ecosystem: maven
PURL Type: maven
Package URL: pkg:maven/org.apache.httpcomponents:httpclient
JSON API: View JSON
Security Advisories

6

Active advisories
CRITICAL 1
HIGH 1
MODERATE 4
View All maven Advisories
Package Information
Description:

Apache HttpComponents Client

Repository: https://github.com/apache/httpcomponents-client
Homepage: http://hc.apache.org/httpcomponents-client-ga
Latest Release: 4.5.14
over 3 years ago
Dependent Repos: 142,784
Dependent Packages: 11,971
Ranking: Top 0.0064% by dependent repos Top 0.0038% by dependent pkgs
PR Status
Open 51 (51.5%)
Merged 18 (18.2%)
Closed 22 (22.2%)
PR Types
Minor 24 (24.2%)
Patch 59 (59.6%)