An open index of dependabot pull requests across open source projects.

org.springframework:spring-webmvc

Ecosystem:
maven
Package URL:
pkg:maven/org.springframework:spring-webmvc
Total PRs:
517 Dependabot PRs
Latest PR:
about 9 hours ago
Unique Repositories:
292 repositories
Unique Repos (30 days):
1 repository
Security Advisories
Path traversal vulnerability in functional web frameworks
GHSA-cx7f-g6mp-7hqm CVE-2024-38816 HIGH published almost 2 years ago • updated 2 days ago
Applications serving static resources through the functional web frameworks WebMvc.fn or WebFlux.fn are vulnerable to path traversal attacks. An at...
Improper Neutralization of Input During Web Page Generation in Spring Framework
GHSA-ff7p-jqjm-v66h CVE-2014-1904 MODERATE published about 4 years ago • updated about 1 month ago
Cross-site scripting (XSS) vulnerability in web/servlet/tags/form/FormTag.java in Spring MVC in Spring Framework 3.0.0 before 3.2.8 and 4.0.0 befor...
Spring MVC and WebFlux applications are vulnerable to Denial of Service attacks when resolving static resources
GHSA-6p4f-wcwh-5vvm CVE-2026-22745 MODERATE published about 2 months ago • updated 5 days ago
Spring MVC and WebFlux applications are vulnerable to Denial of Service attacks when resolving static resources. More precisely, an application c...
Spring Framework Path Traversal vulnerability
GHSA-g5vr-rgqm-vf78 CVE-2024-38819 HIGH published over 1 year ago • updated 5 days ago
Applications serving static resources through the functional web frameworks WebMvc.fn or WebFlux.fn are vulnerable to path traversal attacks. An at...
Improper Limitation of a Pathname to a Restricted Directory in Spring Framework
GHSA-hhm4-hwq6-3c6w CVE-2014-3625 MODERATE published about 4 years ago • updated 24 days ago
Directory traversal vulnerability in Pivotal Spring Framework 3.0.4 through 3.2.x before 3.2.12, 4.0.x before 4.0.8, and 4.1.x before 4.1.2 allows ...
Recent PRs
Package Details
Name: org.springframework:spring-webmvc
Ecosystem: maven
PURL Type: maven
Package URL: pkg:maven/org.springframework:spring-webmvc
JSON API: View JSON
Security Advisories

17

Active advisories
CRITICAL 1
HIGH 6
MODERATE 8
LOW 2
View All maven Advisories
Package Information
Description:

Spring Web MVC

Repository: https://github.com/spring-projects/spring-framework
Homepage: https://github.com/spring-projects/spring-framework
Latest Release: 6.2.7
about 1 year ago
Dependent Repos: 227,195
Dependent Packages: 4,621
Ranking: Top 0.003% by dependent repos Top 0.0156% by dependent pkgs
PR Status
Open 245 (47.4%)
Merged 105 (20.3%)
Closed 138 (26.7%)
PR Types
Major 194 (37.5%)
Minor 30 (5.8%)
Patch 264 (51.1%)