An open index of dependabot pull requests across open source projects.

org.springframework:spring-webmvc

Ecosystem:
maven
Package URL:
pkg:maven/org.springframework:spring-webmvc
Total PRs:
517 Dependabot PRs
Latest PR:
4 days ago
Unique Repositories:
292 repositories
Unique Repos (30 days):
1 repository
Security Advisories
Path traversal vulnerability in functional web frameworks
GHSA-cx7f-g6mp-7hqm CVE-2024-38816 HIGH published almost 2 years ago • updated 6 days ago
Applications serving static resources through the functional web frameworks WebMvc.fn or WebFlux.fn are vulnerable to path traversal attacks. An at...
Improper Neutralization of Input During Web Page Generation in Spring Framework
GHSA-ff7p-jqjm-v66h CVE-2014-1904 MODERATE published about 4 years ago • updated about 1 month ago
Cross-site scripting (XSS) vulnerability in web/servlet/tags/form/FormTag.java in Spring MVC in Spring Framework 3.0.0 before 3.2.8 and 4.0.0 befor...
Remote Code Execution in Spring Framework
GHSA-36p3-wjmg-h94x CVE-2022-22965 CRITICAL published about 4 years ago • updated about 1 hour ago
Spring Framework prior to versions 5.2.20 and 5.3.18 contains a remote code execution vulnerability known as `Spring4Shell`. ## Impact A Spring ...
RFD attack via Content-Disposition header sourced from request input by Spring MVC or Spring WebFlux Application
GHSA-8wx2-9q48-vm9r CVE-2020-5398 HIGH published over 6 years ago • updated about 1 hour ago
In Spring Framework, versions 5.2.x prior to 5.2.3, versions 5.1.x prior to 5.1.13, and versions 5.0.x prior to 5.0.16, an application is vulnerabl...
Spring MVC and WebFlux has Server Sent Event stream corruption
GHSA-6hcq-hmm3-jj3c CVE-2026-22735 LOW published 3 months ago • updated 13 minutes ago
Spring MVC and WebFlux applications are vulnerable to stream corruption when using Server-Sent Events (SSE). This issue affects Spring Foundation: ...
Recent PRs
Bump the spring group with 12 updates

DSpace/DSpace #11054

6.2.8 → 6.2.9 Patch PR
Open 11 months ago 1 comment
DSpace
Package Details
Name: org.springframework:spring-webmvc
Ecosystem: maven
PURL Type: maven
Package URL: pkg:maven/org.springframework:spring-webmvc
JSON API: View JSON
Security Advisories

17

Active advisories
CRITICAL 1
HIGH 6
MODERATE 8
LOW 2
View All maven Advisories
Package Information
Description:

Spring Web MVC

Repository: https://github.com/spring-projects/spring-framework
Homepage: https://github.com/spring-projects/spring-framework
Latest Release: 6.2.7
about 1 year ago
Dependent Repos: 227,195
Dependent Packages: 4,621
Ranking: Top 0.003% by dependent repos Top 0.0156% by dependent pkgs
PR Status
Open 245 (47.4%)
Merged 105 (20.3%)
Closed 138 (26.7%)
PR Types
Major 194 (37.5%)
Minor 30 (5.8%)
Patch 264 (51.1%)