org.hibernate.validator/hibernate-validator

Hibernate's Bean Validation (JSR-380) reference implementation.
mavenframework

Overview

Canonical component data stored by Polaris.

Version

6.0.7.Final

Package Manager

maven

Type

framework

Systems

1

Licenses
Apache-2.0
Direct Dependencies

2

Technology

Not linked

External Signals
deps.dev endoflife.date OSV.dev
Package URL

pkg:maven/org.hibernate.validator/[email protected]?type=jar

Maintenance

Derived from available component and registry data

Aging
Confidence

Low

Version Age

3151 days

Update Status

Unknown

Recent Activity

Yes

Reasons
Very old versionUnsupported versionUpdate status unknown

Lifecycle

Source: endoflife.date

Unknown
No lifecycle match available
The mapped product was not available from the third-party lifecycle source.
Open endoflife.date

Registry

Source: deps.dev

Available
Ecosystem

maven

Latest Version

9.1.3.Final

Published

12/20/2017

Recent Releases

11

Advisories

4

Open deps.dev

Known Vulnerabilities

Source: OSV.dev

4 found

GHSA-7v6m-28jr-rg84

Hibernate Validator may interpolate user-supplied input in a constraint violation message with Expression Language

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
Affected Versions
all versions before 6.2.0.CR1>= 7.0.0.Alpha1, before 7.0.0.CR1
Open advisory

GHSA-m8p2-495h-ccmh

The SafeHtml annotation in Hibernate-Validator does not properly guard against XSS attacks

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N
Affected Versions
>= 6.1.0.Alpha1, before 6.1.0.Alpha6>= 6.0.0.Alpha1, before 6.0.18.Final
Open advisory

GHSA-rmrm-75hp-phr2

Improper Input Validation in Hibernate Validator

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
Affected Versions
>= 6.1.0.Final, before 6.1.5.Finalall versions before 6.0.20.Final
Open advisory

GHSA-x83m-pf6f-pf9g

hibernate-validator Cross-site Scripting vulnerability

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Affected Versions
all versions before 6.2.0.Final
Open advisory
Open OSV.dev

Security

Source: OpenSSF Scorecard

Unavailable
No security scorecard available
This component does not have a repository reference for OpenSSF Scorecard lookup.

Dependencies

2 direct dependencies

Global view