com.github.codingandcoding:servlet-api@3.2.0 vulnerabilities

  • latest version

    3.2.0

  • first published

    4 years ago

  • latest version published

    4 years ago

  • licenses detected

  • package registry

  • Direct Vulnerabilities

    Known vulnerabilities in the com.github.codingandcoding:servlet-api package. This does not include vulnerabilities belonging to this package’s dependencies.

    How to fix?

    Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

    Fix for free
    VulnerabilityVulnerable Version
    • C
    Malicious Package

    com.github.codingandcoding:servlet-api is a malicious package.

    Affected versions of this package are vulnerable to Malicious Package. The malicious code is present in the doGet() method of the HttpServlet.class file within the JAR. The C2 server IP address and port is masked in a base64-encoded string.

    How to fix Malicious Package?

    Avoid using com.github.codingandcoding:servlet-api altogether.

    [0,)