org.infinispan:infinispan-server-rest

Licenses: Apache-2.0 | LGPL-2.0

License

Apache-2.0[6.0.0.Alpha1,);
LGPL-2.0[5.0.0.FINAL,6.0.0.Alpha1);

Direct Vulnerabilities

Known vulnerabilities in the org.infinispan:infinispan-server-rest package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • H
Missing Release of Memory after Effective Lifetime

[,14.0.31.Final)[15.0.0.CR1,15.0.6.Final)
  • H
Missing Critical Step in Authentication

[,14.0.18.Final)[15.0.0.Dev01,15.0.0.Dev04)
  • M
Access Restriction Bypass

[,14.0.26.Final)[15.0.0.CR1,15.0.0.Dev04)
  • H
Cross-site Request Forgery (CSRF)

[,12.0.0.CR1)
  • M
Improper Access Control

[,12.0.0.Dev06)

Package versions

460 VERSIONS IN TOTAL See all versions
versionpublisheddirect vulnerabilities
16.2.0.Dev0124 Mar, 2026
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
16.1.327 Mar, 2026
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
16.1.216 Mar, 2026
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
16.1.111 Mar, 2026
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
16.1.0.Dev0219 Dec, 2025
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
16.1.0.Dev019 Dec, 2025
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
16.1.04 Feb, 2026
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
16.0.927 Mar, 2026
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
16.0.89 Mar, 2026
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
16.0.727 Feb, 2026
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L