org.jboss.resteasy:resteasy-jaxrs vulnerabilities

Licenses: Apache-2.0 | LGPL-3.0

License

Apache-2.0[2.1-beta-1,);
LGPL-3.0[1.0-beta-6,2.1-beta-1);

Direct Vulnerabilities

Known vulnerabilities in the org.jboss.resteasy:resteasy-jaxrs package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • H
Cross-site Scripting (XSS)

[,3.11.1.Final)
  • H
Improper Input Validation

[,3.11.0.Final)
  • H
HTTP Request Smuggling

[3.1.0.Beta1,3.5.0.CR1)[,3.0.25.Final)
  • M
XML External Entity (XXE) Injection

[2.1-beta-1,3.0.0.Final)[2,2.3.7.Final)[2,2.3.9.Final)[2.3,2.3.8.SP3-redhat-2)[3.0.0.Final,3.0.10.Final)
  • M
XML External Entity (XXE) Injection

[1.1GA,2.3.1.GA)
  • M
Cross-site Scripting (XSS)

[0,3.0.20.Final)[3.1.0.Beta1,3.1.0.CR1)
  • H
Denial of Service (DoS)

[1.2,1.2.1.GA)
  • M
Information Exposure

[,3.1.0.CR1)
  • M
Information Exposure

[0,2.3.2.Final)

Package versions

134 VERSIONS IN TOTAL See all versions
versionpublisheddirect vulnerabilities
4.0.0.Beta56 Aug, 2018
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
4.0.0.Beta428 Jun, 2018
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
4.0.0.Beta316 Apr, 2018
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
4.0.0.Beta221 Feb, 2018
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
4.0.0.Beta111 Nov, 2017
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
3.15.6.Final28 Feb, 2023
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
3.15.3.Final30 Nov, 2021
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
3.15.2.Final23 Sep, 2021
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
3.15.1.Final4 Mar, 2021
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
3.15.0.Final18 Feb, 2021
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L