org.jooby:jooby@0.9.2 vulnerabilities

  • latest version

    1.6.9

  • latest non vulnerable version

  • first published

    10 years ago

  • latest version published

    3 years ago

  • licenses detected

  • package registry

  • Direct Vulnerabilities

    Known vulnerabilities in the org.jooby:jooby package. This does not include vulnerabilities belonging to this package’s dependencies.

    How to fix?

    Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

    Fix for free
    VulnerabilityVulnerable Version
    • M
    Directory Traversal

    org.jooby:jooby is a modern, performant and easy to use web framework for Java and Kotlin built on top of your favorite web server.

    Affected versions of this package are vulnerable to Directory Traversal. There are two ways this vulnerability can be leveraged:

    How to fix Directory Traversal?

    Upgrade org.jooby:jooby to version 1.6.7, 2.8.2 or higher.

    [,1.6.7)[2.0.0.M1,2.8.2)
    • M
    Cross-site Scripting (XSS)

    org.jooby:jooby is a modern, performant and easy to use web framework for Java and Kotlin built on top of your favorite web server.

    Affected versions of this package are vulnerable to Cross-site Scripting (XSS) via the default error handler.

    How to fix Cross-site Scripting (XSS)?

    Upgrade org.jooby:jooby to version 1.6.4 or higher.

    [,1.6.4)