Maven Package Vulnerabilities
All 3,086 Java / JVM artifacts with known CVEs, ranked by live CVE volume — 7,979 package-to-CVE mappings with affected ranges and fixed versions. Updated continuously as new vulnerabilities publish.
- 201.org.apache.solr:solr-parent6 CVEs
- 202.org.apache.storm:storm-core6 CVEs
- 203.org.apache.streampipes:streampipes-parent6 CVEs
- 204.org.apache.struts:struts2-rest-plugin6 CVEs
- 205.org.apache.struts:struts-core6 CVEs
- 206.org.apache.tika:tika6 CVEs
- 207.org.apache.tomcat:tomcat-util6 CVEs
- 208.org.apache.zeppelin:zeppelin-server6 CVEs
- 209.org.csanchez.jenkins.plugins:kubernetes6 CVEs
- 210.org.geoserver:gs-main6 CVEs
- 211.org.glassfish.main.admingui:console-common6 CVEs
- 212.org.hibernate:hibernate-validator6 CVEs
- 213.org.igniterealtime.openfire:xmppserver6 CVEs
- 214.org.jeecgframework.boot:jeecg-boot-base-core6 CVEs
- 215.org.jenkins-ci.plugins:azure-ad6 CVEs
- 216.org.jenkins-ci.plugins:azure-vm-agents6 CVEs
- 217.org.jenkins-ci.plugins:ec2-deployment-dashboard6 CVEs
- 218.org.jenkins-ci.plugins:fortify-on-demand-uploader6 CVEs
- 219.org.jenkins-ci.plugins:ghprb6 CVEs
- 220.org.jenkins-ci.plugins:gitlab-oauth6 CVEs
- 221.org.jenkins-ci.plugins:gitlab-plugin6 CVEs
- 222.org.jenkins-ci.plugins:pipeline-maven6 CVEs
- 223.org.jenkins-ci.plugins:repository-connector6 CVEs
- 224.org.keycloak:keycloak-server-spi-private6 CVEs
- 225.org.openidentityplatform.openam:openam-oauth26 CVEs
- 226.org.pytorch:executorch-android6 CVEs
- 227.org.silverpeas.core:silverpeas-core6 CVEs
- 228.org.springframework.security:spring-security-web6 CVEs
- 229.org.wildfly:wildfly-parent6 CVEs
- 230.org.xwiki.commons:xwiki-commons-xml6 CVEs
- 231.org.xwiki.platform:xwiki-platform-flamingo-skin-resources6 CVEs
- 232.org.yamcs:yamcs-core6 CVEs
- 233.ca.uhn.hapi.fhir:org.hl7.fhir.convertors5 CVEs
- 234.ca.uhn.hapi.fhir:org.hl7.fhir.dstu25 CVEs
- 235.com.alibaba:dubbo5 CVEs
- 236.com.coravy.hudson.plugins.github:github5 CVEs
- 237.com.liferay:com.liferay.portal.search.web5 CVEs
- 238.com.mabl.integration.jenkins:mabl-integration5 CVEs
- 239.com.rapid7:jenkinsci-appspider-plugin5 CVEs
- 240.com.shopizer:shopizer5 CVEs
- 241.com.synopsys.jenkinsci:ownership5 CVEs
- 242.com.vaadin:vaadin5 CVEs
- 243.edu.stanford.nlp:stanford-corenlp5 CVEs
- 244.info.magnolia:magnolia-core5 CVEs
- 245.io.jenkins.plugins:neuvector-vulnerability-scanner5 CVEs
- 246.io.netty:netty-codec5 CVEs
- 247.io.netty:netty-codec-haproxy5 CVEs
- 248.io.netty:netty-codec-redis5 CVEs
- 249.io.projectreactor.netty:reactor-netty-http5 CVEs
- 250.org.apache.atlas:apache-atlas5 CVEs
Which Maven packages run in YOUR stack?
EchelonGraph inventories your dependencies and correlates them against live CVE intelligence — affected ranges, fixed versions, and blast radius in one graph.
Start Free Scan →