Dependency-Check is an open source tool performing a best effort analysis of 3rd party dependencies; false positives and false negatives may exist in the analysis performed by the tool. Use of the tool and the reporting provided constitutes acceptance for use in an AS IS condition, and there are NO warranties, implied or otherwise, with regard to the analysis or its use. Any use of the tool and the reporting provided is at the user’s risk. In no event shall the copyright holder or OWASP be held liable for any damages whatsoever arising out of or in connection with the use of this tool, the analysis performed, or the resulting report.

How to read the report | Suppressing false positives | Getting Help: github issues

Project: com.github.pmonks/urlocal 1.0.79-SNAPSHOT

Scan Information (show all):

Summary

Summary of Vulnerable Dependencies (click to show all)

Dependency Vulnerability IDs Package Highest Severity CVE Count Confidence Evidence Count
clojure-1.12.4.jar cpe:2.3:a:clojure:clojure:1.12.4:*:*:*:*:*:*:* pkg:maven/org.clojure/clojure@1.12.4   0 Highest 22
core.specs.alpha-0.4.74.jar cpe:2.3:a:alex_project:alex:0.4.74:*:*:*:*:*:*:* pkg:maven/org.clojure/core.specs.alpha@0.4.74   0 Low 17
spec.alpha-0.5.238.jar pkg:maven/org.clojure/spec.alpha@0.5.238   0 26
tools.logging-1.3.1.jar cpe:2.3:a:alex_project:alex:1.3.1:*:*:*:*:*:*:* pkg:maven/org.clojure/tools.logging@1.3.1   0 Low 17

Dependencies (vulnerable)

clojure-1.12.4.jar

Description:

Clojure core environment and runtime library.

License:

Eclipse Public License 1.0: http://opensource.org/licenses/eclipse-1.0.php
File Path: /home/runner/.m2/repository/org/clojure/clojure/1.12.4/clojure-1.12.4.jar
MD5: c9e27ed601e1c83392c78fd9f3e7ecec
SHA1: 580cd548600f63b597efea7e94c3e55be2d12537
SHA256:4b81e9ba6da38c45d9cc58023c674062b8c9f0714f33ff00ded22e6a949da177

Identifiers

core.specs.alpha-0.4.74.jar

Description:

Specs for clojure.core

License:

Eclipse Public License 1.0: https://opensource.org/license/epl-1-0/
File Path: /home/runner/.m2/repository/org/clojure/core.specs.alpha/0.4.74/core.specs.alpha-0.4.74.jar
MD5: ebd37b9a3c39e6b769fc1463737cb8d4
SHA1: d56a8d4c666ff8140e6d0a62d41263134be39254
SHA256:eb73ac08cf49ba840c88ba67beef11336ca554333d9408808d78946e0feb9ddb

Identifiers

  • pkg:maven/org.clojure/core.specs.alpha@0.4.74   (Confidence:High)
  • cpe:2.3:a:alex_project:alex:0.4.74:*:*:*:*:*:*:*   (Confidence:Low)   

spec.alpha-0.5.238.jar

Description:

Specification of data and functions

License:

Eclipse Public License 1.0: https://opensource.org/license/epl-1-0/
File Path: /home/runner/.m2/repository/org/clojure/spec.alpha/0.5.238/spec.alpha-0.5.238.jar
MD5: 9f5ea5239dc04d6a8115add1e4f5f23a
SHA1: 4eb5dea521c4e6e1f68c2c47517f14a922003e60
SHA256:94cd99b6ea639641f37af4860a643b6ed399ee5a8be5d717cff0b663c8d75077

Identifiers

  • pkg:maven/org.clojure/spec.alpha@0.5.238   (Confidence:High)

tools.logging-1.3.1.jar

Description:

Clojure logging API.

File Path: /home/runner/.m2/repository/org/clojure/tools.logging/1.3.1/tools.logging-1.3.1.jar
MD5: 0cacd8c68d9b18b60252b5e75a950b24
SHA1: f085212fd30ba7fa5031cb5fdbc2467210426ed6
SHA256:13fb97ea2472056ea0660d4f8e88b4f66486c2cfff380b82859ab3cd33592935

Identifiers

  • pkg:maven/org.clojure/tools.logging@1.3.1   (Confidence:High)
  • cpe:2.3:a:alex_project:alex:1.3.1:*:*:*:*:*:*:*   (Confidence:Low)   


This report contains data retrieved from the National Vulnerability Database.
This report may contain data retrieved from the CISA Known Exploited Vulnerability Catalog.
This report may contain data retrieved from the Github Advisory Database (via NPM Audit API).
This report may contain data retrieved from RetireJS.
This report may contain data retrieved from the Sonatype OSS Index.