Dependency-Check is an open source tool performing a best effort analysis of 3rd party dependencies;
false positives and false negatives may exist in the analysis performed by the tool. Use of the tool and
the reporting provided constitutes acceptance for use in an AS IS condition, and there are NO warranties,
implied or otherwise, with regard to the analysis or its use. Any use of the tool and the reporting provided
is at the user’s risk. In no event shall the copyright holder or OWASP be held liable for any damages whatsoever
arising out of or in connection with the use of this tool, the analysis performed, or the resulting report.
Scan Information (
show all):
- dependency-check version: 9.0.10
- Report Generated On: Fri, 9 May 2025 00:17:47 GMT
- Dependencies Scanned: 8 (8 unique)
- Vulnerable Dependencies: 0
- Vulnerabilities Found: 0
- Vulnerabilities Suppressed: 0
- ...
- NVD API Last Checked: 2024-06-28T05:24:05Z
- NVD API Last Modified: 2024-06-27T23:15:50Z
Summary
Display:
Showing Vulnerable Dependencies (click to show all) appassembler-booter-2.1.0.jar
File Path: /builds/sw4j-org/memory-error/.m2/repository/org/codehaus/mojo/appassembler/appassembler-booter/2.1.0/appassembler-booter-2.1.0.jar
MD5: a50bd3b93d4bc916e4173bc10e3c8872
SHA1: 62087a05eb37f909ba356193346408469e0fe914
SHA256:48ddb7d716ebef0577eb9f6110a1e2178695509fd139367ea4dd756807e28019
Referenced In Project/Scope: Sample Memory Errors:compile
appassembler-booter-2.1.0.jar is in the transitive dependency tree of the listed items.Included by: pkg:maven/org.sw4j.sample/memory@0.1.0-SNAPSHOT
Evidence
Type | Source | Name | Value | Confidence |
---|
Vendor | file | name | appassembler-booter | High |
Vendor | jar | package name | appassembler | Highest |
Vendor | jar | package name | appassembler | Low |
Vendor | jar | package name | booter | Highest |
Vendor | jar | package name | codehaus | Highest |
Vendor | jar | package name | codehaus | Low |
Vendor | jar | package name | mojo | Highest |
Vendor | jar | package name | mojo | Low |
Vendor | pom | artifactid | appassembler-booter | Highest |
Vendor | pom | artifactid | appassembler-booter | Low |
Vendor | pom | groupid | org.codehaus.mojo.appassembler | Highest |
Vendor | pom | name | Appassembler :: Generic Bootstrapper | High |
Vendor | pom | parent-artifactid | appassembler | Low |
Product | file | name | appassembler-booter | High |
Product | jar | package name | appassembler | Highest |
Product | jar | package name | appassembler | Low |
Product | jar | package name | booter | Highest |
Product | jar | package name | booter | Low |
Product | jar | package name | codehaus | Highest |
Product | jar | package name | mojo | Highest |
Product | jar | package name | mojo | Low |
Product | pom | artifactid | appassembler-booter | Highest |
Product | pom | groupid | org.codehaus.mojo.appassembler | Highest |
Product | pom | name | Appassembler :: Generic Bootstrapper | High |
Product | pom | parent-artifactid | appassembler | Medium |
Version | file | version | 2.1.0 | High |
Version | pom | version | 2.1.0 | Highest |
appassembler-model-2.1.0.jar
File Path: /builds/sw4j-org/memory-error/.m2/repository/org/codehaus/mojo/appassembler/appassembler-model/2.1.0/appassembler-model-2.1.0.jar
MD5: 5c6602981d0cb410aab72c443932e80c
SHA1: eae3ed501b21e5e306332b7ac6ffbc61ecf7ef50
SHA256:6a772e02707b867b23475e7e939017503f12e4d23bc021e8edc461512e5ff3e9
Referenced In Project/Scope: Sample Memory Errors:compile
appassembler-model-2.1.0.jar is in the transitive dependency tree of the listed items.Included by: pkg:maven/org.codehaus.mojo.appassembler/appassembler-booter@2.1.0
Evidence
Type | Source | Name | Value | Confidence |
---|
Vendor | file | name | appassembler-model | High |
Vendor | jar | package name | appassembler | Highest |
Vendor | jar | package name | appassembler | Low |
Vendor | jar | package name | codehaus | Highest |
Vendor | jar | package name | codehaus | Low |
Vendor | jar | package name | model | Highest |
Vendor | jar | package name | mojo | Highest |
Vendor | jar | package name | mojo | Low |
Vendor | pom | artifactid | appassembler-model | Highest |
Vendor | pom | artifactid | appassembler-model | Low |
Vendor | pom | groupid | org.codehaus.mojo.appassembler | Highest |
Vendor | pom | name | Appassembler :: Model | High |
Vendor | pom | parent-artifactid | appassembler | Low |
Product | file | name | appassembler-model | High |
Product | jar | package name | appassembler | Highest |
Product | jar | package name | appassembler | Low |
Product | jar | package name | codehaus | Highest |
Product | jar | package name | model | Highest |
Product | jar | package name | model | Low |
Product | jar | package name | mojo | Highest |
Product | jar | package name | mojo | Low |
Product | pom | artifactid | appassembler-model | Highest |
Product | pom | groupid | org.codehaus.mojo.appassembler | Highest |
Product | pom | name | Appassembler :: Model | High |
Product | pom | parent-artifactid | appassembler | Medium |
Version | file | version | 2.1.0 | High |
Version | pom | version | 2.1.0 | Highest |
commons-cli-1.6.0.jar
Description:
Apache Commons CLI provides a simple API for presenting, processing and validating a Command Line Interface.
License:
https://www.apache.org/licenses/LICENSE-2.0.txt
File Path: /builds/sw4j-org/memory-error/.m2/repository/commons-cli/commons-cli/1.6.0/commons-cli-1.6.0.jar
MD5: 15db12c583408c2af3ef7669b0204290
SHA1: 38166a23afb5bd5520f739b87b3be87f7f0fb96d
SHA256:69e1237059acd56f0f8654dcde09d8a1412eee82918bef5564d51f8fb275711b
Referenced In Project/Scope: Sample Memory Errors:compile
commons-cli-1.6.0.jar is in the transitive dependency tree of the listed items.Included by: pkg:maven/org.sw4j.sample/memory@0.1.0-SNAPSHOT
Evidence
Type | Source | Name | Value | Confidence |
---|
Vendor | file | name | commons-cli | High |
Vendor | jar | package name | apache | Highest |
Vendor | jar | package name | cli | Highest |
Vendor | jar | package name | commons | Highest |
Vendor | Manifest | build-jdk-spec | 21 | Low |
Vendor | Manifest | bundle-docurl | https://commons.apache.org/proper/commons-cli/ | Low |
Vendor | Manifest | bundle-symbolicname | org.apache.commons.cli | Medium |
Vendor | Manifest | Implementation-Vendor | The Apache Software Foundation | High |
Vendor | Manifest | Implementation-Vendor-Id | org.apache | Medium |
Vendor | Manifest | multi-release | true | Low |
Vendor | Manifest | specification-vendor | The Apache Software Foundation | Low |
Vendor | pom | artifactid | commons-cli | Highest |
Vendor | pom | artifactid | commons-cli | Low |
Vendor | pom | developer email | bob@werken.com | Low |
Vendor | pom | developer email | chtompki@apache.org | Low |
Vendor | pom | developer email | ebourg@apache.org | Low |
Vendor | pom | developer email | ggregory at apache.org | Low |
Vendor | pom | developer email | jbjk@mac.com | Low |
Vendor | pom | developer email | jstrachan@apache.org | Low |
Vendor | pom | developer email | roxspring@imapmail.org | Low |
Vendor | pom | developer email | tn@apache.org | Low |
Vendor | pom | developer id | bob | Medium |
Vendor | pom | developer id | chtompki | Medium |
Vendor | pom | developer id | ebourg | Medium |
Vendor | pom | developer id | ggregory | Medium |
Vendor | pom | developer id | jkeyes | Medium |
Vendor | pom | developer id | jstrachan | Medium |
Vendor | pom | developer id | roxspring | Medium |
Vendor | pom | developer id | tn | Medium |
Vendor | pom | developer name | Bob McWhirter | Medium |
Vendor | pom | developer name | Emmanuel Bourg | Medium |
Vendor | pom | developer name | Gary Gregory | Medium |
Vendor | pom | developer name | James Strachan | Medium |
Vendor | pom | developer name | John Keyes | Medium |
Vendor | pom | developer name | Rob Oxspring | Medium |
Vendor | pom | developer name | Rob Tompkins | Medium |
Vendor | pom | developer name | Thomas Neidhart | Medium |
Vendor | pom | developer org | Ariane Software | Medium |
Vendor | pom | developer org | Indigo Stone | Medium |
Vendor | pom | developer org | integral Source | Medium |
Vendor | pom | developer org | SpiritSoft, Inc. | Medium |
Vendor | pom | developer org | The Apache Software Foundation | Medium |
Vendor | pom | developer org | Werken | Medium |
Vendor | pom | developer org URL | https://www.apache.org/ | Medium |
Vendor | pom | groupid | commons-cli | Highest |
Vendor | pom | name | Apache Commons CLI | High |
Vendor | pom | parent-artifactid | commons-parent | Low |
Vendor | pom | parent-groupid | org.apache.commons | Medium |
Vendor | pom | url | https://commons.apache.org/proper/commons-cli/ | Highest |
Product | file | name | commons-cli | High |
Product | jar | package name | apache | Highest |
Product | jar | package name | cli | Highest |
Product | jar | package name | commons | Highest |
Product | Manifest | build-jdk-spec | 21 | Low |
Product | Manifest | bundle-docurl | https://commons.apache.org/proper/commons-cli/ | Low |
Product | Manifest | Bundle-Name | Apache Commons CLI | Medium |
Product | Manifest | bundle-symbolicname | org.apache.commons.cli | Medium |
Product | Manifest | Implementation-Title | Apache Commons CLI | High |
Product | Manifest | multi-release | true | Low |
Product | Manifest | specification-title | Apache Commons CLI | Medium |
Product | pom | artifactid | commons-cli | Highest |
Product | pom | developer email | bob@werken.com | Low |
Product | pom | developer email | chtompki@apache.org | Low |
Product | pom | developer email | ebourg@apache.org | Low |
Product | pom | developer email | ggregory at apache.org | Low |
Product | pom | developer email | jbjk@mac.com | Low |
Product | pom | developer email | jstrachan@apache.org | Low |
Product | pom | developer email | roxspring@imapmail.org | Low |
Product | pom | developer email | tn@apache.org | Low |
Product | pom | developer id | bob | Low |
Product | pom | developer id | chtompki | Low |
Product | pom | developer id | ebourg | Low |
Product | pom | developer id | ggregory | Low |
Product | pom | developer id | jkeyes | Low |
Product | pom | developer id | jstrachan | Low |
Product | pom | developer id | roxspring | Low |
Product | pom | developer id | tn | Low |
Product | pom | developer name | Bob McWhirter | Low |
Product | pom | developer name | Emmanuel Bourg | Low |
Product | pom | developer name | Gary Gregory | Low |
Product | pom | developer name | James Strachan | Low |
Product | pom | developer name | John Keyes | Low |
Product | pom | developer name | Rob Oxspring | Low |
Product | pom | developer name | Rob Tompkins | Low |
Product | pom | developer name | Thomas Neidhart | Low |
Product | pom | developer org | Ariane Software | Low |
Product | pom | developer org | Indigo Stone | Low |
Product | pom | developer org | integral Source | Low |
Product | pom | developer org | SpiritSoft, Inc. | Low |
Product | pom | developer org | The Apache Software Foundation | Low |
Product | pom | developer org | Werken | Low |
Product | pom | developer org URL | https://www.apache.org/ | Low |
Product | pom | groupid | commons-cli | Highest |
Product | pom | name | Apache Commons CLI | High |
Product | pom | parent-artifactid | commons-parent | Medium |
Product | pom | parent-groupid | org.apache.commons | Medium |
Product | pom | url | https://commons.apache.org/proper/commons-cli/ | Medium |
Version | file | version | 1.6.0 | High |
Version | Manifest | Bundle-Version | 1.6.0 | High |
Version | Manifest | Implementation-Version | 1.6.0 | High |
Version | pom | parent-version | 1.6.0 | Low |
Version | pom | version | 1.6.0 | Highest |
junit-3.8.1.jar
Description:
JUnit is a regression testing framework written by Erich Gamma and Kent Beck. It is used by the developer who implements unit tests in Java.
License:
Common Public License Version 1.0: http://www.opensource.org/licenses/cpl1.0.txt
File Path: /builds/sw4j-org/memory-error/.m2/repository/junit/junit/3.8.1/junit-3.8.1.jar
MD5: 1f40fb782a4f2cf78f161d32670f7a3a
SHA1: 99129f16442844f6a4a11ae22fbbee40b14d774f
SHA256:b58e459509e190bed737f3592bc1950485322846cf10e78ded1d065153012d70
Referenced In Project/Scope: Sample Memory Errors:runtime
junit-3.8.1.jar is in the transitive dependency tree of the listed items.Included by: pkg:maven/org.codehaus.mojo.appassembler/appassembler-booter@2.1.0
Evidence
Type | Source | Name | Value | Confidence |
---|
Vendor | file | name | junit | High |
Vendor | jar | package name | framework | Highest |
Vendor | jar | package name | junit | Highest |
Vendor | jar | package name | junit | Low |
Vendor | pom | artifactid | junit | Highest |
Vendor | pom | artifactid | junit | Low |
Vendor | pom | groupid | junit | Highest |
Vendor | pom | name | JUnit | High |
Vendor | pom | organization name | JUnit | High |
Vendor | pom | organization url | http://www.junit.org | Medium |
Vendor | pom | url | http://junit.org | Highest |
Product | file | name | junit | High |
Product | jar | package name | framework | Highest |
Product | jar | package name | junit | Highest |
Product | pom | artifactid | junit | Highest |
Product | pom | groupid | junit | Highest |
Product | pom | name | JUnit | High |
Product | pom | organization name | JUnit | Low |
Product | pom | organization url | http://www.junit.org | Low |
Product | pom | url | http://junit.org | Medium |
Version | file | version | 3.8.1 | High |
Version | pom | version | 3.8.1 | Highest |
plexus-utils-3.2.0.jar
Description:
A collection of various utility classes to ease working with strings, files, command lines, XML and
more.
File Path: /builds/sw4j-org/memory-error/.m2/repository/org/codehaus/plexus/plexus-utils/3.2.0/plexus-utils-3.2.0.jar
MD5: 00766f1f57572a8cd54992804733aa0d
SHA1: d69e11d69dfce0c964587ab97b559187b3c27a6f
SHA256:0b91029df4c216b8824bd95361f52e260e86ccf93a2619fd88c8f15d23dcb30d
Referenced In Project/Scope: Sample Memory Errors:compile
plexus-utils-3.2.0.jar is in the transitive dependency tree of the listed items.Included by: pkg:maven/org.codehaus.mojo.appassembler/appassembler-booter@2.1.0
Evidence
Type | Source | Name | Value | Confidence |
---|
Vendor | file | name | plexus-utils | High |
Vendor | jar | package name | codehaus | Highest |
Vendor | jar | package name | codehaus | Low |
Vendor | jar | package name | plexus | Highest |
Vendor | jar | package name | plexus | Low |
Vendor | jar | package name | util | Low |
Vendor | jar | package name | xml | Highest |
Vendor | pom | artifactid | plexus-utils | Highest |
Vendor | pom | artifactid | plexus-utils | Low |
Vendor | pom | groupid | org.codehaus.plexus | Highest |
Vendor | pom | name | Plexus Common Utilities | High |
Vendor | pom | parent-artifactid | plexus | Low |
Product | file | name | plexus-utils | High |
Product | jar | package name | codehaus | Highest |
Product | jar | package name | plexus | Highest |
Product | jar | package name | plexus | Low |
Product | jar | package name | util | Low |
Product | jar | package name | xml | Highest |
Product | pom | artifactid | plexus-utils | Highest |
Product | pom | groupid | org.codehaus.plexus | Highest |
Product | pom | name | Plexus Common Utilities | High |
Product | pom | parent-artifactid | plexus | Medium |
Version | file | version | 3.2.0 | High |
Version | pom | parent-version | 3.2.0 | Low |
Version | pom | version | 3.2.0 | Highest |
stax-1.1.1-dev.jar
Description:
StAX is the reference implementation of the StAX API
File Path: /builds/sw4j-org/memory-error/.m2/repository/stax/stax/1.1.1-dev/stax-1.1.1-dev.jar
MD5: 587a06aa4afd368cc6e692d388e933ca
SHA1: 56a9316906196fa8a35d81b2afcbe0fe072aeb23
SHA256:3b01f2d35ab7eecb4442bae69fb09879ecee1ba44d1e925c8f77557c622f50d0
Referenced In Project/Scope: Sample Memory Errors:runtime
stax-1.1.1-dev.jar is in the transitive dependency tree of the listed items.Included by: pkg:maven/org.codehaus.mojo.appassembler/appassembler-booter@2.1.0
Evidence
Type | Source | Name | Value | Confidence |
---|
Vendor | file | name | stax | High |
Vendor | jar | package name | bea | Highest |
Vendor | Manifest | Implementation-Vendor | BEA | High |
Vendor | Manifest | specification-vendor | JCP-173 | Low |
Vendor | pom | artifactid | stax | Highest |
Vendor | pom | artifactid | stax | Low |
Vendor | pom | developer email | jstrachan@protique.com | Low |
Vendor | pom | developer id | chris | Medium |
Vendor | pom | developer id | jstrachan | Medium |
Vendor | pom | developer name | Chris Fry | Medium |
Vendor | pom | developer name | James Strachan | Medium |
Vendor | pom | developer org | BEA | Medium |
Vendor | pom | developer org | Protique | Medium |
Vendor | pom | groupid | stax | Highest |
Vendor | pom | name | StAX | High |
Vendor | pom | url | http://stax.codehaus.org/ | Highest |
Product | file | name | stax | High |
Product | jar | package name | bea | Highest |
Product | Manifest | Implementation-Title | StAX reference implementation | High |
Product | Manifest | specification-title | StAX | Medium |
Product | pom | artifactid | stax | Highest |
Product | pom | developer email | jstrachan@protique.com | Low |
Product | pom | developer id | chris | Low |
Product | pom | developer id | jstrachan | Low |
Product | pom | developer name | Chris Fry | Low |
Product | pom | developer name | James Strachan | Low |
Product | pom | developer org | BEA | Low |
Product | pom | developer org | Protique | Low |
Product | pom | groupid | stax | Highest |
Product | pom | name | StAX | High |
Product | pom | url | http://stax.codehaus.org/ | Medium |
Version | pom | version | 1.1.1-dev | Highest |
stax-api-1.0.1.jar
Description:
StAX API is the standard java XML processing API defined by JSR-173
License:
The Apache Software License, Version 2.0: http://www.apache.org/licenses/LICENSE-2.0.txt
File Path: /builds/sw4j-org/memory-error/.m2/repository/stax/stax-api/1.0.1/stax-api-1.0.1.jar
MD5: 7d436a53c64490bee564c576babb36b4
SHA1: 49c100caf72d658aca8e58bd74a4ba90fa2b0d70
SHA256:d1968436fc216c901fb9b82c7e878b50fd1d30091676da95b2edd3a9c0ccf92e
Referenced In Project/Scope: Sample Memory Errors:compile
stax-api-1.0.1.jar is in the transitive dependency tree of the listed items.Included by: pkg:maven/org.codehaus.mojo.appassembler/appassembler-booter@2.1.0
Evidence
Type | Source | Name | Value | Confidence |
---|
Vendor | file | name | stax-api | High |
Vendor | jar | package name | xml | Highest |
Vendor | Manifest | Implementation-Vendor | JCP | High |
Vendor | Manifest | specification-vendor | JCP-173 | Low |
Vendor | pom | artifactid | stax-api | Highest |
Vendor | pom | artifactid | stax-api | Low |
Vendor | pom | developer id | aslom | Medium |
Vendor | pom | developer id | chris | Medium |
Vendor | pom | developer name | Aleksander Slominski | Medium |
Vendor | pom | developer name | Chris Fry | Medium |
Vendor | pom | developer org | Indiana University | Medium |
Vendor | pom | groupid | stax | Highest |
Vendor | pom | name | StAX API | High |
Vendor | pom | url | http://stax.codehaus.org/ | Highest |
Product | file | name | stax-api | High |
Product | jar | package name | xml | Highest |
Product | Manifest | Implementation-Title | StAX 1.0 API | High |
Product | Manifest | specification-title | StAX | Medium |
Product | pom | artifactid | stax-api | Highest |
Product | pom | developer id | aslom | Low |
Product | pom | developer id | chris | Low |
Product | pom | developer name | Aleksander Slominski | Low |
Product | pom | developer name | Chris Fry | Low |
Product | pom | developer org | Indiana University | Low |
Product | pom | groupid | stax | Highest |
Product | pom | name | StAX API | High |
Product | pom | url | http://stax.codehaus.org/ | Medium |
Version | file | version | 1.0.1 | High |
Version | Manifest | Implementation-Version | 1.0.1 | High |
Version | pom | version | 1.0.1 | Highest |
stax-utils-20060502.jar
License:
BSD: https://stax-utils.dev.java.net/source/browse/*checkout*/stax-utils/LICENSE
File Path: /builds/sw4j-org/memory-error/.m2/repository/net/java/dev/stax-utils/stax-utils/20060502/stax-utils-20060502.jar
MD5: 6af71b7f47537a53c5adf70423a8fbfc
SHA1: 66fad5029732305ab7863c140eafd9de4972dd34
SHA256:ecafb82b24e0960a2ca360a91101c49d59ecd6b597a05e6150e0d2697b3547af
Referenced In Project/Scope: Sample Memory Errors:compile
stax-utils-20060502.jar is in the transitive dependency tree of the listed items.Included by: pkg:maven/org.codehaus.mojo.appassembler/appassembler-booter@2.1.0
Evidence
Type | Source | Name | Value | Confidence |
---|
Vendor | file | name | stax-utils-20060502 | High |
Vendor | jar | package name | javanet | Low |
Vendor | jar | package name | staxutils | Low |
Vendor | pom | artifactid | stax-utils | Highest |
Vendor | pom | artifactid | stax-utils | Low |
Vendor | pom | groupid | net.java.dev.stax-utils | Highest |
Vendor | pom | url | http://stax-utils.dev.java.net/ | Highest |
Product | file | name | stax-utils-20060502 | High |
Product | jar | package name | staxutils | Low |
Product | pom | artifactid | stax-utils | Highest |
Product | pom | groupid | net.java.dev.stax-utils | Highest |
Product | pom | url | http://stax-utils.dev.java.net/ | Medium |
Version | file | version | 20060502 | Medium |
Version | pom | version | 20060502 | Highest |