Dependency-Check is an open source tool performing a best effort analysis of 3rd party dependencies; false positives and false negatives may exist in the analysis performed by the tool. Use of the tool and the reporting provided constitutes acceptance for use in an AS IS condition, and there are NO warranties, implied or otherwise, with regard to the analysis or its use. Any use of the tool and the reporting provided is at the user’s risk. In no event shall the copyright holder or OWASP be held liable for any damages whatsoever arising out of or in connection with the use of this tool, the analysis performed, or the resulting report.

How to read the report | Suppressing false positives | Getting Help: github issues

Project: random-barcode

org.sw4j.tool:random-barcode:0.1.0-SNAPSHOT

Scan Information (show all):

Summary

Display: Showing Vulnerable Dependencies (click to show all)

DependencyVulnerability IDsPackageHighest SeverityCVE CountConfidenceEvidence Count
jackson-databind-2.10.2.jarcpe:2.3:a:fasterxml:jackson:2.10.2:*:*:*:*:*:*:*
cpe:2.3:a:fasterxml:jackson-databind:2.10.2:*:*:*:*:*:*:*
pkg:maven/com.fasterxml.jackson.core/jackson-databind@2.10.2 0Highest39
jackson-core-2.10.2.jarcpe:2.3:a:fasterxml:jackson:2.10.2:*:*:*:*:*:*:*pkg:maven/com.fasterxml.jackson.core/jackson-core@2.10.2 0Highest45
snakeyaml-1.24.jarcpe:2.3:a:snakeyaml_project:snakeyaml:1.24:*:*:*:*:*:*:*pkg:maven/org.yaml/snakeyaml@1.24 0Highest28
javase-3.4.0.jarpkg:maven/com.google.zxing/javase@3.4.0 023
core-3.4.0.jarpkg:maven/com.google.zxing/core@3.4.0 033
jcommander-1.72.jarpkg:maven/com.beust/jcommander@1.72 023
jai-imageio-core-1.4.0.jarpkg:maven/com.github.jai-imageio/jai-imageio-core@1.4.0 036
commons-cli-1.4.jarpkg:maven/commons-cli/commons-cli@1.4 040
jaxb-api-2.3.1.jarpkg:maven/javax.xml.bind/jaxb-api@2.3.1 036
javax.activation-api-1.2.0.jarpkg:maven/javax.activation/javax.activation-api@1.2.0 038
appassembler-booter-2.1.0.jarpkg:maven/org.codehaus.mojo.appassembler/appassembler-booter@2.1.0 029
appassembler-model-2.1.0.jarpkg:maven/org.codehaus.mojo.appassembler/appassembler-model@2.1.0 029
plexus-utils-3.2.0.jarcpe:2.3:a:plexus-utils_project:plexus-utils:3.2.0:*:*:*:*:*:*:*pkg:maven/org.codehaus.plexus/plexus-utils@3.2.0 0Highest27
stax-utils-20060502.jarpkg:maven/net.java.dev.stax-utils/stax-utils@20060502 013
stax-1.1.1-dev.jarpkg:maven/stax/stax@1.1.1-dev 016
junit-3.8.1.jarpkg:maven/junit/junit@3.8.1 021
stax-api-1.0.1.jarpkg:maven/stax/stax-api@1.0.1 019

Dependencies

jackson-databind-2.10.2.jar

Description:

General data-binding functionality for Jackson: works on core streaming API

License:

http://www.apache.org/licenses/LICENSE-2.0.txt
File Path: /builds/sw4j-org/random-barcode/.m2/repository/com/fasterxml/jackson/core/jackson-databind/2.10.2/jackson-databind-2.10.2.jar
MD5: 057751b4e2dd1104be8caad6e9a3e589
SHA1: 0528de95f198afafbcfb0c09d2e43b6e0ea663ec
SHA256:42c25644e35fadfbded1b7f35a8d1e70a86737f190e43aa2c56cea4b96cbda88
Referenced In Project/Scope:random-barcode:compile

Identifiers

jackson-core-2.10.2.jar

Description:

Core Jackson processing abstractions (aka Streaming API), implementation for JSON

License:

http://www.apache.org/licenses/LICENSE-2.0.txt
File Path: /builds/sw4j-org/random-barcode/.m2/repository/com/fasterxml/jackson/core/jackson-core/2.10.2/jackson-core-2.10.2.jar
MD5: 5514a46e38331f8c8262ea63bf36483e
SHA1: 73d4322a6bda684f676a2b5fe918361c4e5c7cca
SHA256:4c41f22a48f6ebb28752baeb6d25bf09ba4ff0ad8bfb82650dde448928b9da4f
Referenced In Project/Scope:random-barcode:compile

Identifiers

snakeyaml-1.24.jar

Description:

YAML 1.1 parser and emitter for Java

License:

Apache License, Version 2.0: http://www.apache.org/licenses/LICENSE-2.0.txt
File Path: /builds/sw4j-org/random-barcode/.m2/repository/org/yaml/snakeyaml/1.24/snakeyaml-1.24.jar
MD5: 694248028b74151981bbb97c1e565843
SHA1: 13a9c0d6776483c3876e3ff9384f9bb55b17001b
SHA256:d3f7f09989d5b0ce5c4791818ef937ee7663f1e359c2ef2d312f938aad0763da
Referenced In Project/Scope:random-barcode:compile

Identifiers

javase-3.4.0.jar

Description:

Java SE-specific extensions to core ZXing library

File Path: /builds/sw4j-org/random-barcode/.m2/repository/com/google/zxing/javase/3.4.0/javase-3.4.0.jar
MD5: fd431a1d523512b68c4642a2a5fed474
SHA1: 8be20100f28515037a31cc0bbe557501c0538147
SHA256:7aeef746a544effcd9e499214d9f315e69c3a835e7c81abfb703be79f859a6d7
Referenced In Project/Scope:random-barcode:compile

Identifiers

core-3.4.0.jar

Description:

Core barcode encoding/decoding library

License:

"The Apache Software License, Version 2.0";link="https://www.apache.org/licenses/LICENSE-2.0.txt"
File Path: /builds/sw4j-org/random-barcode/.m2/repository/com/google/zxing/core/3.4.0/core-3.4.0.jar
MD5: 8542da29497cf33e80d7630e62d58a81
SHA1: 5264296c46634347890ec9250bc65f14b7362bf8
SHA256:65004806a669234c698fbe0755258100375fb01fe93b538455f3903713d4a50d
Referenced In Project/Scope:random-barcode:compile

Identifiers

jcommander-1.72.jar

Description:

Command line parsing

License:

Apache 2.0: http://www.apache.org/licenses/LICENSE-2.0
File Path: /builds/sw4j-org/random-barcode/.m2/repository/com/beust/jcommander/1.72/jcommander-1.72.jar
MD5: 9fde6bc0ba1032eceb7267fd1ad1657b
SHA1: 6375e521c1e11d6563d4f25a07ce124ccf8cd171
SHA256:e0de160b129b2414087e01fe845609cd55caec6820cfd4d0c90fabcc7bdb8c1e
Referenced In Project/Scope:random-barcode:compile

Identifiers

jai-imageio-core-1.4.0.jar

Description:

    Java Advanced Imaging Image I/O Tools API core, but without the classes 
    involved with javax.media.jai dependencies, JPEG2000 or 
    codecLibJIIO, meaning that this library can be distributed under the 
    modified BSD license and should be GPL compatible.
  

License:

BSD 3-clause License w/nuclear disclaimer: LICENSE.txt
File Path: /builds/sw4j-org/random-barcode/.m2/repository/com/github/jai-imageio/jai-imageio-core/1.4.0/jai-imageio-core-1.4.0.jar
MD5: 6978d733bfb55c0a82639f724fe5f3bb
SHA1: fb6d79b929556362a241b2f65a04e538062f0077
SHA256:8ad3c68e9efffb10ac87ff8bc589adf64b04a729c5194c079efd0643607fd72a
Referenced In Project/Scope:random-barcode:runtime

Identifiers

commons-cli-1.4.jar

Description:

    Apache Commons CLI provides a simple API for presenting, processing and validating a command line interface.
  

License:

https://www.apache.org/licenses/LICENSE-2.0.txt
File Path: /builds/sw4j-org/random-barcode/.m2/repository/commons-cli/commons-cli/1.4/commons-cli-1.4.jar
MD5: c966d7e03507c834d5b09b848560174e
SHA1: c51c00206bb913cd8612b24abd9fa98ae89719b1
SHA256:fd3c7c9545a9cdb2051d1f9155c4f76b1e4ac5a57304404a6eedb578ffba7328
Referenced In Project/Scope:random-barcode:compile

Identifiers

jaxb-api-2.3.1.jar

Description:

JAXB (JSR 222) API

License:

https://oss.oracle.com/licenses/CDDL+GPL-1.1, https://oss.oracle.com/licenses/CDDL+GPL-1.1
File Path: /builds/sw4j-org/random-barcode/.m2/repository/javax/xml/bind/jaxb-api/2.3.1/jaxb-api-2.3.1.jar
MD5: bcf270d320f645ad19f5edb60091e87f
SHA1: 8531ad5ac454cc2deb9d4d32c40c4d7451939b5d
SHA256:88b955a0df57880a26a74708bc34f74dcaf8ebf4e78843a28b50eae945732b06
Referenced In Project/Scope:random-barcode:compile

Identifiers

javax.activation-api-1.2.0.jar

Description:

JavaBeans Activation Framework API jar

License:

https://github.com/javaee/activation/blob/master/LICENSE.txt
File Path: /builds/sw4j-org/random-barcode/.m2/repository/javax/activation/javax.activation-api/1.2.0/javax.activation-api-1.2.0.jar
MD5: 5e50e56bcf4a3ef3bc758f69f7643c3b
SHA1: 85262acf3ca9816f9537ca47d5adeabaead7cb16
SHA256:43fdef0b5b6ceb31b0424b208b930c74ab58fac2ceeb7b3f6fd3aeb8b5ca4393
Referenced In Project/Scope:random-barcode:compile

Identifiers

appassembler-booter-2.1.0.jar

File Path: /builds/sw4j-org/random-barcode/.m2/repository/org/codehaus/mojo/appassembler/appassembler-booter/2.1.0/appassembler-booter-2.1.0.jar
MD5: a50bd3b93d4bc916e4173bc10e3c8872
SHA1: 62087a05eb37f909ba356193346408469e0fe914
SHA256:48ddb7d716ebef0577eb9f6110a1e2178695509fd139367ea4dd756807e28019
Referenced In Project/Scope:random-barcode:compile

Identifiers

appassembler-model-2.1.0.jar

File Path: /builds/sw4j-org/random-barcode/.m2/repository/org/codehaus/mojo/appassembler/appassembler-model/2.1.0/appassembler-model-2.1.0.jar
MD5: 5c6602981d0cb410aab72c443932e80c
SHA1: eae3ed501b21e5e306332b7ac6ffbc61ecf7ef50
SHA256:6a772e02707b867b23475e7e939017503f12e4d23bc021e8edc461512e5ff3e9
Referenced In Project/Scope:random-barcode:compile

Identifiers

plexus-utils-3.2.0.jar

Description:

A collection of various utility classes to ease working with strings, files, command lines, XML and
    more.
  

File Path: /builds/sw4j-org/random-barcode/.m2/repository/org/codehaus/plexus/plexus-utils/3.2.0/plexus-utils-3.2.0.jar
MD5: 00766f1f57572a8cd54992804733aa0d
SHA1: d69e11d69dfce0c964587ab97b559187b3c27a6f
SHA256:0b91029df4c216b8824bd95361f52e260e86ccf93a2619fd88c8f15d23dcb30d
Referenced In Project/Scope:random-barcode:compile

Identifiers

stax-utils-20060502.jar

License:

BSD: https://stax-utils.dev.java.net/source/browse/*checkout*/stax-utils/LICENSE
File Path: /builds/sw4j-org/random-barcode/.m2/repository/net/java/dev/stax-utils/stax-utils/20060502/stax-utils-20060502.jar
MD5: 6af71b7f47537a53c5adf70423a8fbfc
SHA1: 66fad5029732305ab7863c140eafd9de4972dd34
SHA256:ecafb82b24e0960a2ca360a91101c49d59ecd6b597a05e6150e0d2697b3547af
Referenced In Project/Scope:random-barcode:compile

Identifiers

stax-1.1.1-dev.jar

Description:

StAX is the reference implementation of the StAX API

File Path: /builds/sw4j-org/random-barcode/.m2/repository/stax/stax/1.1.1-dev/stax-1.1.1-dev.jar
MD5: 587a06aa4afd368cc6e692d388e933ca
SHA1: 56a9316906196fa8a35d81b2afcbe0fe072aeb23
SHA256:3b01f2d35ab7eecb4442bae69fb09879ecee1ba44d1e925c8f77557c622f50d0
Referenced In Project/Scope:random-barcode:runtime

Identifiers

junit-3.8.1.jar

Description:

    JUnit is a regression testing framework written by Erich Gamma and Kent Beck. It is used by the developer who implements unit tests in Java.
  

License:

Common Public License Version 1.0: http://www.opensource.org/licenses/cpl1.0.txt
File Path: /builds/sw4j-org/random-barcode/.m2/repository/junit/junit/3.8.1/junit-3.8.1.jar
MD5: 1f40fb782a4f2cf78f161d32670f7a3a
SHA1: 99129f16442844f6a4a11ae22fbbee40b14d774f
SHA256:b58e459509e190bed737f3592bc1950485322846cf10e78ded1d065153012d70
Referenced In Project/Scope:random-barcode:runtime

Identifiers

stax-api-1.0.1.jar

Description:

StAX API is the standard java XML processing API defined by JSR-173

License:

The Apache Software License, Version 2.0: http://www.apache.org/licenses/LICENSE-2.0.txt
File Path: /builds/sw4j-org/random-barcode/.m2/repository/stax/stax-api/1.0.1/stax-api-1.0.1.jar
MD5: 7d436a53c64490bee564c576babb36b4
SHA1: 49c100caf72d658aca8e58bd74a4ba90fa2b0d70
SHA256:d1968436fc216c901fb9b82c7e878b50fd1d30091676da95b2edd3a9c0ccf92e
Referenced In Project/Scope:random-barcode:compile

Identifiers



This report contains data retrieved from the National Vulnerability Database.
This report may contain data retrieved from the NPM Public Advisories.
This report may contain data retrieved from RetireJS.
This report may contain data retrieved from the Sonatype OSS Index.