Dependency-Check is an open source tool performing a best effort analysis of 3rd party dependencies; false positives and false negatives may exist in the analysis performed by the tool. Use of the tool and the reporting provided constitutes acceptance for use in an AS IS condition, and there are NO warranties, implied or otherwise, with regard to the analysis or its use. Any use of the tool and the reporting provided is at the user’s risk. In no event shall the copyright holder or OWASP be held liable for any damages whatsoever arising out of or in connection with the use of this tool, the analysis performed, or the resulting report.

How to read the report | Suppressing false positives | Getting Help: google group | github issues

Project: AptSpringModel

Scan Information (show all):

Display: Showing Vulnerable Dependencies (click to show all)

Dependency CPE GAV Highest Severity CVE Count CPE Confidence Evidence Count
gson-2.8.1.jar com.google.code.gson:gson:2.8.1    0 29
javapoet-1.9.0.jar com.squareup:javapoet:1.9.0    0 25
jgrapht-core-1.0.1.jar org.jgrapht:jgrapht-core:1.0.1    0 25
jgrapht-ext-1.0.1.jar org.jgrapht:jgrapht-ext:1.0.1    0 25

Dependencies

gson-2.8.1.jar

Description: Gson JSON library

File Path: /Users/rex.hoffman/.m2/repository/com/google/code/gson/gson/2.8.1/gson-2.8.1.jar
MD5: 2c334d82c64b56ae59ea1bdcbb674303
SHA1: 02a8e0aa38a2e21cb39e2f5a7d6704cbdc941da0
Referenced In Project/Scope: AptSpringModel:compile

Identifiers

javapoet-1.9.0.jar

Description: Use beautiful Java code to generate beautiful Java code.

License:

Apache 2.0: http://www.apache.org/licenses/LICENSE-2.0.txt
File Path: /Users/rex.hoffman/.m2/repository/com/squareup/javapoet/1.9.0/javapoet-1.9.0.jar
MD5: e92008edb0ea9929cb9d50f9801ccce8
SHA1: 00ecc5cf9c221d55481163e773b24336db149e51
Referenced In Project/Scope: AptSpringModel:compile

Identifiers

jgrapht-core-1.0.1.jar

Description: A Java class library for graph-theory data structures and algorithms.

License:

GNU Lesser General Public License Version 2.1, February 1999: http://jgrapht.sourceforge.net/LGPL.html
Eclipse Public License (EPL) 1.0: http://www.eclipse.org/legal/epl-v10.html
File Path: /Users/rex.hoffman/.m2/repository/org/jgrapht/jgrapht-core/1.0.1/jgrapht-core-1.0.1.jar
MD5: b827590449da3085ce7cc39736e999af
SHA1: 9ecbb2734a9b16126a56bf6544cafba2767d0f44
Referenced In Project/Scope: AptSpringModel:compile

Identifiers

jgrapht-ext-1.0.1.jar

Description: A Java class library for graph-theory data structures and algorithms.

License:

GNU Lesser General Public License Version 2.1, February 1999: http://jgrapht.sourceforge.net/LGPL.html
Eclipse Public License (EPL) 1.0: http://www.eclipse.org/legal/epl-v10.html
File Path: /Users/rex.hoffman/.m2/repository/org/jgrapht/jgrapht-ext/1.0.1/jgrapht-ext-1.0.1.jar
MD5: 407260aa727b906138b712b175f808b0
SHA1: 9c0dbf85af4c72a67c158e85b8e2725bdb670a80
Referenced In Project/Scope: AptSpringModel:compile

Identifiers



This report contains data retrieved from the National Vulnerability Database.
This report may contain data retrieved from the Node Security Platform.