Vulnerabilities > Jodd

DATE CVE VULNERABILITY TITLE RISK
2022-06-06 CVE-2022-29631 Injection vulnerability in Jodd Http
Jodd HTTP v6.0.9 was discovered to contain multiple CLRF injection vulnerabilities via the components jodd.http.HttpRequest#set and `jodd.http.HttpRequest#send.
network
low complexity
jodd CWE-74
7.5
2020-05-21 CVE-2018-21234 Deserialization of Untrusted Data vulnerability in multiple products
Jodd before 5.0.4 performs Deserialization of Untrusted JSON Data when setClassMetadataName is set.
network
low complexity
jodd apache CWE-502
critical
9.8