org.primefaces:primefaces vulnerabilities

PrimeFaces is one of the most popular UI libraries in Java EE Ecosystem and widely used by software companies, world renowned brands, banks, financial institutions, insurance companies, universities and more.

Latest version: 7.0

Licenses detected

Continuously find & fix vulnerabilities like these in your dependencies. Test and protect your applications

Direct Vulnerabilities

Known vulnerabilities in the org.primefaces:primefaces package. This does not include vulnerabilities belonging to this package’s dependencies.

Vulnerability Vulnerable versions Snyk patch Published
  • M
Information Exposure
[0,7.0.RC1) Not available 14 Jan, 2019
  • M
Cross-site Scripting (XSS)
[,6.2) Not available 06 Mar, 2018
  • M
Cross-site Scripting (XSS)
[,6.2) Not available 06 Mar, 2018
  • H
Arbitrary Code Execution
[5.0, 6.0) Not available 23 Jan, 2018