Spring Security is a powerful and highly customizable authentication and access-control framework. It provides protection against attacks like session fixation, clickjacking, cross site request forgery, etc
| License | Apache 2.0 |
|---|---|
| Categories | Security Frameworks |
| Tags | securityspringframework |
| Date | Nov 18, 2010 |
| Files | pom (3 KB) jar (303 KB) View All |
| Repositories | CentralAKSWAlfrescoCloudFlight PluginsGeomajasImageJ PublicMulesoftSonatype |
| Ranking | #206 in MvnRepository (See Top Artifacts) #1 in Security Frameworks |
| Used By | 2,873 artifacts |
| Vulnerabilities | Direct vulnerabilities: CVE-2024-38827 CVE-2024-22257 CVE-2022-22978 View 9 more ... Vulnerabilities from dependencies: CVE-2025-22233 CVE-2024-38820 CVE-2024-38809 View 28 more ... |
Compile Dependencies (12)
| Category/License | Group / Artifact | Version | Updates | |
|---|---|---|---|---|
| Annotation Lib CDDLGPL 2.0 | javax.annotation » jsr250-api (optional) | 1.0 | 1.3.2 | |
| Cache Impl Apache 2.0 | net.sf.ehcache » ehcache (optional) | 1.6.2 | 3.11.1 | |
| AOP EPL 2.0 | org.aspectj » aspectjrt | 1.6.8 | 1.9.25 | |
| AOP EPL 2.0 | org.aspectj » aspectjweaver | 1.6.8 | 1.9.25 | |
| Expression Lang Apache 2.0 | org.springframework » spring-expression4 vulnerabilities | 3.0.3.RELEASE | 7.0.0 | |
| Core Utils Apache 2.0 | org.springframework » spring-core8 vulnerabilities | 3.0.3.RELEASE | 7.0.0 | |
| Dep Injection Apache 2.0 | org.springframework » spring-context3 vulnerabilities | 3.0.3.RELEASE | 7.0.0 | |
| Transactions Apache 2.0 | org.springframework » spring-tx | 3.0.3.RELEASE | 7.0.0 | |
| AOP Apache 2.0 | org.springframework » spring-aop | 3.0.3.RELEASE | 7.0.0 | |
| JDBC Extension Apache 2.0 | org.springframework » spring-jdbc (optional) | 3.0.3.RELEASE | 7.0.0 | |
| Web Framework Apache 2.0 | org.springframework » spring-web (optional) 9 vulnerabilities | 3.0.3.RELEASE | 7.0.0 | |
| Testing Apache 2.0 | org.springframework » spring-test (optional) | 3.0.3.RELEASE | 7.0.0 |
Runtime Dependencies (2)
Test Dependencies (2)
| Category/License | Group / Artifact | Version | Updates | |
|---|---|---|---|---|
| Collections Apache 2.0 | commons-collections » commons-collections2 vulnerabilities | 3.2 | 4.5.0 | |
| Embedded SQL DB | hsqldb » hsqldb | 1.8.0.10 | 2.7.4 |
Licenses
| License | URL |
|---|---|
| The Apache Software License, Version 2.0 | http://www.apache.org/licenses/LICENSE-2.0.txt |
Developers
| Name | Dev Id | Roles | Organization | |
|---|---|---|---|---|
| Ben Alex | benalex at users.sourceforge.net | benalex | SpringSource | |
| Colin Sampaleanu | colinml1 at exis.com | colins | ||
| Carlos Sanchez | carlossg at users.sourceforge.net | carlossg | ||
| Luke Taylor | luke_t at users.sourceforge.net | luke_t | SpringSource | |
| Ray Krueger | raykrueger at users.sourceforge.net | raykrueger | ||
| Mark St.Godard | markstg at users.sourceforge.net | markstg | ||
| John A. Lewis | johnalewis at users.sourceforge.net | johnalewis |