Spring Security is a powerful and highly customizable authentication and access-control framework.
It provides protection against attacks like session fixation, clickjacking, cross site request forgery, etc
License | Apache 2.0 |
---|---|
Categories | Security Frameworks |
Tags | securityspringframework |
Organization | spring.io |
HomePage | http://spring.io/spring-security |
Date | Mar 25, 2014 |
Files | pom (6 KB) jar (351 KB) View All |
Repositories | CentralAKSWCubaWorkGeomajasImageJ PublicKyligence PublicMulesoftSonatypeSpring Releases |
Ranking | #206 in MvnRepository (See Top Artifacts) #1 in Security Frameworks |
Used By | 2,641 artifacts |
Vulnerabilities | Direct vulnerabilities: CVE-2024-22257 CVE-2022-22978 CVE-2020-5408 View 4 more ... Vulnerabilities from dependencies: CVE-2024-38820 CVE-2024-38808 CVE-2023-6378 View 19 more ... |
Compile Dependencies (12)
Category/License | Group / Artifact | Version | Updates | |
---|---|---|---|---|
AOP Public | aopalliance » aopalliance | 1.0 | ✔ | |
Logging Apache 2.0 | commons-logging » commons-logging (optional) | 1.1.1 | 1.3.4 | |
Annotation Lib CDDLGPL 2.0 | javax.annotation » jsr250-api (optional) | 1.0 | 1.3.2 | |
Cache Impl Apache 2.0 | net.sf.ehcache » ehcache (optional) | 1.6.2 | 3.10.8 | |
AOP EPL 2.0 | org.aspectj » aspectjrt (optional) | 1.6.10 | 1.9.22.1 | |
AOP Apache 2.0 | org.springframework » spring-aop | 3.2.8.RELEASE | 6.2.1 | |
Dep Injection Apache 2.0 | org.springframework » spring-beans2 vulnerabilities | 3.2.8.RELEASE | 6.2.1 | |
Dep Injection Apache 2.0 | org.springframework » spring-context2 vulnerabilities | 3.2.8.RELEASE | 6.2.1 | |
Core Utils Apache 2.0 | org.springframework » spring-core8 vulnerabilities | 3.2.8.RELEASE | 6.2.1 | |
Expression Lang Apache 2.0 | org.springframework » spring-expression4 vulnerabilities | 3.2.8.RELEASE | 6.2.1 | |
JDBC Extension Apache 2.0 | org.springframework » spring-jdbc (optional) | 3.2.8.RELEASE | 6.2.1 | |
Transactions Apache 2.0 | org.springframework » spring-tx (optional) | 3.2.8.RELEASE | 6.2.1 |
Test Dependencies (15)
Category/License | Group / Artifact | Version | Updates | |
---|---|---|---|---|
Bytecode Apache 2.0 | cglib » cglib-nodep | 2.2 | 3.3.0 | |
Logging EPL 1.0LGPL 2.1 | ch.qos.logback » logback-classic2 vulnerabilities | 0.9.29 | 1.5.12 | |
Collections Apache 2.0 | commons-collections » commons-collections2 vulnerabilities | 3.2 | 4.4 | |
Testing EPL 2.0 | junit » junit1 vulnerability | 4.10 | 5.11.3 | |
Assertion Apache 2.0 | org.easytesting » fest-assert | 1.4 | 2.0M10 | |
Embedded SQL DB | org.hsqldb » hsqldb1 vulnerability | 2.3.1 | 2.7.4 | |
Mocking MIT | org.mockito » mockito-core | 1.9.5 | 5.14.2 | |
Mocking Apache 2.0 | org.powermock » powermock-api-mockito | 1.5.1 | 2.0.9 | |
Apache 2.0 | org.powermock » powermock-api-support | 1.5.1 | 2.0.9 | |
Mocking Apache 2.0 | org.powermock » powermock-core | 1.5.1 | 2.0.9 | |
Mocking Apache 2.0 | org.powermock » powermock-module-junit4 | 1.5.1 | 2.0.9 | |
Apache 2.0 | org.powermock » powermock-module-junit4-common | 1.5.1 | 2.0.9 | |
Apache 2.0 | org.powermock » powermock-reflect | 1.5.1 | 2.0.9 | |
Logging Bridge Apache 2.0 | org.slf4j » jcl-over-slf4j | 1.7.5 | 2.0.16 | |
Testing Apache 2.0 | org.springframework » spring-test | 3.2.8.RELEASE | 6.2.1 |
Licenses
License | URL |
---|---|
The Apache Software License, Version 2.0 | http://www.apache.org/licenses/LICENSE-2.0.txt |
Developers
Name | Dev Id | Roles | Organization | |
---|---|---|---|---|
Rob Winch | rwinch<at>gopivotal.com | rwinch |