Known Vulnerabilities for products from Diffplug
Listed below are 3 of the newest known vulnerabilities associated with the vendor "Diffplug".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2022-26049 json | This affects the package com.diffplug.gradle:goomph before 3.37.2. It allows a malicious zip file to potentially break out of... | 8.8 - HIGH | 2022-09-11 | 2022-09-16 |
| CVE-2019-10753 json | In all versions prior to version 3.9.6 for eclipse-wtp, all versions prior to version 9.4.4 for eclipse-cdt, and all versions... | 5.9 - MEDIUM | 2019-09-05 | 2019-09-06 |
| CVE-2019-9843 json | In DiffPlug Spotless before 1.20.0 (library and Maven plugin) and before 3.20.0 (Gradle plugin), the XML parser would resolve... | 7.5 - HIGH | 2019-06-28 | 2023-11-07 |