Org.codehaus.plexus:plexus-archiver
This hub aggregates every CVE we track for Org.codehaus.plexus:plexus-archiver, a product in the oss libraries space. Use it to gauge the current risk picture and drill into individual advisories.
2
CVEs tracked
0
Critical
1
High
0
In CISA KEV
Severity distribution
HIGH1MEDIUM1
Monthly trend
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
2024-092026-08
Latest CVEs
The 2 most recently published vulnerabilities affecting Org.codehaus.plexus:plexus-archiver.
- CVE-2023-37460Plexus Archiver vulnerable to Arbitrary File Creation in AbstractUnArchiver8.1
- CVE-2018-1002200plexus-archiver before 3.6.0 is vulnerable to directory traversal, allowing attackers to write to arbitrary files via a ../ (dot dot slash) in an archive entry that is mishandled during extraction....5.5
Product normalization is registry-driven with AI assist and human review. How it works