sz-lk-map-proxy-app.tar (alt cpe:/o:alt:spcontainer:10.2.2) - Trivy Report - 2026-08-17 09:56:38.753224463 +0000 UTC m=+2.362627144
alt
No Vulnerabilities found
No Misconfigurations found
jar
Package
Vulnerability ID
Severity
Installed Version
Fixed Version
Links
org.apache.httpcomponents.client5:httpclient5
CVE-2026-64607
MEDIUM
5.5.2
5.6.3
http://www.openwall.com/lists/oss-security/2026/08/13/5
https://github.com/apache/httpcomponents-client
https://github.com/apache/httpcomponents-client/commit/55733f4121f7ba26ddf04fe12739d9c15962cb94
https://github.com/apache/httpcomponents-client/commit/ebac9512f555c4a355cad3f59ef2db69b597cc97
https://github.com/apache/httpcomponents-client/releases/tag/rel/v5.6.3
https://github.com/apache/httpcomponents-client/releases/tag/rel/v5.7-alpha1
https://lists.apache.org/thread/qqfzo3fqcdk4l5496vz95ppvl4ty511q
https://nvd.nist.gov/vuln/detail/CVE-2026-64607
org.apache.httpcomponents.core5:httpcore5
CVE-2026-54399
HIGH
5.3.6
5.4.3, 5.5-beta2
http://www.openwall.com/lists/oss-security/2026/07/01/4
https://access.redhat.com/security/cve/CVE-2026-54399
https://github.com/apache/httpcomponents-core
https://github.com/apache/httpcomponents-core/commit/d96a00fec9b2e19f8005e35681df5f6cd6e21a9e
https://github.com/apache/httpcomponents-core/commit/fdc53a32fe0fccf098cc67e71cd125e447c759ed
https://lists.apache.org/thread/zmxh1pl2zohov5ntdh4lt85gfrlchgpy
https://nvd.nist.gov/vuln/detail/CVE-2026-54399
https://www.cve.org/CVERecord?id=CVE-2026-54399
org.apache.httpcomponents.core5:httpcore5-h2
CVE-2026-54428
HIGH
5.3.6
5.4.3, 5.5-beta2
http://www.openwall.com/lists/oss-security/2026/07/01/3
https://access.redhat.com/security/cve/CVE-2026-54428
https://github.com/apache/httpcomponents-core
https://github.com/apache/httpcomponents-core/commit/1ea1239bbbe3442a8382a87279c0a8119a7e358e
https://github.com/apache/httpcomponents-core/commit/cc30ee058a7b10cbf4ad3dd6270ab6d1f6a74c49
https://lists.apache.org/thread/5zjp8vczvxq19pw2rvhs21q446bhl0sd
https://nvd.nist.gov/vuln/detail/CVE-2026-54428
https://www.cve.org/CVERecord?id=CVE-2026-54428
org.apache.logging.log4j:log4j-api
CVE-2026-49844
MEDIUM
2.24.3
2.25.5, 2.26.1
https://access.redhat.com/security/cve/CVE-2026-49844
https://github.com/apache/logging-log4j2
https://github.com/apache/logging-log4j2/commit/19edb23e162d6c728a8c2221a240037d389ed300
https://github.com/apache/logging-log4j2/commit/feadf8eb0b4acb6ddfa4c0ab2bbc6d88b8e12d82
https://github.com/apache/logging-log4j2/pull/4163
https://github.com/apache/logging-log4j2/releases/tag/rel/2.25.5
https://github.com/apache/logging-log4j2/releases/tag/rel/2.26.1
https://logging.apache.org/cyclonedx/vdr.xml
https://logging.apache.org/log4j/2.x/manual/json-template-layout.html#event-template-resolver-message
https://logging.apache.org/security.html#CVE-2026-49844
https://nvd.nist.gov/vuln/detail/CVE-2026-49844
https://www.cve.org/CVERecord?id=CVE-2026-49844
No Misconfigurations found