pkg:maven/com.mchange/c3p0
Type
maven
Namespace
com.mchange
Name
c3p0
Known advisories, vulnerabilities and fixes for com.mchange/c3p0 package.
Critical
1
High
1
Type | Version | Distribution | # CVEs | # Advisory ID | Title | Severity | Published |
---|---|---|---|---|---|---|---|
Affected | <= 0.9.5.3 |
CVE-2019-5427
|
MAVEN:GHSA-84P2-VF58-XHXV | Billion laughs attack in c3p0 | high |
2019-04-23T16:03:18
(5 years ago) |
|
Fixed | = 0.9.5.4 |
CVE-2019-5427
|
MAVEN:GHSA-84P2-VF58-XHXV | Billion laughs attack in c3p0 | high |
2019-04-23T16:03:18
(5 years ago) |
|
Affected | <= 0.9.5.2 |
CVE-2018-20433
|
MAVEN:GHSA-Q485-J897-QC27 | XML External Entity Reference in mchange:c3p0 | critical |
2019-01-07T19:14:34
(5 years ago) |
|
Fixed | = 0.9.5.3 |
CVE-2018-20433
|
MAVEN:GHSA-Q485-J897-QC27 | XML External Entity Reference in mchange:c3p0 | critical |
2019-01-07T19:14:34
(5 years ago) |