基础信息
项目名称:bndynet/web-framework-for-java
项目徽章:
仓库地址:https://github.com/pterodactyl/panel
检测报告地址:https://www.murphysec.com/console/report/1720986882069757952/1720986882203975680
此报告由Murphysec提供
漏洞列表
| 漏洞名称 | 漏洞类型 | MPS编号 | CVE编号 | 漏洞等级 |
|---|---|---|---|---|
| Joyent Node.js is-my-json-valid 拒绝服务漏洞 | 拒绝服务 | MPS-2016-1001 | CVE-2016-2537 | 高危 |
| Joyent Node.js tough-cookie模块安全漏洞 | 拒绝服务 | MPS-2017-11145 | CVE-2017-15010 | 高危 |
| Pivotal Spring Security 安全漏洞 | 反序列化 | MPS-2017-13359 | CVE-2017-4995 | 高危 |
| QOS.ch Logback SocketServer和ServerSocketReceiver组件代码问题漏洞 | 反序列化 | MPS-2017-2574 | CVE-2017-5929 | 严重 |
| Oracle MySQL Connectors 安全漏洞 | 访问控制不当 | MPS-2017-4744 | CVE-2017-3586 | 中危 |
| Oracle MySQL Connectors 安全漏洞 | 访问控制不当 | MPS-2017-4746 | CVE-2017-3589 | 低危 |
| marked data: URI解析器 XSS 漏洞 | XSS | MPS-2018-0046 | CVE-2017-1000427 | 中危 |
| Red Hat Hibernate Validator 存在不安全反射漏洞 | 使用外部可控制的输入来选择类或代码(不安全的反射) | MPS-2018-0334 | CVE-2017-7536 | 高危 |
| FasterXML Jackson-databind 反序列化漏洞(dbcp2 gadget绕过) | 反序列化 | MPS-2018-0362 | CVE-2017-17485 | 严重 |
| FasterXML jackson-databind 反序列化漏洞(Hibernate/iBatis gadget绕过) | 反序列化 | MPS-2018-0934 | CVE-2018-5968 | 高危 |
| Oracle MySQL Connectors 访问控制错误漏洞 | 使用候选路径或通道进行的认证绕过 | MPS-2018-13771 | CVE-2018-3258 | 高危 |
| Spring Framework | 拒绝服务 | MPS-2018-13948 | CVE-2018-15756 | 高危 |
| Pivotal Spring Security OAuth 权限许可和访问控制问题漏洞 | 权限管理不当 | MPS-2018-13949 | CVE-2018-15758 | 高危 |
| FasterXML Jackson-databind 反序列化漏洞(JdbcRowSetImpl gadget绕过) | 反序列化 | MPS-2018-1438 | CVE-2017-15095 | 严重 |
| FasterXML Jackson-databind反序列化漏洞 | 反序列化 | MPS-2018-1439 | CVE-2017-7525 | 严重 |
| cached-path-relative 安全漏洞 | 原型污染 | MPS-2018-14478 | CVE-2018-16472 | 高危 |
| https-proxy-agent 安全漏洞 | 资源管理错误 | MPS-2018-16541 | CVE-2018-3736 | 高危 |
| FasterXML jackson-databind 反序列化漏洞(c3p0 gadget绕过) | 反序列化 | MPS-2018-2477 | CVE-2018-7489 | 严重 |
| Pivotal Spring Framework 安全防护绕过漏洞 | 权限、特权和访问控制 | MPS-2018-3334 | CVE-2018-1199 | 中危 |
| Hoek 访问控制错误漏洞 | MAID | MPS-2018-3882 | CVE-2018-3728 | 高危 |
| Pivotal Spring Framework 路径遍历漏洞 | 路径遍历 | MPS-2018-4351 | CVE-2018-1271 | 中危 |
| Pivotal Spring Framework 权限许可和访问控制问题漏洞 | 权限管理不当 | MPS-2018-4352 | CVE-2018-1272 | 高危 |
| Spring Data Commons | 代码注入 | MPS-2018-4454 | CVE-2018-1273 | 严重 |
| Spring Data Commons 无限制的资源分配漏洞 | 不加限制或调节的资源分配 | MPS-2018-5028 | CVE-2018-1274 | 高危 |
| Google Guava 不可信数据的反序列化漏洞 | 不加限制或调节的资源分配 | MPS-2018-5515 | CVE-2018-10237 | 中危 |
| Pivotal Spring Security Oauth 任意代码执行漏洞 | 代码注入 | MPS-2018-5953 | CVE-2018-1260 | 严重 |
| Joyent Node.js atob 安全漏洞 | 越界读取 | MPS-2018-6615 | CVE-2018-3745 | 严重 |
| uws 安全漏洞 | 拒绝服务 | MPS-2018-6729 | CVE-2016-10544 | 中危 |
| marked 模块拒绝服务漏洞 | 拒绝服务 | MPS-2018-7187 | CVE-2017-16114 | 高危 |
| timespan模块安全漏洞 | 拒绝服务 | MPS-2018-7188 | CVE-2017-16115 | 高危 |
| debug 模块拒绝服务漏洞 | 拒绝服务 | MPS-2018-7210 | CVE-2017-16137 | 中危 |
| mime模块拒绝服务漏洞 | 拒绝服务 | MPS-2018-7211 | CVE-2017-16138 | 高危 |
| sshpk 安全漏洞 | 不正确的正则表达式 | MPS-2018-7302 | CVE-2018-3737 | 高危 |
| https-proxy-agent 安全漏洞 | 越界读取 | MPS-2018-7304 | CVE-2018-3739 | 严重 |
| lodash node 拒绝服务漏洞 | 拒绝服务 | MPS-2018-7315 | CVE-2018-3721 | 中危 |
| Pivotal Spring Framework XST漏洞 | 访问控制不当 | MPS-2018-8290 | CVE-2018-11039 | 中危 |
| Pivotal Spring Framework 信息泄露漏洞 | 从非可信控制范围包含功能例程 | MPS-2018-8291 | CVE-2018-11040 | 高危 |
| extend module 输入验证错误漏洞 | 原型污染 | MPS-2018-8705 | CVE-2018-3750 | 严重 |
| Eran Hammer cryptiles 不安全的随机性漏洞 | 信息熵不充分 | MPS-2018-9401 | CVE-2018-1000620 | 严重 |
| FasterXML jackson-databind反序列化漏洞(slf4j-ext gadget绕过) | 反序列化 | MPS-2019-0018 | CVE-2018-14718 | 严重 |
| FasterXML jackson-databind反序列化漏洞(blaze-ds-opt gadget绕过) | 反序列化 | MPS-2019-0019 | CVE-2018-14719 | 严重 |
| FasterXML jackson-databind XXE漏洞(DRSHelper gadget绕过) | XXE | MPS-2019-0020 | CVE-2018-14720 | 严重 |
| FasterXML Jackson-databind服务器端请求伪造漏洞(axis2-jaxws gadget绕过) | SSRF | MPS-2019-0021 | CVE-2018-14721 | 严重 |
| FasterXML Jackson-databind代码问题漏洞(axis2-transport-jms gadget绕过) | 反序列化 | MPS-2019-0023 | CVE-2018-19360 | 严重 |
| FasterXML Jackson-databind代码问题漏洞(openjpa gadget绕过) | 反序列化 | MPS-2019-0024 | CVE-2018-19361 | 严重 |
| FasterXML Jackson-databind代码问题漏洞(jboss-common-core gadget绕过) | 反序列化 | MPS-2019-0025 | CVE-2018-19362 | 严重 |
| FasterXML jackson-databind 反序列化漏洞(HikariCP gadget绕过) | 反序列化 | MPS-2019-11529 | CVE-2019-14540 | 严重 |
| FasterXML jackson-databind 反序列化漏洞(HikariCP gadget绕过) | 反序列化 | MPS-2019-11533 | CVE-2019-16335 | 严重 |
| lodash 存在拒绝服务漏洞 | 拒绝服务 | MPS-2019-1228 | CVE-2018-16487 | 中危 |
| extend module [*, 2.0.2)、[3.0.0, 3.0.2) 原型污染漏洞 | 注入 | MPS-2019-1232 | CVE-2018-16492 | 严重 |
| Red Hat JBoss Enterprise Application Platform 代码问题漏洞 | 反序列化 | MPS-2019-12470 | CVE-2019-10202 | 严重 |
| FasterXML jackson-databind 反序列化漏洞(commons-dbcp gadget绕过) | 反序列化 | MPS-2019-12479 | CVE-2019-16942 | 严重 |
| FasterXML jackson-databind 反序列化漏洞(p6spy gadget绕过) | 反序列化 | MPS-2019-12480 | CVE-2019-16943 | 严重 |
| FasterXML jackson-databind 反序列化漏洞(ehcache gadget绕过) | 反序列化 | MPS-2019-12676 | CVE-2019-17267 | 严重 |
| Swagger UI @import 跨站脚本漏洞 | CSRF | MPS-2019-13043 | CVE-2019-17495 | 中危 |
| FasterXML jackson-databind 反序列化漏洞(apache-log4j-extras gadget绕过) | 反序列化 | MPS-2019-13103 | CVE-2019-17531 | 严重 |
| hibernate-validator 存在跨站脚本(XSS)漏洞 | XSS | MPS-2019-14389 | CVE-2019-10219 | 中危 |
| jackson-mapper-asl | XXE | MPS-2019-15048 | CVE-2019-10172 | 高危 |
| SnakeYAML | 拒绝服务 | MPS-2019-16129 | CVE-2017-18640 | 高危 |
| handlebars 原型污染漏洞 | 原型污染 | MPS-2019-16888 | CVE-2019-19919 | 严重 |
| Spring Security OAuth 存在开放重定向漏洞 | 跨站重定向 | MPS-2019-2272 | CVE-2019-3778 | 中危 |
| FasterXML Jackson-databind反序列化漏洞(Jodd-db gadget绕过) | 反序列化 | MPS-2019-2619 | CVE-2018-12022 | 高危 |
| FasterXML Jackson-databind反序列化漏洞(Oracle JDBC driver gadget绕过) | 反序列化 | MPS-2019-2620 | CVE-2018-12023 | 高危 |
| VMware Spring Security 不安全随机值漏洞 | 使用不充分的随机数 | MPS-2019-3777 | CVE-2019-3795 | 中危 |
| Oracle MySQL Connectors 输入验证错误漏洞 | 使用不兼容类型访问资源(类型混淆) | MPS-2019-4430 | CVE-2019-2692 | 中危 |
| node-tar [, 2.2.2)、[3.0.0, 4.4.2) 任意文件覆盖漏洞 | 在文件访问前对链接解析不恰当(链接跟随) | MPS-2019-4705 | CVE-2018-20834 | 高危 |
| Spring Data JPA 存在信息泄露漏洞 | 未授权敏感信息泄露 | MPS-2019-4857 | CVE-2019-3797 | 中危 |
| Axios | XML实体扩展 | MPS-2019-4913 | CVE-2019-10742 | 高危 |
| FasterXML jackson-databind 反序列化漏洞(mysql gadget绕过) | 反序列化 | MPS-2019-5442 | CVE-2019-12086 | 高危 |
| Spring Data JPA 信息泄露漏洞 | 未授权敏感信息泄露 | MPS-2019-6072 | CVE-2019-3802 | 中危 |
| Spring Security OAuth 存在开放重定向漏洞 | 跨站重定向 | MPS-2019-6639 | CVE-2019-11269 | 中危 |
| FasterXML jackson-databind 反序列化漏洞(jdom gadget绕过) | 反序列化 | MPS-2019-6867 | CVE-2019-12814 | 中危 |
| FasterXML jackson-databind 反序列化漏洞(logback-classic gadget绕过) | 反序列化 | MPS-2019-7047 | CVE-2019-12384 | 中危 |
| Spring Security null 编码漏洞 | 凭证保护不足 | MPS-2019-7097 | CVE-2019-11272 | 高危 |
| fstream | 在文件访问前对链接解析不恰当(链接跟随) | MPS-2019-7423 | CVE-2019-13173 | 高危 |
| FasterXML jackson-databind 反序列化漏洞(iBatis gadget绕过) | 反序列化 | MPS-2019-7711 | CVE-2018-11307 | 严重 |
| lodash | 不加限制或调节的资源分配 | MPS-2019-8123 | CVE-2019-1010266 | 中危 |
| lodash 原型污染漏洞 | 拒绝服务 | MPS-2019-8636 | CVE-2019-10744 | 严重 |
| FasterXML jackson-databind 反序列化漏洞(ehcache gadget绕过) | 动态确定对象属性修改的控制不恰当 | MPS-2019-8717 | CVE-2019-14379 | 严重 |
| FasterXML jackson-databind 信息泄露漏洞(logback gadget绕过) | 反序列化 | MPS-2019-8770 | CVE-2019-14439 | 高危 |
| Spring Framework | 反序列化 | MPS-2020-0057 | CVE-2016-1000027 | 严重 |
| FasterXML jackson-databind反序列化漏洞(net.sf.ehcache gadget绕过) | 反序列化 | MPS-2020-0063 | CVE-2019-20330 | 严重 |
| Ajv v6.12.2 输入验证错误漏洞 | MAID | MPS-2020-10525 | CVE-2020-15366 | 中危 |
| FasterXML jackson-databind反序列化漏洞(Anteros-DBCP gadget绕过) | 反序列化 | MPS-2020-11987 | CVE-2020-24616 | 高危 |
| npm bl 内存泄露漏洞 | 越界读取 | MPS-2020-12199 | CVE-2020-8244 | 中危 |
| FasterXML jackson-databind 反序列化漏洞(pastdev gadget绕过) | 反序列化 | MPS-2020-13151 | CVE-2020-24750 | 高危 |
| Pivotal Spring Framework 反射文件下载 (RFD) 漏洞 | 路径遍历 | MPS-2020-13322 | CVE-2020-5421 | 中危 |
| handlebars 代码注入漏洞 | 代码注入 | MPS-2020-13732 | CVE-2019-20920 | 高危 |
| handlebars 安全漏洞 | 不可达退出条件的循环(无限循环) | MPS-2020-13734 | CVE-2019-20922 | 高危 |
| lodash | 原型污染 | MPS-2020-15679 | CVE-2020-8203 | 高危 |
| Nodemailer | 注入 | MPS-2020-15702 | CVE-2020-7769 | 严重 |
| Axios 服务器端请求伪造漏洞 | SSRF | MPS-2020-16365 | CVE-2020-28168 | 中危 |
| Mhart Stringstream | 越界读取 | MPS-2020-16658 | CVE-2018-21270 | 中危 |
| hibernate-core | SQL注入 | MPS-2020-16768 | CVE-2020-25638 | 高危 |
| Highlightjs 原型污染漏洞 | MAID | MPS-2020-16772 | CVE-2020-26237 | 中危 |
| dot-prop 原型污染漏洞 | 原型污染 | MPS-2020-1734 | CVE-2020-8116 | 高危 |
| Apache HttpClient URI解析错误漏洞 | XSS | MPS-2020-17341 | CVE-2020-13956 | 中危 |
| Google Guava 访问控制错误漏洞 | 关键资源权限分配不当 | MPS-2020-17429 | CVE-2020-8908 | 低危 |
| Yargs Y18n 输入原型污染漏洞 | 动态确定对象属性修改的控制不恰当 | MPS-2020-17543 | CVE-2020-7774 | 严重 |
| Ini | 拒绝服务 | MPS-2020-17544 | CVE-2020-7788 | 高危 |
| Apache Groovy 临时目录信息泄露漏洞 | 缺省权限不正确 | MPS-2020-17573 | CVE-2020-17521 | 中危 |
| FasterXML jackson-databind 反序列化漏洞(commons-dbcp2 gadget绕过) | 反序列化 | MPS-2020-17696 | CVE-2020-35490 | 高危 |
| FasterXML jackson-databind 反序列化漏洞(commons-dbcp2 gadget绕过) | 反序列化 | MPS-2020-17697 | CVE-2020-35491 | 高危 |
| FasterXML jackson-databind 反序列化漏洞(glassfish gadget绕过) | 反序列化 | MPS-2020-18089 | CVE-2020-35728 | 高危 |
| FasterXML jackson-databind 反序列化漏洞(xbean-reflect gadget绕过) | 反序列化 | MPS-2020-2030 | CVE-2020-8840 | 严重 |
| FasterXML jackson-databind 反序列化漏洞(ignite-jta gadget绕过) | 反序列化 | MPS-2020-24779 | CVE-2020-10650 | 高危 |
| FasterXML jackson-databind 代码问题漏洞 | 反序列化 | MPS-2020-3040 | CVE-2020-9546 | 严重 |
| FasterXML jackson-databind 反序列化漏洞(JtaTransactionConfig gadget绕过) | 反序列化 | MPS-2020-3041 | CVE-2020-9547 | 严重 |
| FasterXML jackson-databind反序列化漏洞(anteros-core gadget绕过) | 反序列化 | MPS-2020-3042 | CVE-2020-9548 | 严重 |
| FasterXML jackson-databind 反序列化漏洞(commons-configuration gadget绕过) | 反序列化 | MPS-2020-3075 | CVE-2019-14892 | 严重 |
| FasterXML Jackson-databind反序列化漏洞(xalan2 gadget绕过) | 反序列化 | MPS-2020-3094 | CVE-2019-14893 | 严重 |
| minimist 原型污染漏洞 | 原型污染 | MPS-2020-3516 | CVE-2020-7598 | 中危 |
| mysql:mysql-connector-java | XXE | MPS-2020-38350 | CVE-2021-2471 | 中危 |
| yargs-parser 原型污染漏洞 | 特权定义了不安全动作 | MPS-2020-4006 | CVE-2020-7608 | 中危 |
| FasterXML jackson-databind反序列化漏洞(aries.transaction.jms gadget绕过) | 反序列化 | MPS-2020-4131 | CVE-2020-10672 | 高危 |
| FasterXML jackson-databind反序列化漏洞(caucho-quercus gadget绕过) | 反序列化 | MPS-2020-4132 | CVE-2020-10673 | 高危 |
| FasterXML jackson-databind反序列化漏洞(bus-proxy gadget绕过) | 反序列化 | MPS-2020-4658 | CVE-2020-10968 | 高危 |
| FasterXML jackson-databind反序列化漏洞(javax.swing gadget绕过) | 反序列化 | MPS-2020-4659 | CVE-2020-10969 | 高危 |
| FasterXML jackson-databind反序列化漏洞(activemq gadget绕过) | 反序列化 | MPS-2020-4754 | CVE-2020-11111 | 高危 |
| FasterXML jackson-databind反序列化漏洞(commons-proxy gadget绕过) | 反序列化 | MPS-2020-4755 | CVE-2020-11112 | 高危 |
| FasterXML jackson-databind反序列化漏洞(openjpa gadget绕过) | 反序列化 | MPS-2020-4756 | CVE-2020-11113 | 高危 |
| FasterXML jackson-databind 反序列化漏洞(spring-aop gadget绕过) | 反序列化 | MPS-2020-5138 | CVE-2020-11619 | 高危 |
| FasterXML jackson-databind 反序列化漏洞(commons-jelly gadget绕过) | 反序列化 | MPS-2020-5139 | CVE-2020-11620 | 高危 |
| dom4j SaxReader函数存在 XXE 漏洞 | XXE | MPS-2020-6967 | CVE-2020-10683 | 严重 |
| hibernate-validator 存在输入验证错误漏洞 | 代码注入 | MPS-2020-7077 | CVE-2020-10693 | 中危 |
| Spring Security Crypto 弱加密漏洞 | 使用不充分的随机数 | MPS-2020-7449 | CVE-2020-5408 | 中危 |
| Elliptic package 签名伪造漏洞 | 整数溢出或环绕 | MPS-2020-8202 | CVE-2020-13822 | 高危 |
| FasterXML jackson-databind反序列化漏洞(oracle-aqjms gadget绕过) | 反序列化 | MPS-2020-8801 | CVE-2020-14061 | 高危 |
| FasterXML jackson-databind反序列化漏洞(xalan2 gadget绕过) | 反序列化 | MPS-2020-8802 | CVE-2020-14062 | 高危 |
| FasterXML jackson-databind反序列化漏洞(apache drill gadget绕过) | 反序列化 | MPS-2020-8803 | CVE-2020-14060 | 高危 |
| FasterXML jackson-databind代码问题漏洞(jsecurity gadget绕过) | 反序列化 | MPS-2020-8911 | CVE-2020-14195 | 高危 |
| Hibernate 存在 SQL 注入漏洞 | SQL注入 | MPS-2020-9908 | CVE-2019-14900 | 中危 |
| Socketio Engineio 资源管理错误漏洞 | 拒绝服务 | MPS-2021-0191 | CVE-2020-36048 | 高危 |
| Socketio Engineio 资源管理错误漏洞 | 拒绝服务 | MPS-2021-0192 | CVE-2020-36049 | 高危 |
| FasterXML jackson-databind 反序列化漏洞(DBCP gadget绕过) | 反序列化 | MPS-2021-0202 | CVE-2020-36179 | 高危 |
| FasterXML jackson-databind 反序列化漏洞(DBCP gadget绕过) | 反序列化 | MPS-2021-0203 | CVE-2020-36181 | 高危 |
| FasterXML jackson-databind 反序列化漏洞(DBCP gadget绕过) | 反序列化 | MPS-2021-0204 | CVE-2020-36180 | 高危 |
| FasterXML jackson-databind 反序列化漏洞(tomcat-dbcp gadget绕过) | 反序列化 | MPS-2021-0205 | CVE-2020-36182 | 高危 |
| FasterXML jackson-databind 反序列化漏洞(docx4j gadget绕过) | 反序列化 | MPS-2021-0206 | CVE-2020-36183 | 高危 |
| FasterXML jackson-databind 反序列化漏洞(tomcat-dbcp gadget绕过) | 反序列化 | MPS-2021-0207 | CVE-2020-36184 | 高危 |
| FasterXML jackson-databind 反序列化漏洞(tomcat-dbcp gadget绕过) | 反序列化 | MPS-2021-0208 | CVE-2020-36185 | 高危 |
| FasterXML jackson-databind 反序列化漏洞(naming-factory-dbcp gadget绕过) | 反序列化 | MPS-2021-0209 | CVE-2020-36186 | 高危 |
| FasterXML jackson-databind 反序列化漏洞(naming-factory-dbcp gadget绕过) | 反序列化 | MPS-2021-0210 | CVE-2020-36187 | 高危 |
| FasterXML jackson-databind 反序列化漏洞(newrelic-agent gadget绕过) | 反序列化 | MPS-2021-0211 | CVE-2020-36188 | 高危 |
| FasterXML jackson-databind 反序列化漏洞(newrelic-agent gadget绕过) | 反序列化 | MPS-2021-0212 | CVE-2020-36189 | 高危 |
| Socketio Socket.io CORS漏洞 | 源验证错误 | MPS-2021-0652 | CVE-2020-28481 | 中危 |
| Indutny Elliptic 加密问题漏洞 | 密码算法不安全 | MPS-2021-1176 | CVE-2020-28498 | 中危 |
| FasterXML jackson-databind 反序列化漏洞(javax.swing gadget绕过) | 反序列化 | MPS-2021-1625 | CVE-2021-20190 | 高危 |
| stevemao trim-off-newlines 处理逻辑错误漏洞 | 拒绝服务 | MPS-2021-17627 | CVE-2021-23425 | 中危 |
| pac-resolver | 代码注入 | MPS-2021-17857 | CVE-2021-23406 | 严重 |
| Spring Framework | 日志输出的转义处理不恰当 | MPS-2021-18854 | CVE-2021-22060 | 中危 |
| Pivotal Spring Framework 日志注入漏洞 | 日志输出的转义处理不恰当 | MPS-2021-18890 | CVE-2021-22096 | 中危 |
| UIkarma 打开重定向漏洞 | 跨站重定向 | MPS-2021-19534 | CVE-2021-23495 | 中危 |
| cached-path-relative 安全漏洞 | 原型污染 | MPS-2021-19557 | CVE-2021-23518 | 严重 |
| jsonpointer | 使用不兼容类型访问资源(类型混淆) | MPS-2021-19846 | CVE-2021-23807 | 严重 |
| VMware Spring Security 权限许可和访问控制问题漏洞 | 权限、特权和访问控制 | MPS-2021-2094 | CVE-2021-22112 | 高危 |
| requests 代码注入漏洞 | 代码注入 | MPS-2021-2418 | CVE-2020-28502 | 高危 |
| lodash 拒绝服务漏洞 | 拒绝服务 | MPS-2021-2574 | CVE-2020-28500 | 中危 |
| lodash 命令注入漏洞 | 代码注入 | MPS-2021-2638 | CVE-2021-23337 | 高危 |
| Nathan Rajlich node-http-proxy-agent 内存泄漏漏洞 | 初始化不恰当 | MPS-2021-2813 | CVE-2019-10196 | 严重 |
| Npm Node-tar 后置链接漏洞 | 在文件访问前对链接解析不恰当(链接跟随) | MPS-2021-28486 | CVE-2021-37701 | 高危 |
| Npm Node-tar 后置链接漏洞 | 在文件访问前对链接解析不恰当(链接跟随) | MPS-2021-28488 | CVE-2021-37712 | 高危 |
| node-tar 路径遍历漏洞 | 路径遍历 | MPS-2021-28489 | CVE-2021-37713 | 高危 |
| Axios 拒绝服务漏洞 | 拒绝服务 | MPS-2021-30688 | CVE-2021-3749 | 高危 |
| Quality Open Software logback JNDI注入漏洞 | 反序列化 | MPS-2021-33911 | CVE-2021-42550 | 中危 |
| Ruy Adorno hosted-git-info 正则表达式拒绝服务漏洞 | 拒绝服务 | MPS-2021-3400 | CVE-2021-23362 | 中危 |
| shell-quote 远程代码执行漏洞 | 命令注入 | MPS-2021-34136 | CVE-2021-42740 | 严重 |
| Async 原型污染漏洞 | 原型污染 | MPS-2021-34434 | CVE-2021-43138 | 高危 |
| json-schema 安全漏洞 | 原型污染 | MPS-2021-34478 | CVE-2021-3918 | 严重 |
| Npm is-my-json-valid 资源管理错误漏洞 | 拒绝服务 | MPS-2021-3563 | CVE-2018-1107 | 中危 |
| org.webjars.bower:underscore 代码注入漏洞 | 代码注入 | MPS-2021-3658 | CVE-2021-23358 | 高危 |
| Oracle MySQL 的 MySQL Connectors 存在授权不当漏洞 | 授权机制不恰当 | MPS-2021-36587 | CVE-2022-21363 | 中危 |
| braces | 拒绝服务 | MPS-2021-3692 | CVE-2018-1109 | 中危 |
| marked 存在拒绝服务漏洞 | ReDoS | MPS-2021-37038 | CVE-2022-21680 | 高危 |
| marked 存在拒绝服务漏洞 | 过度严格的正则表达式 | MPS-2021-37039 | CVE-2022-21681 | 高危 |
| log4js-node 存在信息泄露漏洞 | 缺省权限不正确 | MPS-2021-37062 | CVE-2022-21704 | 中危 |
| Npm netmask 访问控制绕过漏洞 | 访问控制不当 | MPS-2021-3762 | CVE-2021-29418 | 中危 |
| netmask | 不正确的类型转换 | MPS-2021-3808 | CVE-2021-28918 | 严重 |
| minimist 安全漏洞 | 原型污染 | MPS-2021-38405 | CVE-2021-44906 | 严重 |
| Apache Commons IO 存在路径遍历漏洞 | 路径遍历 | MPS-2021-4531 | CVE-2021-29425 | 中危 |
| handlebars 远程代码执行 (RCE) 漏洞 | 代码注入 | MPS-2021-4548 | CVE-2021-23369 | 严重 |
| node-redis 正则表达式拒绝服务 (ReDoS) | 拒绝服务 | MPS-2021-5152 | CVE-2021-29469 | 高危 |
| Dan DeFelippi node-XMLHttpRequest 信任管理问题漏洞 | 证书验证不恰当 | MPS-2021-5338 | CVE-2021-31597 | 严重 |
| npm path-parse 安全漏洞 | 拒绝服务 | MPS-2021-6165 | CVE-2021-23343 | 高危 |
| handlebars | 原型污染 | MPS-2021-6180 | CVE-2021-23383 | 严重 |
| ws 存在拒绝服务漏洞 | 拒绝服务 | MPS-2021-7109 | CVE-2021-32640 | 中危 |
| trim-newlines 存在拒绝服务漏洞 | 拒绝服务 | MPS-2021-7398 | CVE-2021-33623 | 高危 |
| glob-parent | 拒绝服务 | MPS-2021-7827 | CVE-2020-28469 | 高危 |
| Nodemailer 注入漏洞 | 注入 | MPS-2021-9219 | CVE-2021-23400 | 高危 |
| shelljs | 权限管理不当 | MPS-2022-0508 | CVE-2022-0144 | 高危 |
| follow-redirects | 侵犯隐私 | MPS-2022-0815 | CVE-2022-0155 | 中危 |
| Vmware Spring Framework 安全漏洞 | 不加限制或调节的资源分配 | MPS-2022-1080 | CVE-2022-22950 | 中危 |
| Pivotal Spring Framework 安全限制绕过漏洞 | 大小写敏感处理不恰当 | MPS-2022-1098 | CVE-2022-22968 | 中危 |
| Pivotal Spring Security OAuth 存在拒绝服务漏洞 | 拒绝服务 | MPS-2022-1099 | CVE-2022-22969 | 中危 |
| Spring Framework spring-beans 存在拒绝服务漏洞 | 不加限制或调节的资源分配 | MPS-2022-1101 | CVE-2022-22970 | 中危 |
| VMware Spring Security 授权问题漏洞 | 授权检查错误 | MPS-2022-1108 | CVE-2022-22978 | 严重 |
| commons-codec:commons-codec 存在信息泄露漏洞 | 未授权敏感信息泄露 | MPS-2022-11853 | 低危 | |
| Pivotal Spring Framework CSRF 令牌泄露漏洞 | 通过时间差异性导致的信息暴露 | MPS-2022-11893 | 低危 | |
| com.google.code.gson:gson 存在BigDecimal拒绝服务漏洞 | 反序列化 | MPS-2022-12287 | CVE-2022-25647 | 高危 |
| Logback SSL证书校验不当漏洞 | 中间人攻击 | MPS-2022-12411 | 中危 | |
| com.fasterxml.jackson.core:jackson-databind 存在反序列化漏洞 | 反序列化 | MPS-2022-12433 | 高危 | |
| concat-stream 存在信息泄露漏洞 | 通过发送数据的信息暴露 | MPS-2022-12867 | 中危 | |
| diff 存在拒绝服务漏洞 | 拒绝服务 | MPS-2022-12883 | 高危 | |
| ip | 通过发送数据的信息暴露 | MPS-2022-12945 | 中危 | |
| jasmine-core 存在拒绝服务漏洞 | 拒绝服务 | MPS-2022-12948 | 低危 | |
| marked | XSS | MPS-2022-12984 | 高危 | |
| marked | XSS | MPS-2022-12985 | 中危 | |
| marked | 拒绝服务 | MPS-2022-12986 | 高危 | |
| mem | 拒绝服务 | MPS-2022-12990 | 中危 | |
| conventional-commits-parser | ReDoS | MPS-2022-13608 | 中危 | |
| elliptic | 竞争条件 | MPS-2022-13653 | 中危 | |
| handlebars 存在原型污染漏洞 | MAID | MPS-2022-13730 | 高危 | |
| handlebars 存在原型污染漏洞 | MAID | MPS-2022-13731 | 高危 | |
| handlebars 存在拒绝服务漏洞 | 拒绝服务 | MPS-2022-13732 | 高危 | |
| handlebars 存在代码注入漏洞 | 代码注入 | MPS-2022-13733 | 高危 | |
| handlebars 存在拒绝服务漏洞 | 拒绝服务 | MPS-2022-13734 | 严重 | |
| handlebars | 拒绝服务 | MPS-2022-13735 | 中危 | |
| highlight.js 存在拒绝服务漏洞 | 拒绝服务 | MPS-2022-13759 | 中危 | |
| http-proxy | 拒绝服务 | MPS-2022-13767 | 中危 | |
| https-proxy-agent 存在中间人攻击漏洞 | 中间人攻击 | MPS-2022-13770 | 中危 | |
| is-my-json-valid 存在拒绝服务漏洞 | 拒绝服务 | MPS-2022-13795 | 高危 | |
| is-my-json-valid | 代码注入 | MPS-2022-13796 | 高危 | |
| jsonpointer | 拒绝服务 | MPS-2022-13815 | 严重 | |
| lodash | 拒绝服务 | MPS-2022-13841 | 高危 | |
| lodash | 拒绝服务 | MPS-2022-13842 | 高危 | |
| marked 存在拒绝服务漏洞 | 拒绝服务 | MPS-2022-13861 | 中危 | |
| marked | 拒绝服务 | MPS-2022-13863 | 中危 | |
| marked | ReDoS | MPS-2022-13864 | 中危 | |
| uglify-js | ReDoS | MPS-2022-14112 | 中危 | |
| Apache XercesJ | XPath盲注 | MPS-2022-1864 | CVE-2022-23437 | 中危 |
| Karma 跨站脚本漏洞 | XSS | MPS-2022-2997 | CVE-2022-0437 | 中危 |
| follow-redirects | 未授权敏感信息泄露 | MPS-2022-3636 | CVE-2022-0536 | 中危 |
| Express 中的 qs 模块存在原型污染漏洞 | 原型污染 | MPS-2022-3967 | CVE-2022-24999 | 高危 |
| node-request-retry 信息泄露漏洞 | 未授权敏感信息泄露 | MPS-2022-4367 | CVE-2022-0654 | 高危 |
| snakeYAML | 拒绝服务 | MPS-2022-5144 | CVE-2022-25857 | 高危 |
| node-semver 安全漏洞 | ReDoS | MPS-2022-5166 | CVE-2022-25883 | 高危 |
| loader-utils 安全漏洞 | 不正确的正则表达式 | MPS-2022-53512 | CVE-2022-37599 | 高危 |
| loader-utils 安全漏洞 | 不正确的正则表达式 | MPS-2022-53516 | CVE-2022-37603 | 高危 |
| snakeYAML | 栈缓冲区溢出 | MPS-2022-56040 | CVE-2022-38751 | 中危 |
| snakeYAML | 栈缓冲区溢出 | MPS-2022-56041 | CVE-2022-38752 | 低危 |
| snakeYAML | 栈缓冲区溢出 | MPS-2022-56051 | CVE-2022-38750 | 中危 |
| snakeYAML | 拒绝服务 | MPS-2022-56081 | CVE-2022-38749 | 中危 |
| SnakeYAML | 栈缓冲区溢出 | MPS-2022-58478 | CVE-2022-41854 | 中危 |
| Socketio Engine.IO拒绝服务漏洞 | 未捕获的异常 | MPS-2022-58577 | CVE-2022-41940 | 中危 |
| FasterXML jackson-databind 小于2.14.0-rc1拒绝服务漏洞 | 拒绝服务 | MPS-2022-58653 | CVE-2022-42003 | 中危 |
| FasterXML jackson-databind 小于2.13.4拒绝服务漏洞 | 拒绝服务 | MPS-2022-58654 | CVE-2022-42004 | 中危 |
| minimatch 资源管理错误漏洞 | 拒绝服务 | MPS-2022-59845 | CVE-2022-3517 | 高危 |
| FasterXML jackson-databind 拒绝服务漏洞 | 越界写入 | MPS-2022-6242 | CVE-2020-36518 | 高危 |
| Spring Expression 存在拒绝服务漏洞 | 拒绝服务 | MPS-2022-62835 | CVE-2023-20863 | 高危 |
| Spring Boot 欢迎页功能拒绝服务风险 | 拒绝服务 | MPS-2022-62855 | CVE-2023-20883 | 高危 |
| Tauri 原型污染漏洞 | 原型污染 | MPS-2022-65568 | CVE-2022-46175 | 高危 |
| spring-boot | 将资源暴露给错误范围 | MPS-2022-6780 | CVE-2022-27772 | 高危 |
| spring-beans 远程代码执行漏洞(Spring4Shell) | 表达式语言注入 | MPS-2022-6820 | CVE-2022-22965 | 严重 |
| HtmlUnit 存在拒绝服务漏洞 | 未经控制的内存分配 | MPS-2022-7514 | CVE-2022-28366 | 高危 |
| hawk 资源管理错误漏洞 | 拒绝服务 | MPS-2022-8568 | CVE-2022-29167 | 高危 |
| snakeYAML | 反序列化 | MPS-2022-9425 | CVE-2022-1471 | 高危 |
| vercel ms 安全漏洞 | ReDoS | MPS-2023-0304 | CVE-2017-20162 | 中危 |
| debug 安全漏洞 | ReDoS | MPS-2023-0646 | CVE-2017-20165 | 高危 |
| tough-cookie 安全漏洞 | 原型污染 | MPS-2023-5130 | CVE-2023-26136 | 严重 |
| request SSRF防御绕过漏洞 | SSRF | MPS-2023-7722 | CVE-2023-28155 | 中危 |
| fsevents 安全漏洞 | 代码注入 | MPS-2ipy-muq0 | CVE-2023-45311 | 严重 |
| tough-cookie | 原型污染 | MPS-esyq-56vx | 中危 | |
| browserify-sign | 密码学签名的验证不恰当 | MPS-gimb-o69n | CVE-2023-46234 | 中危 |
| Guava | 创建拥有不安全权限的临时文件 | MPS-mfku-xzh3 | CVE-2023-2976 | 中危 |
| 【存在争议】FasterXML jackson-databind 代码问题漏洞 | 不加限制或调节的资源分配 | MPS-z1bx-p8y2 | CVE-2023-35116 | 中危 |
缺陷组件
| 组件名称 | 版本 | 最小修复版本 | 依赖关系 | 修复建议 |
|---|---|---|---|---|
| xmlhttprequest-ssl | 1.5.4 | 1.6.2 | 间接依赖 | 强烈建议修复 |
| shell-quote | 1.6.1 | 1.7.3 | 间接依赖 | 强烈建议修复 |
| underscore | 1.7.0 | 1.12.1 | 间接依赖 | 建议修复 |
| cached-path-relative | 1.0.1 | 1.1.0 | 间接依赖 | 建议修复 |
| socket.io-parser | 3.1.2 | 3.3.2 | 间接依赖 | 建议修复 |
| com.fasterxml.jackson.core:jackson-databind | 2.8.8 | 间接依赖 | 建议修复 | |
| io.springfox:springfox-swagger-ui | 2.7.0 | 2.10.0 | 直接依赖 | 建议修复 |
| org.yaml:snakeyaml | 1.17 | 2.0 | 间接依赖 | 建议修复 |
| minimist | 0.0.8 | 1.2.6 | 间接依赖 | 建议修复 |
| shelljs | 0.7.8 | 0.8.5 | 间接依赖 | 建议修复 |
| org.springframework:spring-webmvc | 4.3.8.RELEASE | 4.3.18.RELEASE | 间接依赖 | 建议修复 |
| qs | 6.4.0 | 6.4.1 | 间接依赖 | 建议修复 |
| path-parse | 1.0.5 | 1.0.7 | 间接依赖 | 建议修复 |
| marked | 0.3.6 | 4.0.10 | 间接依赖 | 建议修复 |
| org.springframework.boot:spring-boot | 1.5.3.RELEASE | 2.2.11.RELEASE | 间接依赖 | 建议修复 |
| qs | 6.2.3 | 6.2.4 | 间接依赖 | 建议修复 |
| loader-utils | 0.2.17 | 1.4.2 | 间接依赖 | 建议修复 |
| tough-cookie | 2.3.2 | 4.1.3 | 间接依赖 | 建议修复 |
| http-proxy-agent | 1.0.0 | 2.1.0 | 间接依赖 | 建议修复 |
| netmask | 1.0.6 | 2.0.1 | 间接依赖 | 建议修复 |
| redis | 2.8.0 | 3.1.1 | 直接依赖 | 建议修复 |
| pac-resolver | 2.0.0 | 5.0.0 | 间接依赖 | 建议修复 |
| ch.qos.logback:logback-classic | 1.1.11 | 1.2.0 | 间接依赖 | 建议修复 |
| extend | 3.0.1 | 3.0.2 | 间接依赖 | 建议修复 |
| qs | 6.3.2 | 6.3.3 | 间接依赖 | 建议修复 |
| debug | 2.2.0 | 2.6.9 | 间接依赖 | 建议修复 |
| org.springframework.security.oauth:spring-security-oauth2 | 2.0.13.RELEASE | 2.5.2.RELEASE | 直接依赖 | 建议修复 |
| atob | 2.0.3 | 2.1.0 | 间接依赖 | 建议修复 |
| handlebars | 4.0.5 | 4.7.7 | 间接依赖 | 建议修复 |
| org.springframework:spring-web | 4.3.8.RELEASE | 6.0.0 | 间接依赖 | 建议修复 |
| org.springframework.security:spring-security-web | 4.2.2.RELEASE | 5.5.7 | 间接依赖 | 建议修复 |
| axios | 0.15.3 | 0.21.3 | 直接依赖 | 建议修复 |
| fstream | 1.0.11 | 1.0.12 | 间接依赖 | 建议修复 |
| org.springframework:spring-beans | 4.3.8.RELEASE | 5.2.22.RELEASE | 间接依赖 | 建议修复 |
| hoek | 4.2.0 | 4.2.1 | 间接依赖 | 建议修复 |
| ch.qos.logback:logback-core | 1.1.11 | 1.2.8 | 间接依赖 | 建议修复 |
| lodash | 4.17.4 | 4.17.21 | 直接依赖 | 建议修复 |
| hoek | 2.16.3 | 4.2.1 | 间接依赖 | 建议修复 |
| requestretry | 1.12.2 | 7.0.0 | 间接依赖 | 建议修复 |
| org.hibernate:hibernate-core | 5.0.12.Final | 5.4.24.Final | 间接依赖 | 建议修复 |
| mysql:mysql-connector-java | 5.1.41 | 8.0.28 | 直接依赖 | 建议修复 |
| debug | 2.6.8 | 2.6.9 | 间接依赖 | 建议修复 |
| json5 | 0.5.1 | 1.0.2 | 间接依赖 | 建议修复 |
| engine.io | 3.1.4 | 6.4.2 | 间接依赖 | 建议修复 |
| tar | 2.2.1 | 4.4.18 | 间接依赖 | 建议修复 |
| debug | 2.6.7 | 2.6.9 | 间接依赖 | 建议修复 |
| deep-extend | 0.4.2 | 0.5.1 | 间接依赖 | 建议修复 |
| loader-utils | 1.1.0 | 1.4.2 | 间接依赖 | 建议修复 |
| handlebars | 4.0.11 | 4.7.7 | 间接依赖 | 建议修复 |
| com.google.guava:guava | 18.0 | 32.0.0-jre | 间接依赖 | 建议修复 |
| https-proxy-agent | 1.0.0 | 2.2.3 | 间接依赖 | 建议修复 |
| mime | 1.3.6 | 1.4.1 | 间接依赖 | 建议修复 |
| ini | 1.3.4 | 1.3.6 | 间接依赖 | 建议修复 |
| glob-parent | 2.0.0 | 5.1.2 | 间接依赖 | 建议修复 |
| org.springframework:spring-core | 4.3.8.RELEASE | 5.2.23.RELEASE | 间接依赖 | 建议修复 |
| is-my-json-valid | 2.16.0 | 2.20.3 | 间接依赖 | 建议修复 |
| qs | 6.5.1 | 6.5.3 | 间接依赖 | 建议修复 |
| elliptic | 6.4.0 | 6.5.4 | 间接依赖 | 建议修复 |
| org.springframework.security:spring-security-core | 4.2.2.RELEASE | 5.2.9.RELEASE | 间接依赖 | 建议修复 |
| cryptiles | 3.1.2 | 3.1.3 | 间接依赖 | 建议修复 |
| minimist | 1.2.0 | 1.2.6 | 间接依赖 | 建议修复 |
| minimatch | 3.0.4 | 3.0.5 | 间接依赖 | 建议修复 |
| nodemailer | 2.7.2 | 6.6.1 | 直接依赖 | 建议修复 |
| org.springframework.data:spring-data-commons | 1.13.3.RELEASE | 1.13.11.RELEASE | 间接依赖 | 建议修复 |
| json-schema | 0.2.3 | 0.4.0 | 间接依赖 | 建议修复 |
| tough-cookie | 2.3.3 | 4.1.3 | 间接依赖 | 建议修复 |
| org.codehaus.jackson:jackson-mapper-asl | 1.9.13 | 间接依赖 | 建议修复 | |
| diff | 3.2.0 | 3.5.0 | 间接依赖 | 建议修复 |
| dom4j:dom4j | 1.6.1 | 间接依赖 | 建议修复 | |
| jsonpointer | 4.0.1 | 5.0.0 | 间接依赖 | 建议修复 |
| y18n | 3.2.1 | 3.2.2 | 间接依赖 | 建议修复 |
| org.hibernate:hibernate-validator | 5.3.5.Final | 6.0.19.Final | 间接依赖 | 建议修复 |
| dot-prop | 3.0.0 | 4.2.1 | 间接依赖 | 建议修复 |
| browserify-sign | 4.0.4 | 4.2.2 | 间接依赖 | 建议修复 |
| sshpk | 1.13.1 | 1.14.1 | 间接依赖 | 建议修复 |
| hawk | 3.1.3 | 9.0.1 | 间接依赖 | 建议修复 |
| timespan | 2.3.0 | 间接依赖 | 建议修复 | |
| trim-newlines | 1.0.0 | 3.0.1 | 间接依赖 | 建议修复 |
| minimist | 0.0.10 | 1.2.6 | 间接依赖 | 建议修复 |
| lodash | 3.10.1 | 4.17.21 | 间接依赖 | 建议修复 |
| org.springframework:spring-context | 4.3.8.RELEASE | 5.2.21.RELEASE | 间接依赖 | 建议修复 |
| hawk | 6.0.2 | 9.0.1 | 间接依赖 | 建议修复 |
| debug | 0.7.4 | 2.6.9 | 间接依赖 | 建议修复 |
| com.google.code.gson:gson | 2.8.0 | 2.8.9 | 间接依赖 | 可选修复 |
| uglify-js | 3.1.2 | 3.14.3 | 间接依赖 | 可选修复 |
| socket.io | 2.0.4 | 2.4.0 | 间接依赖 | 可选修复 |
| org.springframework.boot:spring-boot-autoconfigure | 1.5.3.RELEASE | 2.5.15 | 间接依赖 | 可选修复 |
| async | 2.5.0 | 2.6.4 | 间接依赖 | 可选修复 |
| braces | 0.1.5 | 2.3.1 | 间接依赖 | 可选修复 |
| ajv | 4.11.8 | 6.12.3 | 间接依赖 | 可选修复 |
| highlight.js | 9.12.0 | 10.4.1 | 间接依赖 | 可选修复 |
| request | 2.79.0 | 间接依赖 | 可选修复 | |
| karma | 2.0.0 | 6.3.16 | 直接依赖 | 可选修复 |
| xerces:xercesImpl | 2.11.0 | 2.12.2 | 间接依赖 | 可选修复 |
| hosted-git-info | 2.5.0 | 2.8.9 | 间接依赖 | 可选修复 |
| yargs-parser | 7.0.0 | 13.1.2 | 间接依赖 | 可选修复 |
| request | 2.81.0 | 间接依赖 | 可选修复 | |
| braces | 1.8.5 | 2.3.1 | 间接依赖 | 可选修复 |
| org.springframework.data:spring-data-jpa | 1.11.3.RELEASE | 1.11.22.RELEASE | 间接依赖 | 可选修复 |
| ws | 3.3.3 | 5.2.3 | 间接依赖 | 可选修复 |
| request | 2.75.0 | 间接依赖 | 可选修复 | |
| org.apache.httpcomponents:httpclient | 4.5.3 | 4.5.13 | 直接依赖 | 可选修复 |
| concat-stream | 1.5.0 | 1.5.2 | 间接依赖 | 可选修复 |
| http-proxy | 1.16.2 | 1.18.1 | 间接依赖 | 可选修复 |
| semver | 5.0.3 | 7.5.2 | 间接依赖 | 可选修复 |
| ms | 0.7.1 | 2.0.0 | 间接依赖 | 可选修复 |
| yargs-parser | 8.1.0 | 13.1.2 | 间接依赖 | 可选修复 |
| conventional-commits-parser | 1.3.0 | 3.2.3 | 间接依赖 | 可选修复 |
| ajv | 5.5.2 | 6.12.3 | 间接依赖 | 可选修复 |
| lodash.template | 4.4.0 | 间接依赖 | 可选修复 | |
| uglify-js | 2.8.29 | 3.14.3 | 直接依赖 | 可选修复 |
| log4js | 2.4.1 | 6.4.0 | 间接依赖 | 可选修复 |
| bl | 1.1.2 | 1.2.3 | 间接依赖 | 可选修复 |
| follow-redirects | 1.0.0 | 1.14.8 | 间接依赖 | 可选修复 |
| request | 2.83.0 | 间接依赖 | 可选修复 | |
| uws | 0.14.5 | 直接依赖 | 可选修复 | |
| fsevents | 1.1.2 | 1.2.11 | 直接依赖 | 可选修复 |
| commons-codec:commons-codec | 1.10 | 1.13 | 间接依赖 | 可选修复 |
| org.codehaus.groovy:groovy | 2.4.10 | 2.4.21 | 间接依赖 | 可选修复 |
| commons-io:commons-io | 2.4 | 2.7 | 间接依赖 | 可选修复 |
| conventional-commits-parser | 2.1.0 | 3.2.3 | 间接依赖 | 可选修复 |
| async | 2.1.5 | 2.6.4 | 间接依赖 | 可选修复 |
| mem | 1.1.0 | 4.0.0 | 间接依赖 | 可选修复 |
| jasmine-core | 2.8.0 | 3.1.0 | 直接依赖 | 可选修复 |
| org.springframework:spring-expression | 4.3.8.RELEASE | 5.2.24 | 间接依赖 | 可选修复 |
| net.sourceforge.nekohtml:nekohtml | 1.9.22 | 直接依赖 | 可选修复 | |
| semver | 5.3.0 | 7.5.2 | 间接依赖 | 可选修复 |
| ip | 1.0.1 | 1.1.5 | 间接依赖 | 可选修复 |
| stringstream | 0.0.5 | 0.0.6 | 间接依赖 | 可选修复 |
| ajv | 5.2.3 | 6.12.3 | 间接依赖 | 可选修复 |
| trim-off-newlines | 1.0.1 | 1.0.3 | 间接依赖 | 可选修复 |
许可证风险
| 许可证类型 | 相关组件 | 许可证风险 |
|---|---|---|
| MIT | 629 | 低 |
| BSD-3-Clause | 28 | 低 |
| ISC | 75 | 低 |
| Apache-2.0 | 113 | 低 |
| LGPL-2.1 | 1 | 中 |
| MPL-1.1 | 1 | 低 |
| Zlib | 1 | 低 |
| 自定义许可证 | 14 | 低 |
| EPL-1.0 | 4 | 低 |
| Unlicense | 2 | 低 |
| BSD-2-Clause | 11 | 低 |
| WTFPL | 1 | 低 |
| Public Domain | 1 | 低 |
| BSD | 1 | 低 |
SBOM清单
| 组件名称 | 组件版本 | 是否直接依赖 | 仓库 |
|---|---|---|---|
| @types/angular-mocks | 1.5.11 | 直接依赖 | npm |
| cryptiles | 3.1.2 | 间接依赖 | npm |
| statuses | 1.3.1 | 间接依赖 | npm |
| crypto-browserify | 3.12.0 | 间接依赖 | npm |
| async | 1.5.2 | 间接依赖 | npm |
| https-browserify | 1.0.0 | 间接依赖 | npm |
| fstream-ignore | 1.0.5 | 间接依赖 | npm |
| jsbn | 0.1.1 | 间接依赖 | npm |
| loader-utils | 0.2.17 | 间接依赖 | npm |
| har-validator | 4.2.1 | 间接依赖 | npm |
| redent | 1.0.0 | 间接依赖 | npm |
| get-pkg-repo | 1.4.0 | 间接依赖 | npm |
| resolve | 1.1.7 | 间接依赖 | npm |
| org.springframework.boot:spring-boot-starter-mail | 1.5.3.RELEASE | 直接依赖 | maven |
| boom | 2.10.1 | 间接依赖 | npm |
| get-stream | 2.3.1 | 间接依赖 | npm |
| split | 1.0.0 | 间接依赖 | npm |
| strip-eof | 1.0.0 | 间接依赖 | npm |
| json5 | 0.5.1 | 间接依赖 | npm |
| is-text-path | 1.0.1 | 间接依赖 | npm |
| indexof | 0.0.1 | 间接依赖 | npm |
| acorn | 4.0.13 | 间接依赖 | npm |
| lodash._reinterpolate | 3.0.0 | 间接依赖 | npm |
| ansi-regex | 3.0.0 | 间接依赖 | npm |
| set-blocking | 2.0.0 | 间接依赖 | npm |
| engine.io-parser | 2.1.1 | 间接依赖 | npm |
| file-uri-to-path | 1.0.0 | 间接依赖 | npm |
| loader-runner | 2.3.0 | 间接依赖 | npm |
| git-remote-origin-url | 2.0.0 | 间接依赖 | npm |
| asynckit | 0.4.0 | 间接依赖 | npm |
| conventional-changelog-core | 1.9.5 | 间接依赖 | npm |
| double-ended-queue | 2.1.0-0 | 间接依赖 | npm |
| resolve | 1.5.0 | 间接依赖 | npm |
| lodash.endswith | 4.2.1 | 间接依赖 | npm |
| browserify | 14.5.0 | 间接依赖 | npm |
| aws-sign2 | 0.6.0 | 间接依赖 | npm |
| path-browserify | 0.0.0 | 间接依赖 | npm |
| combined-stream | 1.0.5 | 间接依赖 | npm |
| nodemailer | 2.7.2 | 直接依赖 | npm |
| has-binary2 | 1.0.2 | 间接依赖 | npm |
| stream-browserify | 2.0.1 | 间接依赖 | npm |
| safe-buffer | 5.1.1 | 间接依赖 | npm |
| os-tmpdir | 1.0.2 | 间接依赖 | npm |
| io.springfox:springfox-spring-web | 2.7.0 | 间接依赖 | maven |
| path-type | 1.1.0 | 间接依赖 | npm |
| wordwrap | 0.0.2 | 间接依赖 | npm |
| hoek | 4.2.0 | 间接依赖 | npm |
| org.javassist:javassist | 3.21.0-GA | 间接依赖 | maven |
| convert-source-map | 1.1.3 | 间接依赖 | npm |
| ognl:ognl | 3.0.8 | 间接依赖 | maven |
| util-deprecate | 1.0.2 | 间接依赖 | npm |
| builtin-status-codes | 3.0.0 | 间接依赖 | npm |
| q | 1.5.0 | 间接依赖 | npm |
| org.springframework:spring-context | 4.3.8.RELEASE | 间接依赖 | maven |
| tweak-sourcemap-paths | 0.0.3 | 间接依赖 | npm |
| iconv-lite | 0.4.15 | 间接依赖 | npm |
| typedoc | 0.9.0 | 直接依赖 | npm |
| engine.io-client | 3.1.4 | 间接依赖 | npm |
| url | 0.11.0 | 间接依赖 | npm |
| is-obj | 1.0.1 | 间接依赖 | npm |
| phantomjs-prebuilt | 2.1.14 | 间接依赖 | npm |
| path-is-absolute | 1.0.1 | 间接依赖 | npm |
| typedoc-plugin-ui-router | 1.0.6 | 直接依赖 | npm |
| har-schema | 1.0.5 | 间接依赖 | npm |
| blob | 0.0.4 | 间接依赖 | npm |
| punycode | 1.4.1 | 间接依赖 | npm |
| uws | 0.14.5 | 直接依赖 | npm |
| is-symbol | 1.0.1 | 间接依赖 | npm |
| follow-redirects | 1.0.0 | 间接依赖 | npm |
| es6-promise | 4.0.5 | 间接依赖 | npm |
| typescript | 2.6.2 | 直接依赖 | npm |
| addressparser | 1.0.1 | 间接依赖 | npm |
| node-libs-browser | 2.0.0 | 间接依赖 | npm |
| conventional-changelog-atom | 0.1.0 | 间接依赖 | npm |
| git-semver-tags | 1.2.3 | 间接依赖 | npm |
| binary-extensions | 1.8.0 | 间接依赖 | npm |
| browserify-rsa | 4.0.1 | 间接依赖 | npm |
| fast-json-stable-stringify | 2.0.0 | 间接依赖 | npm |
| array-ify | 1.0.0 | 间接依赖 | npm |
| org.hibernate:hibernate-entitymanager | 5.0.12.Final | 间接依赖 | maven |
| assert | 1.4.1 | 间接依赖 | npm |
| has-cors | 1.1.0 | 间接依赖 | npm |
| create-hash | 1.1.3 | 间接依赖 | npm |
| ts-loader | 3.2.0 | 直接依赖 | npm |
| com.fasterxml.jackson.core:jackson-core | 2.8.8 | 间接依赖 | maven |
| aws4 | 1.6.0 | 间接依赖 | npm |
| com.fasterxml:classmate | 1.3.3 | 间接依赖 | maven |
| bluebird | 3.5.0 | 间接依赖 | npm |
| punycode | 1.3.2 | 间接依赖 | npm |
| source-map-resolve | 0.5.0 | 间接依赖 | npm |
| qs | 6.2.3 | 间接依赖 | npm |
| prr | 0.0.0 | 间接依赖 | npm |
| resolve | 1.3.3 | 间接依赖 | npm |
| useragent | 2.1.13 | 间接依赖 | npm |
| browserify-zlib | 0.1.4 | 间接依赖 | npm |
| chalk | 1.1.3 | 间接依赖 | npm |
| vm-browserify | 0.0.4 | 间接依赖 | npm |
| typedoc-plugin-single-line-tags | 1.0.0 | 直接依赖 | npm |
| deps-sort | 2.0.0 | 间接依赖 | npm |
| raw-body | 2.2.0 | 间接依赖 | npm |
| org.thymeleaf.extras:thymeleaf-extras-springsecurity4 | 2.1.3.RELEASE | 直接依赖 | maven |
| org.hibernate.javax.persistence:hibernate-jpa-2.1-api | 1.0.0.Final | 间接依赖 | maven |
| is-extglob | 1.0.0 | 间接依赖 | npm |
| once | 1.4.0 | 间接依赖 | npm |
| es6-weak-map | 2.0.2 | 间接依赖 | npm |
| arrify | 1.0.1 | 间接依赖 | npm |
| parseuri | 0.0.5 | 间接依赖 | npm |
| json-loader | 0.5.7 | 间接依赖 | npm |
| source-map | 0.4.4 | 间接依赖 | npm |
| yallist | 2.1.2 | 间接依赖 | npm |
| org.apache.lucene:lucene-core | 7.2.1 | 间接依赖 | maven |
| @types/highlight.js | 9.1.8 | 间接依赖 | npm |
| xmlhttprequest-ssl | 1.5.4 | 间接依赖 | npm |
| tough-cookie | 2.3.3 | 间接依赖 | npm |
| debug | 2.6.7 | 间接依赖 | npm |
| path-proxy | 1.0.0 | 间接依赖 | npm |
| net.sourceforge.nekohtml:nekohtml | 1.9.22 | 直接依赖 | maven |
| process-nextick-args | 1.0.7 | 间接依赖 | npm |
| q | 1.4.1 | 间接依赖 | npm |
| libmime | 3.0.0 | 间接依赖 | npm |
| socket.io-adapter | 1.1.1 | 间接依赖 | npm |
| camelcase | 4.1.0 | 间接依赖 | npm |
| jsonparse | 1.3.1 | 间接依赖 | npm |
| @types/shelljs | 0.7.0 | 间接依赖 | npm |
| eventemitter3 | 1.2.0 | 间接依赖 | npm |
| date-now | 0.1.4 | 间接依赖 | npm |
| bcrypt-pbkdf | 1.0.1 | 直接依赖 | npm |
| amdefine | 1.0.0 | 间接依赖 | npm |
| org.thymeleaf:thymeleaf-spring4 | 2.1.5.RELEASE | 间接依赖 | maven |
| os-browserify | 0.2.1 | 间接依赖 | npm |
| stream-combiner | 0.0.4 | 间接依赖 | npm |
| ws | 3.3.3 | 间接依赖 | npm |
| better-assert | 1.0.2 | 间接依赖 | npm |
| string.prototype.padend | 3.0.0 | 间接依赖 | npm |
| slack-node | 0.2.0 | 直接依赖 | npm |
| async | 2.5.0 | 间接依赖 | npm |
| debug | 2.6.9 | 间接依赖 | npm |
| setimmediate | 1.0.5 | 间接依赖 | npm |
| depd | 1.1.1 | 间接依赖 | npm |
| browserify-cipher | 1.0.0 | 间接依赖 | npm |
| braces | 1.8.5 | 间接依赖 | npm |
| string_decoder | 0.10.31 | 间接依赖 | npm |
| memory-fs | 0.4.1 | 间接依赖 | npm |
| browserify-aes | 1.0.8 | 间接依赖 | npm |
| insert-module-globals | 7.0.1 | 间接依赖 | npm |
| mime-db | 1.27.0 | 间接依赖 | npm |
| babel-code-frame | 6.22.0 | 间接依赖 | npm |
| org.springframework:spring-core | 4.3.8.RELEASE | 间接依赖 | maven |
| shebang-command | 1.2.0 | 间接依赖 | npm |
| io.swagger:swagger-annotations | 1.5.13 | 间接依赖 | maven |
| org.springframework.boot:spring-boot-autoconfigure | 1.5.3.RELEASE | 间接依赖 | maven |
| handlebars | 4.0.5 | 间接依赖 | npm |
| extend | 3.0.1 | 间接依赖 | npm |
| conventional-commits-filter | 1.0.0 | 间接依赖 | npm |
| subarg | 1.0.0 | 间接依赖 | npm |
| json-schema-traverse | 0.3.1 | 间接依赖 | npm |
| chalk | 2.3.0 | 间接依赖 | npm |
| org.springframework:spring-orm | 4.3.8.RELEASE | 间接依赖 | maven |
| stringstream | 0.0.5 | 间接依赖 | npm |
| rollup-pluginutils | 2.0.1 | 间接依赖 | npm |
| karma | 2.0.0 | 直接依赖 | npm |
| ultron | 1.1.1 | 间接依赖 | npm |
| org.springframework.boot:spring-boot-starter | 1.5.3.RELEASE | 间接依赖 | maven |
| nodemailer-smtp-pool | 2.8.2 | 间接依赖 | npm |
| debug | 2.6.8 | 间接依赖 | npm |
| component-bind | 1.0.0 | 间接依赖 | npm |
| com.fasterxml.jackson.core:jackson-annotations | 2.8.0 | 间接依赖 | maven |
| org.springframework:spring-tx | 4.3.8.RELEASE | 间接依赖 | maven |
| for-own | 0.1.5 | 间接依赖 | npm |
| builtin-modules | 1.1.1 | 间接依赖 | npm |
| webpack | 3.10.0 | 直接依赖 | npm |
| conventional-changelog-express | 0.2.1 | 间接依赖 | npm |
| socket.io-client | 2.0.4 | 间接依赖 | npm |
| mime-types | 2.1.15 | 间接依赖 | npm |
| redis-commands | 1.3.1 | 间接依赖 | npm |
| npmlog | 4.1.2 | 间接依赖 | npm |
| debug | 2.2.0 | 间接依赖 | npm |
| right-align | 0.1.3 | 间接依赖 | npm |
| source-map | 0.5.6 | 间接依赖 | npm |
| @types/angular | 1.6.25 | 直接依赖 | npm |
| is-posix-bracket | 0.1.1 | 间接依赖 | npm |
| org.springframework.boot:spring-boot-configuration-processor | 1.5.3.RELEASE | 直接依赖 | maven |
| trim-off-newlines | 1.0.1 | 间接依赖 | npm |
| camelcase-keys | 2.1.0 | 间接依赖 | npm |
| js-tokens | 3.0.2 | 间接依赖 | npm |
| socks | 1.1.10 | 间接依赖 | npm |
| strip-bom | 2.0.0 | 间接依赖 | npm |
| which | 1.3.0 | 间接依赖 | npm |
| concat-stream | 1.5.0 | 间接依赖 | npm |
| base64-js | 1.2.1 | 间接依赖 | npm |
| asn1 | 0.2.3 | 间接依赖 | npm |
| utils-merge | 1.0.0 | 间接依赖 | npm |
| unpipe | 1.0.0 | 间接依赖 | npm |
| mime-db | 1.30.0 | 间接依赖 | npm |
| shelljs | 0.7.8 | 间接依赖 | npm |
| pbkdf2 | 3.0.14 | 间接依赖 | npm |
| split | 0.3.3 | 间接依赖 | npm |
| nopt | 4.0.1 | 间接依赖 | npm |
| har-validator | 2.0.6 | 间接依赖 | npm |
| @types/jasmine | 2.8.2 | 直接依赖 | npm |
| callsite | 1.0.0 | 间接依赖 | npm |
| spdx-license-ids | 1.2.2 | 间接依赖 | npm |
| nodemailer-shared | 1.1.0 | 间接依赖 | npm |
| get-uri | 2.0.1 | 间接依赖 | npm |
| performance-now | 2.1.0 | 间接依赖 | npm |
| javax.transaction:javax.transaction-api | 1.2 | 间接依赖 | maven |
| libbase64 | 0.1.0 | 间接依赖 | npm |
| lodash.startswith | 4.2.1 | 间接依赖 | npm |
| webpack-sources | 1.0.1 | 间接依赖 | npm |
| es6-set | 0.1.5 | 间接依赖 | npm |
| constants-browserify | 1.0.0 | 间接依赖 | npm |
| minimist | 0.0.8 | 间接依赖 | npm |
| anymatch | 1.3.0 | 间接依赖 | npm |
| through | 2.3.8 | 间接依赖 | npm |
| time-stamp | 2.0.0 | 间接依赖 | npm |
| socks | 1.1.9 | 间接依赖 | npm |
| randombytes | 2.0.5 | 间接依赖 | npm |
| path-platform | 0.11.15 | 间接依赖 | npm |
| com.google.guava:guava | 18.0 | 间接依赖 | maven |
| smtp-connection | 2.12.0 | 间接依赖 | npm |
| jsprim | 1.4.0 | 间接依赖 | npm |
| pseudomap | 1.0.2 | 间接依赖 | npm |
| org.slf4j:jcl-over-slf4j | 1.7.25 | 间接依赖 | maven |
| fs.realpath | 1.0.0 | 间接依赖 | npm |
| through2 | 2.0.1 | 间接依赖 | npm |
| getpass | 0.1.7 | 间接依赖 | npm |
| find-parent-dir | 0.3.0 | 间接依赖 | npm |
| nan | 2.6.2 | 间接依赖 | npm |
| is-property | 1.0.2 | 间接依赖 | npm |
| async-limiter | 1.0.0 | 间接依赖 | npm |
| dom-serialize | 2.2.1 | 间接依赖 | npm |
| accepts | 1.3.3 | 间接依赖 | npm |
| requestretry | 1.12.2 | 间接依赖 | npm |
| node-pre-gyp | 0.6.36 | 间接依赖 | npm |
| com.google.code.gson:gson | 2.8.0 | 间接依赖 | maven |
| read-only-stream | 2.0.0 | 间接依赖 | npm |
| source-map | 0.6.1 | 间接依赖 | npm |
| es-to-primitive | 1.1.1 | 间接依赖 | npm |
| to-arraybuffer | 1.0.1 | 间接依赖 | npm |
| extsprintf | 1.0.2 | 间接依赖 | npm |
| spdx-correct | 1.0.2 | 间接依赖 | npm |
| conventional-changelog-express | 0.1.0 | 间接依赖 | npm |
| colors | 1.1.2 | 间接依赖 | npm |
| to-array | 0.1.4 | 间接依赖 | npm |
| javax.mail:javax.mail-api | 1.5.6 | 间接依赖 | maven |
| cliui | 2.1.0 | 间接依赖 | npm |
| shell-quote | 1.6.1 | 间接依赖 | npm |
| is-number | 0.1.1 | 间接依赖 | npm |
| org.jboss:jandex | 2.0.0.Final | 间接依赖 | maven |
| es6-map | 0.1.5 | 间接依赖 | npm |
| glob-parent | 2.0.0 | 间接依赖 | npm |
| micromatch | 2.3.11 | 间接依赖 | npm |
| rollup-plugin-node-resolve | 3.0.0 | 直接依赖 | npm |
| dot-prop | 3.0.0 | 间接依赖 | npm |
| isexe | 2.0.0 | 间接依赖 | npm |
| acorn | 5.2.1 | 间接依赖 | npm |
| is-date-object | 1.0.1 | 间接依赖 | npm |
| aopalliance:aopalliance | 1.0 | 间接依赖 | maven |
| mime | 1.3.6 | 间接依赖 | npm |
| javax.servlet:servlet-api | 2.5 | 间接依赖 | maven |
| yargs | 8.0.2 | 间接依赖 | npm |
| fs-extra | 4.0.2 | 间接依赖 | npm |
| randomfill | 1.0.3 | 间接依赖 | npm |
| pinkie | 2.0.4 | 间接依赖 | npm |
| rollup-plugin-uglify | 2.0.1 | 直接依赖 | npm |
| finalhandler | 1.0.3 | 间接依赖 | npm |
| map-obj | 1.0.1 | 间接依赖 | npm |
| event-stream | 3.3.4 | 间接依赖 | npm |
| asn1.js | 4.9.1 | 间接依赖 | npm |
| org.hibernate:hibernate-validator | 5.3.5.Final | 间接依赖 | maven |
| replace-in-file | 3.1.0 | 直接依赖 | npm |
| map-stream | 0.1.0 | 间接依赖 | npm |
| querystring-es3 | 0.2.1 | 间接依赖 | npm |
| bn.js | 4.11.8 | 间接依赖 | npm |
| mem | 1.1.0 | 间接依赖 | npm |
| sntp | 1.0.9 | 间接依赖 | npm |
| org.springframework:spring-jdbc | 4.3.8.RELEASE | 间接依赖 | maven |
| sshpk | 1.13.1 | 间接依赖 | npm |
| gauge | 2.7.4 | 间接依赖 | npm |
| array-reduce | 0.0.0 | 间接依赖 | npm |
| array-find-index | 1.0.2 | 间接依赖 | npm |
| interpret | 1.0.3 | 间接依赖 | npm |
| urix | 0.1.0 | 间接依赖 | npm |
| org.springframework.boot:spring-boot-starter-web | 1.5.3.RELEASE | 直接依赖 | maven |
| request | 2.75.0 | 间接依赖 | npm |
| uuid | 2.0.3 | 间接依赖 | npm |
| typedarray | 0.0.6 | 间接依赖 | npm |
| trim-newlines | 1.0.0 | 间接依赖 | npm |
| fstream | 1.0.11 | 间接依赖 | npm |
| org.springframework:spring-aspects | 4.3.8.RELEASE | 间接依赖 | maven |
| log4js | 2.4.1 | 间接依赖 | npm |
| array-map | 0.0.0 | 间接依赖 | npm |
| when | 3.7.8 | 间接依赖 | npm |
| org.springframework.boot:spring-boot-starter-aop | 1.5.3.RELEASE | 间接依赖 | maven |
| detective | 4.7.1 | 间接依赖 | npm |
| get-caller-file | 1.0.2 | 间接依赖 | npm |
| errno | 0.1.4 | 间接依赖 | npm |
| ch.qos.logback:logback-core | 1.1.11 | 间接依赖 | maven |
| git-semver-tags | 1.2.1 | 间接依赖 | npm |
| is-primitive | 2.0.0 | 间接依赖 | npm |
| inherits | 2.0.1 | 间接依赖 | npm |
| duplexer2 | 0.1.4 | 间接依赖 | npm |
| conventional-changelog-ui-router-core | 1.4.2 | 间接依赖 | npm |
| range-parser | 1.2.0 | 间接依赖 | npm |
| hoek | 2.16.3 | 间接依赖 | npm |
| chalk | 2.1.0 | 间接依赖 | npm |
| ecc-jsbn | 0.1.1 | 直接依赖 | npm |
| querystring | 0.2.0 | 间接依赖 | npm |
| performance-now | 0.2.0 | 间接依赖 | npm |
| tslib | 1.7.1 | 间接依赖 | npm |
| org.apache.lucene:lucene-queries | 7.2.1 | 间接依赖 | maven |
| loggly | 1.1.1 | 直接依赖 | npm |
| os-locale | 2.0.0 | 间接依赖 | npm |
| os-browserify | 0.3.0 | 间接依赖 | npm |
| ms | 0.7.1 | 间接依赖 | npm |
| repeat-element | 1.1.2 | 间接依赖 | npm |
| ast-types | 0.10.1 | 间接依赖 | npm |
| qjobs | 1.1.5 | 间接依赖 | npm |
| define-properties | 1.1.2 | 间接依赖 | npm |
| evp_bytestokey | 1.0.3 | 间接依赖 | npm |
| pend | 1.2.0 | 间接依赖 | npm |
| read-pkg | 2.0.0 | 间接依赖 | npm |
| inflight | 1.0.6 | 间接依赖 | npm |
| util | 0.10.3 | 间接依赖 | npm |
| typescript | 2.4.1 | 间接依赖 | npm |
| timers-browserify | 2.0.2 | 间接依赖 | npm |
| agent-base | 2.1.1 | 间接依赖 | npm |
| preserve | 0.2.0 | 间接依赖 | npm |
| crypto-browserify | 3.11.1 | 间接依赖 | npm |
| extract-zip | 1.5.0 | 间接依赖 | npm |
| cryptiles | 2.0.5 | 间接依赖 | npm |
| ripemd160 | 2.0.1 | 间接依赖 | npm |
| requires-port | 1.0.0 | 间接依赖 | npm |
| nodemailer-wellknown | 0.1.10 | 间接依赖 | npm |
| supports-color | 2.0.0 | 间接依赖 | npm |
| type-is | 1.6.15 | 间接依赖 | npm |
| nz.net.ultraq.thymeleaf:thymeleaf-layout-dialect | 1.4.0 | 间接依赖 | maven |
| block-stream | 0.0.9 | 间接依赖 | npm |
| module-deps | 4.1.1 | 间接依赖 | npm |
| git-raw-commits | 1.2.0 | 间接依赖 | npm |
| object-assign | 4.1.1 | 间接依赖 | npm |
| cipher-base | 1.0.4 | 间接依赖 | npm |
| org.hibernate.common:hibernate-commons-annotations | 5.0.1.Final | 间接依赖 | maven |
| conventional-changelog | 1.1.7 | 直接依赖 | npm |
| http-errors | 1.6.2 | 间接依赖 | npm |
| io.springfox:springfox-swagger-common | 2.7.0 | 间接依赖 | maven |
| org.springframework:spring-webmvc | 4.3.8.RELEASE | 间接依赖 | maven |
| uid-number | 0.0.6 | 间接依赖 | npm |
| jasmine-core | 2.8.0 | 直接依赖 | npm |
| path-exists | 3.0.0 | 间接依赖 | npm |
| karma-phantomjs-launcher | 1.0.4 | 直接依赖 | npm |
| os-homedir | 1.0.2 | 间接依赖 | npm |
| emojis-list | 2.1.0 | 间接依赖 | npm |
| ee-first | 1.1.1 | 间接依赖 | npm |
| escodegen | 1.9.0 | 间接依赖 | npm |
| extglob | 0.3.2 | 间接依赖 | npm |
| event-emitter | 0.3.5 | 间接依赖 | npm |
| on-finished | 2.3.0 | 间接依赖 | npm |
| karma-jasmine | 1.1.0 | 直接依赖 | npm |
| commander | 2.11.0 | 间接依赖 | npm |
| find-up | 1.1.2 | 间接依赖 | npm |
| isarray | 0.0.1 | 间接依赖 | npm |
| @uirouter/core | 5.0.13 | 直接依赖 | npm |
| org.springframework.boot:spring-boot | 1.5.3.RELEASE | 间接依赖 | maven |
| webpack-dev-middleware | 1.12.2 | 间接依赖 | npm |
| rimraf | 2.6.1 | 间接依赖 | npm |
| pause-stream | 0.0.11 | 间接依赖 | npm |
| hmac-drbg | 1.0.1 | 间接依赖 | npm |
| io.springfox:springfox-core | 2.7.0 | 间接依赖 | maven |
| ini | 1.3.4 | 间接依赖 | npm |
| text-extensions | 1.5.0 | 间接依赖 | npm |
| assert-plus | 1.0.0 | 间接依赖 | npm |
| axios | 0.15.3 | 直接依赖 | npm |
| console-control-strings | 1.1.0 | 间接依赖 | npm |
| tempfile | 1.1.1 | 间接依赖 | npm |
| expand-braces | 0.1.2 | 间接依赖 | npm |
| invert-kv | 1.0.0 | 间接依赖 | npm |
| verror | 1.3.6 | 间接依赖 | npm |
| conventional-changelog-codemirror | 0.2.1 | 间接依赖 | npm |
| nodemailer-direct-transport | 3.3.2 | 间接依赖 | npm |
| strip-ansi | 4.0.0 | 间接依赖 | npm |
| timespan | 2.3.0 | 间接依赖 | npm |
| core-util-is | 1.0.2 | 间接依赖 | npm |
| es-abstract | 1.9.0 | 间接依赖 | npm |
| cliui | 3.2.0 | 间接依赖 | npm |
| org.springframework.boot:spring-boot-starter-logging | 1.5.3.RELEASE | 间接依赖 | maven |
| git-raw-commits | 1.3.0 | 间接依赖 | npm |
| json-stable-stringify | 1.0.1 | 间接依赖 | npm |
| xregexp | 2.0.0 | 间接依赖 | npm |
| path-key | 2.0.1 | 间接依赖 | npm |
| for-in | 1.0.2 | 间接依赖 | npm |
| set-immediate-shim | 1.0.1 | 间接依赖 | npm |
| hawk | 3.1.3 | 间接依赖 | npm |
| inherits | 2.0.3 | 间接依赖 | npm |
| org.springframework.boot:spring-boot-starter-thymeleaf | 1.5.3.RELEASE | 直接依赖 | maven |
| create-hmac | 1.1.6 | 间接依赖 | npm |
| tmp | 0.0.33 | 间接依赖 | npm |
| console-browserify | 1.1.0 | 间接依赖 | npm |
| progress | 1.1.8 | 间接依赖 | npm |
| pac-proxy-agent | 1.1.0 | 间接依赖 | npm |
| isarray | 2.0.1 | 间接依赖 | npm |
| get-stdin | 4.0.1 | 间接依赖 | npm |
| co | 3.0.6 | 间接依赖 | npm |
| org.apache.httpcomponents:httpclient | 4.5.3 | 直接依赖 | maven |
| libqp | 1.1.0 | 间接依赖 | npm |
| ansi-regex | 2.1.1 | 间接依赖 | npm |
| readdirp | 2.1.0 | 间接依赖 | npm |
| pac-resolver | 2.0.0 | 间接依赖 | npm |
| parse-glob | 3.0.4 | 间接依赖 | npm |
| ajv | 5.5.2 | 间接依赖 | npm |
| require-main-filename | 1.0.1 | 间接依赖 | npm |
| glob | 7.1.2 | 间接依赖 | npm |
| dashdash | 1.14.1 | 间接依赖 | npm |
| parse-json | 2.2.0 | 间接依赖 | npm |
| color-name | 1.1.3 | 间接依赖 | npm |
| debug | 0.7.4 | 间接依赖 | npm |
| pify | 2.3.0 | 间接依赖 | npm |
| jsonfile | 2.4.0 | 间接依赖 | npm |
| after | 0.8.2 | 间接依赖 | npm |
| source-map | 0.5.7 | 直接依赖 | npm |
| http-signature | 1.1.1 | 间接依赖 | npm |
| window-size | 0.1.0 | 间接依赖 | npm |
| ftp | 0.3.10 | 间接依赖 | npm |
| string-width | 1.0.2 | 间接依赖 | npm |
| path-parse | 1.0.5 | 间接依赖 | npm |
| http-signature | 1.2.0 | 间接依赖 | npm |
| socket.io-parser | 3.1.2 | 间接依赖 | npm |
| chokidar | 1.7.0 | 间接依赖 | npm |
| filename-regex | 2.0.1 | 间接依赖 | npm |
| syntax-error | 1.3.0 | 间接依赖 | npm |
| escope | 3.6.0 | 间接依赖 | npm |
| conventional-changelog-ember | 0.2.6 | 间接依赖 | npm |
| degenerator | 1.0.4 | 间接依赖 | npm |
| org.apache.directory.studio:org.apache.commons.io | 2.4 | 间接依赖 | maven |
| is-callable | 1.1.3 | 间接依赖 | npm |
| npm-run-path | 2.0.2 | 间接依赖 | npm |
| is-glob | 2.0.1 | 间接依赖 | npm |
| ajv | 5.2.3 | 间接依赖 | npm |
| uglifyjs-webpack-plugin | 0.4.6 | 间接依赖 | npm |
| oauth-sign | 0.8.2 | 间接依赖 | npm |
| org.apache.lucene:lucene-join | 7.2.1 | 间接依赖 | maven |
| umd | 3.0.1 | 间接依赖 | npm |
| deep-extend | 0.4.2 | 间接依赖 | npm |
| array-slice | 0.2.3 | 间接依赖 | npm |
| assert-plus | 0.2.0 | 间接依赖 | npm |
| stream-combiner2 | 1.1.1 | 间接依赖 | npm |
| form-data | 2.3.1 | 间接依赖 | npm |
| @types/jquery | 3.2.17 | 直接依赖 | npm |
| optimist | 0.6.1 | 间接依赖 | npm |
| readable-stream | 1.1.14 | 间接依赖 | npm |
| tsscmp | 1.0.5 | 间接依赖 | npm |
| universalify | 0.1.1 | 间接依赖 | npm |
| com.vaadin.external.google:android-json | 0.0.20131108.vaadin1 | 间接依赖 | maven |
| expand-range | 1.8.2 | 间接依赖 | npm |
| org.reflections:reflections | 0.9.11 | 间接依赖 | maven |
| normalize-path | 2.1.1 | 间接依赖 | npm |
| org.springframework.boot:spring-boot-starter-security | 1.5.3.RELEASE | 直接依赖 | maven |
| conventional-changelog-core | 1.9.0 | 间接依赖 | npm |
| balanced-match | 1.0.0 | 间接依赖 | npm |
| fs-access | 1.0.1 | 间接依赖 | npm |
| npm-run-all | 4.1.1 | 间接依赖 | npm |
| yargs | 10.0.3 | 间接依赖 | npm |
| rollup-plugin-sourcemaps | 0.4.2 | 直接依赖 | npm |
| kew | 0.7.0 | 间接依赖 | npm |
| normalize-package-data | 2.4.0 | 间接依赖 | npm |
| p-locate | 2.0.0 | 间接依赖 | npm |
| is-finite | 1.0.2 | 间接依赖 | npm |
| escape-html | 1.0.3 | 间接依赖 | npm |
| engine.io | 3.1.4 | 间接依赖 | npm |
| typedoc-plugin-external-module-name | 1.0.10 | 直接依赖 | npm |
| ajv-keywords | 2.1.0 | 间接依赖 | npm |
| pl.jalokim.propertiestojson:java-properties-to-json | 2.0 | 直接依赖 | maven |
| encodeurl | 1.0.1 | 间接依赖 | npm |
| parse-github-repo-url | 1.4.0 | 间接依赖 | npm |
| supports-color | 4.4.0 | 间接依赖 | npm |
| align-text | 0.1.4 | 间接依赖 | npm |
| which-module | 2.0.0 | 间接依赖 | npm |
| path-type | 2.0.0 | 间接依赖 | npm |
| tweetnacl | 0.14.5 | 直接依赖 | npm |
| org.springframework:spring-beans | 4.3.8.RELEASE | 间接依赖 | maven |
| hasha | 2.2.0 | 间接依赖 | npm |
| hawk | 6.0.2 | 间接依赖 | npm |
| arr-flatten | 1.0.3 | 间接依赖 | npm |
| concat-map | 0.0.1 | 间接依赖 | npm |
| strip-json-comments | 2.0.1 | 间接依赖 | npm |
| combine-source-map | 0.7.2 | 间接依赖 | npm |
| defined | 1.0.0 | 间接依赖 | npm |
| org.projectlombok:lombok | 1.16.16 | 间接依赖 | maven |
| esprima | 3.1.3 | 间接依赖 | npm |
| httpreq | 0.4.24 | 间接依赖 | npm |
| thunkify | 2.1.2 | 间接依赖 | npm |
| base64id | 1.0.0 | 间接依赖 | npm |
| rc | 1.2.1 | 间接依赖 | npm |
| acorn | 5.1.2 | 间接依赖 | npm |
| big.js | 3.1.3 | 间接依赖 | npm |
| loud-rejection | 1.6.0 | 间接依赖 | npm |
| ch.qos.logback:logback-classic | 1.1.11 | 间接依赖 | maven |
| conventional-changelog-eslint | 0.2.1 | 间接依赖 | npm |
| form-data | 2.0.0 | 间接依赖 | npm |
| generate-object-property | 1.2.0 | 间接依赖 | npm |
| load-json-file | 1.1.0 | 间接依赖 | npm |
| node-uuid | 1.4.8 | 间接依赖 | npm |
| tar-pack | 3.4.0 | 间接依赖 | npm |
| p-limit | 1.1.0 | 间接依赖 | npm |
| hash-base | 2.0.2 | 间接依赖 | npm |
| streamroller | 0.7.0 | 间接依赖 | npm |
| org.springframework.plugin:spring-plugin-core | 1.2.0.RELEASE | 间接依赖 | maven |
| har-validator | 5.0.3 | 间接依赖 | npm |
| org.apache.lucene:lucene-analyzers-common | 7.2.1 | 间接依赖 | maven |
| is-builtin-module | 1.0.0 | 间接依赖 | npm |
| github-url-from-git | 1.5.0 | 间接依赖 | npm |
| cookie | 0.3.1 | 间接依赖 | npm |
| json-stable-stringify | 0.0.1 | 间接依赖 | npm |
| expand-brackets | 0.1.5 | 间接依赖 | npm |
| wide-align | 1.1.2 | 间接依赖 | npm |
| JSONStream | 1.3.2 | 间接依赖 | npm |
| esutils | 2.0.2 | 间接依赖 | npm |
| mime-types | 2.1.17 | 间接依赖 | npm |
| tapable | 0.2.8 | 间接依赖 | npm |
| inflection | 1.10.0 | 间接依赖 | npm |
| delegates | 1.0.0 | 间接依赖 | npm |
| validate-npm-package-license | 3.0.1 | 间接依赖 | npm |
| async | 2.1.5 | 间接依赖 | npm |
| is-buffer | 1.1.6 | 间接依赖 | npm |
| handlebars | 4.0.11 | 间接依赖 | npm |
| minimist | 0.0.10 | 间接依赖 | npm |
| cached-path-relative | 1.0.1 | 间接依赖 | npm |
| color-convert | 1.9.0 | 间接依赖 | npm |
| org.springframework.boot:spring-boot-starter-cache | 1.5.3.RELEASE | 直接依赖 | maven |
| parseqs | 0.0.5 | 间接依赖 | npm |
| conventional-commits-filter | 1.1.1 | 间接依赖 | npm |
| ansi-styles | 3.2.0 | 间接依赖 | npm |
| es5-ext | 0.10.30 | 间接依赖 | npm |
| readable-stream | 2.3.3 | 间接依赖 | npm |
| md5.js | 1.3.4 | 间接依赖 | npm |
| uuid | 3.1.0 | 间接依赖 | npm |
| negotiator | 0.6.1 | 间接依赖 | npm |
| source-list-map | 2.0.0 | 间接依赖 | npm |
| tunnel-agent | 0.4.3 | 间接依赖 | npm |
| org.springframework:spring-aop | 4.3.8.RELEASE | 间接依赖 | maven |
| repeat-string | 1.6.1 | 间接依赖 | npm |
| strip-indent | 1.0.1 | 间接依赖 | npm |
| estraverse | 4.2.0 | 间接依赖 | npm |
| commons-codec:commons-codec | 1.10 | 间接依赖 | maven |
| tmp | 0.0.31 | 间接依赖 | npm |
| yargs-parser | 7.0.0 | 间接依赖 | npm |
| y18n | 3.2.1 | 间接依赖 | npm |
| labeled-stream-splicer | 2.0.0 | 间接依赖 | npm |
| net.bndy:ftsi | 1.6.1 | 直接依赖 | maven |
| browserify-sign | 4.0.4 | 间接依赖 | npm |
| bytes | 2.4.0 | 间接依赖 | npm |
| socks-proxy-agent | 2.1.1 | 间接依赖 | npm |
| org.springframework.boot:spring-boot-starter-jdbc | 1.5.3.RELEASE | 间接依赖 | maven |
| lru-cache | 2.2.4 | 间接依赖 | npm |
| @types/node | 8.0.6 | 间接依赖 | npm |
| browser-pack | 6.0.2 | 间接依赖 | npm |
| @types/handlebars | 4.0.31 | 间接依赖 | npm |
| longest | 1.0.1 | 间接依赖 | npm |
| org.codehaus.jackson:jackson-mapper-asl | 1.9.13 | 间接依赖 | maven |
| request-progress | 2.0.1 | 间接依赖 | npm |
| mime | 1.6.0 | 间接依赖 | npm |
| org.apache.tomcat:tomcat-jdbc | 8.5.14 | 间接依赖 | maven |
| is-fullwidth-code-point | 1.0.0 | 间接依赖 | npm |
| @types/fs-extra | 4.0.0 | 间接依赖 | npm |
| create-ecdh | 4.0.0 | 间接依赖 | npm |
| path-exists | 2.1.0 | 间接依赖 | npm |
| lodash.isfunction | 3.0.8 | 间接依赖 | npm |
| yargs | 3.10.0 | 间接依赖 | npm |
| setprototypeof | 1.0.3 | 间接依赖 | npm |
| fsevents | 1.1.2 | 直接依赖 | npm |
| conventional-changelog-writer | 2.0.3 | 间接依赖 | npm |
| io.springfox:springfox-schema | 2.7.0 | 间接依赖 | maven |
| body-parser | 1.17.2 | 间接依赖 | npm |
| isarray | 1.0.0 | 间接依赖 | npm |
| yeast | 0.1.2 | 间接依赖 | npm |
| netmask | 1.0.6 | 间接依赖 | npm |
| browserify-des | 1.0.0 | 间接依赖 | npm |
| ps-tree | 1.1.0 | 间接依赖 | npm |
| ieee754 | 1.1.8 | 间接依赖 | npm |
| decamelize | 1.2.0 | 间接依赖 | npm |
| signal-exit | 3.0.2 | 间接依赖 | npm |
| http-errors | 1.6.1 | 间接依赖 | npm |
| io.springfox:springfox-swagger2 | 2.7.0 | 直接依赖 | maven |
| read-pkg | 1.1.0 | 间接依赖 | npm |
| repeating | 2.0.1 | 间接依赖 | npm |
| abbrev | 1.0.9 | 间接依赖 | npm |
| is-extendable | 0.1.1 | 间接依赖 | npm |
| domain-browser | 1.1.7 | 间接依赖 | npm |
| yargs | 9.0.1 | 间接依赖 | npm |
| ip | 1.1.5 | 间接依赖 | npm |
| null-check | 1.0.0 | 间接依赖 | npm |
| find-up | 2.1.0 | 间接依赖 | npm |
| remove-trailing-separator | 1.0.2 | 间接依赖 | npm |
| is-dotfile | 1.0.3 | 间接依赖 | npm |
| connect | 3.6.2 | 间接依赖 | npm |
| delayed-stream | 1.0.0 | 间接依赖 | npm |
| meow | 3.7.0 | 间接依赖 | npm |
| sntp | 2.1.0 | 间接依赖 | npm |
| async | 0.9.2 | 间接依赖 | npm |
| inline-source-map | 0.6.2 | 间接依赖 | npm |
| typedoc-plugin-internal-external | 1.0.10 | 直接依赖 | npm |
| conventional-changelog-cli | 1.3.5 | 直接依赖 | npm |
| code-point-at | 1.1.0 | 间接依赖 | npm |
| braces | 0.1.5 | 间接依赖 | npm |
| http-proxy-agent | 1.0.0 | 间接依赖 | npm |
| spdx-expression-parse | 1.0.4 | 间接依赖 | npm |
| shebang-regex | 1.0.0 | 间接依赖 | npm |
| is-module | 1.0.0 | 间接依赖 | npm |
| org.springframework.security.oauth:spring-security-oauth2 | 2.0.13.RELEASE | 直接依赖 | maven |
| conventional-changelog | 1.1.4 | 间接依赖 | npm |
| org.slf4j:slf4j-api | 1.7.25 | 间接依赖 | maven |
| browserify-zlib | 0.2.0 | 间接依赖 | npm |
| read-pkg-up | 2.0.0 | 间接依赖 | npm |
| graceful-readlink | 1.0.1 | 间接依赖 | npm |
| caseless | 0.11.0 | 间接依赖 | npm |
| net.bytebuddy:byte-buddy | 1.6.14 | 间接依赖 | maven |
| memory-streams | 0.1.2 | 间接依赖 | npm |
| glob-base | 0.3.0 | 间接依赖 | npm |
| lodash.templatesettings | 4.1.0 | 间接依赖 | npm |
| dargs | 4.1.0 | 间接依赖 | npm |
| concat-stream | 1.5.2 | 间接依赖 | npm |
| center-align | 0.1.3 | 间接依赖 | npm |
| lodash.template | 4.4.0 | 间接依赖 | npm |
| org.apache.tomcat:tomcat-juli | 8.5.14 | 间接依赖 | maven |
| lexical-scope | 1.2.0 | 间接依赖 | npm |
| karma-sourcemap-loader | 0.3.7 | 直接依赖 | npm |
| string_decoder | 1.0.3 | 间接依赖 | npm |
| read-pkg-up | 1.0.1 | 间接依赖 | npm |
| minimalistic-assert | 1.0.0 | 间接依赖 | npm |
| org.unbescape:unbescape | 1.1.0.RELEASE | 间接依赖 | maven |
| rechoir | 0.6.2 | 间接依赖 | npm |
| through2 | 2.0.3 | 间接依赖 | npm |
| miller-rabin | 4.0.1 | 间接依赖 | npm |
| camelcase | 1.2.1 | 间接依赖 | npm |
| loader-utils | 1.1.0 | 间接依赖 | npm |
| is-stream | 1.1.0 | 间接依赖 | npm |
| conventional-changelog-angular | 1.3.4 | 间接依赖 | npm |
| debug | 3.1.0 | 间接依赖 | npm |
| void-elements | 2.0.1 | 间接依赖 | npm |
| http-proxy | 1.16.2 | 间接依赖 | npm |
| co | 4.6.0 | 间接依赖 | npm |
| conventional-commits-parser | 1.3.0 | 间接依赖 | npm |
| function-bind | 1.1.1 | 间接依赖 | npm |
| javax.activation:activation | 1.1 | 间接依赖 | maven |
| conventional-changelog-codemirror | 0.1.0 | 间接依赖 | npm |
| org.hibernate:hibernate-core | 5.0.12.Final | 间接依赖 | maven |
| circular-json | 0.4.0 | 间接依赖 | npm |
| pinkie-promise | 2.0.1 | 间接依赖 | npm |
| redis-parser | 2.6.0 | 间接依赖 | npm |
| depd | 1.1.0 | 间接依赖 | npm |
| mailcomposer | 4.0.1 | 间接依赖 | npm |
| tunnel-agent | 0.6.0 | 间接依赖 | npm |
| org.codehaus.groovy:groovy | 2.4.10 | 间接依赖 | maven |
| typedoc-default-themes | 0.5.0 | 间接依赖 | npm |
| tslint | 5.8.0 | 直接依赖 | npm |
| is-typedarray | 1.0.0 | 间接依赖 | npm |
| watchpack | 1.4.0 | 间接依赖 | npm |
| isbinaryfile | 3.0.2 | 间接依赖 | npm |
| org.jboss.logging:jboss-logging | 3.3.1.Final | 间接依赖 | maven |
| esrecurse | 4.2.0 | 间接依赖 | npm |
| httpntlm | 1.6.1 | 间接依赖 | npm |
| ip | 1.0.1 | 间接依赖 | npm |
| async-each | 1.0.1 | 间接依赖 | npm |
| browser-resolve | 1.11.2 | 间接依赖 | npm |
| content-type | 1.0.2 | 间接依赖 | npm |
| is-utf8 | 0.2.1 | 间接依赖 | npm |
| tough-cookie | 2.3.2 | 间接依赖 | npm |
| pako | 0.2.9 | 间接依赖 | npm |
| antlr:antlr | 2.7.7 | 间接依赖 | maven |
| lodash | 4.17.4 | 直接依赖 | npm |
| org.springframework.security:spring-security-config | 4.2.2.RELEASE | 间接依赖 | maven |
| parseurl | 1.3.1 | 间接依赖 | npm |
| mkdirp | 0.5.1 | 间接依赖 | npm |
| conventional-changelog-atom | 0.1.2 | 间接依赖 | npm |
| conventional-commits-parser | 2.1.0 | 间接依赖 | npm |
| org.ehcache:ehcache | 3.2.2 | 直接依赖 | maven |
| json-schema | 0.2.3 | 间接依赖 | npm |
| has-flag | 2.0.0 | 间接依赖 | npm |
| lodash.memoize | 3.0.4 | 间接依赖 | npm |
| wordwrap | 0.0.3 | 间接依赖 | npm |
| org.springframework:spring-web | 4.3.8.RELEASE | 间接依赖 | maven |
| graceful-fs | 4.1.11 | 直接依赖 | npm |
| duplexer | 0.1.1 | 间接依赖 | npm |
| org.springframework.security:spring-security-web | 4.2.2.RELEASE | 间接依赖 | maven |
| org.springframework.data:spring-data-jpa | 1.11.3.RELEASE | 间接依赖 | maven |
| minimatch | 3.0.4 | 间接依赖 | npm |
| uglify-js | 3.1.2 | 间接依赖 | npm |
| hash.js | 1.1.3 | 间接依赖 | npm |
| pako | 1.0.6 | 间接依赖 | npm |
| request | 2.79.0 | 间接依赖 | npm |
| has | 1.0.1 | 间接依赖 | npm |
| cross-spawn | 4.0.2 | 间接依赖 | npm |
| semver | 5.0.3 | 间接依赖 | npm |
| timers-browserify | 1.4.2 | 间接依赖 | npm |
| org.springframework.plugin:spring-plugin-metadata | 1.2.0.RELEASE | 间接依赖 | maven |
| org.apache.lucene:lucene-sandbox | 7.2.1 | 间接依赖 | maven |
| ui-router-typedoc-themes | 1.0.2 | 直接依赖 | npm |
| xtend | 4.0.1 | 间接依赖 | npm |
| d | 1.0.0 | 间接依赖 | npm |
| bytes | 3.0.0 | 间接依赖 | npm |
| throttleit | 1.0.0 | 间接依赖 | npm |
| is-buffer | 1.1.5 | 间接依赖 | npm |
| enhanced-resolve | 3.4.1 | 间接依赖 | npm |
| resolve-url | 0.2.1 | 间接依赖 | npm |
| org.aspectj:aspectjweaver | 1.8.10 | 间接依赖 | maven |
| object.omit | 2.0.1 | 间接依赖 | npm |
| aproba | 1.1.2 | 间接依赖 | npm |
| des.js | 1.0.0 | 间接依赖 | npm |
| lodash.isstring | 4.0.1 | 间接依赖 | npm |
| highlight.js | 9.12.0 | 间接依赖 | npm |
| es6-symbol | 3.1.1 | 间接依赖 | npm |
| ajv | 4.11.8 | 间接依赖 | npm |
| lodash | 3.10.1 | 间接依赖 | npm |
| htmlescape | 1.1.1 | 间接依赖 | npm |
| conventional-changelog-writer | 1.4.1 | 间接依赖 | npm |
| is-my-json-valid | 2.16.0 | 间接依赖 | npm |
| klaw | 1.3.1 | 间接依赖 | npm |
| boom | 5.2.0 | 间接依赖 | npm |
| wrappy | 1.0.2 | 间接依赖 | npm |
| kind-of | 3.2.2 | 间接依赖 | npm |
| fork-ts-checker-webpack-plugin | 0.2.8 | 直接依赖 | npm |
| readable-stream | 1.0.34 | 间接依赖 | npm |
| org.yaml:snakeyaml | 1.17 | 间接依赖 | maven |
| sha.js | 2.4.9 | 间接依赖 | npm |
| arraybuffer.slice | 0.0.6 | 间接依赖 | npm |
| ansi-styles | 2.2.1 | 间接依赖 | npm |
| org.thymeleaf:thymeleaf | 2.1.5.RELEASE | 间接依赖 | maven |
| net.bndy:spring-boot-starter-ftsi | 1.0 | 直接依赖 | maven |
| lru-cache | 2.6.5 | 间接依赖 | npm |
| conventional-changelog-jshint | 0.1.0 | 间接依赖 | npm |
| is-binary-path | 1.0.1 | 间接依赖 | npm |
| is-equal-shallow | 0.1.3 | 间接依赖 | npm |
| generate-function | 2.0.0 | 间接依赖 | npm |
| karma-webpack | 2.0.9 | 直接依赖 | npm |
| @types/minimatch | 2.0.29 | 间接依赖 | npm |
| strip-bom | 3.0.0 | 间接依赖 | npm |
| redis | 2.8.0 | 直接依赖 | npm |
| execa | 0.5.1 | 间接依赖 | npm |
| is-fullwidth-code-point | 2.0.0 | 间接依赖 | npm |
| is-regex | 1.0.4 | 间接依赖 | npm |
| @uirouter/publish-scripts | 2.0.8 | 直接依赖 | npm |
| ms | 2.0.0 | 间接依赖 | npm |
| atob | 2.0.3 | 间接依赖 | npm |
| di | 0.0.1 | 间接依赖 | npm |
| is-subset | 0.1.1 | 间接依赖 | npm |
| javax.cache:cache-api | 1.0.0 | 直接依赖 | maven |
| es6-object-assign | 1.1.0 | 间接依赖 | npm |
| har-schema | 2.0.0 | 间接依赖 | npm |
| io.swagger:swagger-models | 1.5.13 | 间接依赖 | maven |
| jsonify | 0.0.0 | 间接依赖 | npm |
| aws-sign2 | 0.7.0 | 间接依赖 | npm |
| @types/angular-animate | 1.5.8 | 直接依赖 | npm |
| qs | 6.3.2 | 间接依赖 | npm |
| compare-func | 1.3.2 | 间接依赖 | npm |
| org.apache.lucene:lucene-queryparser | 7.2.1 | 间接依赖 | maven |
| foreach | 2.0.5 | 间接依赖 | npm |
| org.slf4j:jul-to-slf4j | 1.7.25 | 间接依赖 | maven |
| which | 1.2.14 | 间接依赖 | npm |
| public-encrypt | 4.0.0 | 间接依赖 | npm |
| has-unicode | 2.0.1 | 间接依赖 | npm |
| conventional-changelog-jquery | 0.1.0 | 间接依赖 | npm |
| org.mapstruct:mapstruct | 1.1.0.Final | 间接依赖 | maven |
| events | 1.1.1 | 间接依赖 | npm |
| p-finally | 1.0.0 | 间接依赖 | npm |
| forever-agent | 0.6.1 | 间接依赖 | npm |
| socket.io | 2.0.4 | 间接依赖 | npm |
| conventional-changelog-angular | 1.6.0 | 间接依赖 | npm |
| jsonpointer | 4.0.1 | 间接依赖 | npm |
| org.apache.lucene:lucene-highlighter | 7.2.1 | 间接依赖 | maven |
| qs | 6.5.1 | 间接依赖 | npm |
| regex-cache | 0.4.3 | 间接依赖 | npm |
| arr-diff | 2.0.0 | 间接依赖 | npm |
| expand-range | 0.1.1 | 间接依赖 | npm |
| buffer | 4.9.1 | 间接依赖 | npm |
| mailgun-js | 0.7.15 | 直接依赖 | npm |
| raw-body | 2.3.2 | 间接依赖 | npm |
| dts-downlevel | 0.3.0 | 直接依赖 | npm |
| xerces:xercesImpl | 2.11.0 | 间接依赖 | maven |
| error-ex | 1.3.1 | 间接依赖 | npm |
| inflection | 1.3.8 | 间接依赖 | npm |
| yauzl | 2.4.1 | 间接依赖 | npm |
| karma-chrome-launcher | 2.2.0 | 直接依赖 | npm |
| minimist | 1.2.0 | 间接依赖 | npm |
| nodemailer-smtp-transport | 2.7.2 | 间接依赖 | npm |
| iconv-lite | 0.4.19 | 间接依赖 | npm |
| org.apache.httpcomponents:httpcore | 4.4.6 | 间接依赖 | maven |
| underscore | 1.7.0 | 间接依赖 | npm |
| tty-browserify | 0.0.0 | 间接依赖 | npm |
| org.codehaus.jackson:jackson-core-asl | 1.9.13 | 间接依赖 | maven |
| nodemailer-fetch | 1.6.0 | 间接依赖 | npm |
| brace-expansion | 1.1.8 | 间接依赖 | npm |
| io.springfox:springfox-swagger-ui | 2.7.0 | 直接依赖 | maven |
| array-filter | 0.0.1 | 间接依赖 | npm |
| currently-unhandled | 0.4.1 | 间接依赖 | npm |
| parse-asn1 | 5.1.0 | 间接依赖 | npm |
| bl | 1.1.2 | 间接依赖 | npm |
| tsutils | 2.12.1 | 间接依赖 | npm |
| xml-apis:xml-apis | 1.4.01 | 间接依赖 | maven |
| minimalistic-crypto-utils | 1.0.1 | 间接依赖 | npm |
| repeat-string | 0.2.2 | 间接依赖 | npm |
| marked | 0.3.6 | 间接依赖 | npm |
| readline-sync | 1.4.7 | 间接依赖 | npm |
| progress | 2.0.0 | 间接依赖 | npm |
| lcid | 1.0.0 | 间接依赖 | npm |
| are-we-there-yet | 1.1.4 | 间接依赖 | npm |
| number-is-nan | 1.0.1 | 间接依赖 | npm |
| stream-splicer | 2.0.0 | 间接依赖 | npm |
| tar | 2.2.1 | 间接依赖 | npm |
| conventional-changelog-jscs | 0.1.0 | 间接依赖 | npm |
| boom | 4.3.1 | 间接依赖 | npm |
| semver | 5.3.0 | 间接依赖 | npm |
| dateformat | 1.0.12 | 间接依赖 | npm |
| org.springframework:spring-context-support | 4.3.8.RELEASE | 间接依赖 | maven |
| hosted-git-info | 2.5.0 | 间接依赖 | npm |
| JSONStream | 1.3.1 | 间接依赖 | npm |
| source-map-url | 0.4.0 | 间接依赖 | npm |
| diff | 3.2.0 | 间接依赖 | npm |
| data-uri-to-buffer | 1.2.0 | 间接依赖 | npm |
| json-stringify-safe | 5.0.1 | 间接依赖 | npm |
| camelcase | 2.1.1 | 间接依赖 | npm |
| object-component | 0.0.3 | 间接依赖 | npm |
| org.slf4j:log4j-over-slf4j | 1.7.25 | 间接依赖 | maven |
| readable-stream | 2.0.6 | 间接依赖 | npm |
| estree-walker | 0.3.1 | 间接依赖 | npm |
| media-typer | 0.3.0 | 间接依赖 | npm |
| wrap-ansi | 2.1.0 | 间接依赖 | npm |
| yargs-parser | 8.1.0 | 间接依赖 | npm |
| request | 2.81.0 | 间接依赖 | npm |
| shasum | 1.0.2 | 间接依赖 | npm |
| dom4j:dom4j | 1.6.1 | 间接依赖 | maven |
| io.springfox:springfox-spi | 2.7.0 | 间接依赖 | maven |
| backo2 | 1.0.2 | 间接依赖 | npm |
| component-inherit | 0.0.3 | 间接依赖 | npm |
| split2 | 2.1.1 | 间接依赖 | npm |
| cross-spawn | 5.1.0 | 间接依赖 | npm |
| conventional-changelog-eslint | 0.1.0 | 间接依赖 | npm |
| ent | 2.2.0 | 间接依赖 | npm |
| @types/marked | 0.3.0 | 间接依赖 | npm |
| escape-string-regexp | 1.0.5 | 间接依赖 | npm |
| conventional-changelog-ember | 0.2.10 | 间接依赖 | npm |
| mkdirp | 0.5.0 | 间接依赖 | npm |
| acorn-dynamic-import | 2.0.2 | 间接依赖 | npm |
| hipchat-notifier | 1.1.0 | 直接依赖 | npm |
| proxy-agent | 2.0.0 | 间接依赖 | npm |
| custom-event | 1.0.1 | 间接依赖 | npm |
| string-width | 2.1.0 | 间接依赖 | npm |
| conventional-changelog-jshint | 0.2.1 | 间接依赖 | npm |
| org.springframework.boot:spring-boot-starter-data-jpa | 1.5.3.RELEASE | 直接依赖 | maven |
| fd-slicer | 1.0.1 | 间接依赖 | npm |
| rollup | 0.52.3 | 直接依赖 | npm |
| process | 0.11.10 | 间接依赖 | npm |
| load-json-file | 2.0.0 | 间接依赖 | npm |
| request | 2.83.0 | 间接依赖 | npm |
| javax.validation:validation-api | 1.1.0.Final | 间接依赖 | maven |
| brorand | 1.1.0 | 间接依赖 | npm |
| add-stream | 1.0.0 | 间接依赖 | npm |
| es6-iterator | 2.0.1 | 间接依赖 | npm |
| @types/lodash | 4.14.74 | 间接依赖 | npm |
| buffer | 5.0.8 | 间接依赖 | npm |
| indent-string | 2.1.0 | 间接依赖 | npm |
| strip-ansi | 3.0.1 | 间接依赖 | npm |
| buffer-xor | 1.0.3 | 间接依赖 | npm |
| org.springframework.security:spring-security-core | 4.2.2.RELEASE | 间接依赖 | maven |
| fs-extra | 1.0.0 | 间接依赖 | npm |
| date-format | 1.2.0 | 间接依赖 | npm |
| net.bndy:lib | 1.0.9 | 直接依赖 | maven |
| shx | 0.2.2 | 直接依赖 | npm |
| isstream | 0.1.2 | 间接依赖 | npm |
| object-keys | 1.0.11 | 间接依赖 | npm |
| array-unique | 0.2.1 | 间接依赖 | npm |
| uglify-to-browserify | 1.0.2 | 直接依赖 | npm |
| com.sun.mail:javax.mail | 1.5.6 | 间接依赖 | maven |
| core-js | 2.4.1 | 间接依赖 | npm |
| has-ansi | 2.0.0 | 间接依赖 | npm |
| osenv | 0.1.4 | 间接依赖 | npm |
| from | 0.1.7 | 间接依赖 | npm |
| commons-io:commons-io | 2.4 | 间接依赖 | maven |
| mysql:mysql-connector-java | 5.1.41 | 直接依赖 | maven |
| caseless | 0.12.0 | 间接依赖 | npm |
| locate-path | 2.0.0 | 间接依赖 | npm |
| replace-in-file | 2.5.2 | 间接依赖 | npm |
| org.springframework:spring-expression | 4.3.8.RELEASE | 间接依赖 | maven |
| https-browserify | 0.0.1 | 间接依赖 | npm |
| modify-values | 1.0.0 | 间接依赖 | npm |
| org.springframework.data:spring-data-commons | 1.13.3.RELEASE | 间接依赖 | maven |
| require-directory | 2.1.1 | 间接依赖 | npm |
| jsonfile | 4.0.0 | 间接依赖 | npm |
| component-emitter | 1.2.1 | 间接依赖 | npm |
| com.fasterxml.jackson.core:jackson-databind | 2.8.8 | 间接依赖 | maven |
| fill-range | 2.2.3 | 间接依赖 | npm |
| fast-deep-equal | 1.0.0 | 间接依赖 | npm |
| stream-http | 2.7.2 | 间接依赖 | npm |
| qs | 6.4.0 | 间接依赖 | npm |
| form-data | 2.1.4 | 间接依赖 | npm |
| org.apache.lucene:lucene-memory | 7.2.1 | 间接依赖 | maven |
| base64-arraybuffer | 0.1.5 | 间接依赖 | npm |
| elliptic | 6.4.0 | 间接依赖 | npm |
| https-proxy-agent | 1.0.0 | 间接依赖 | npm |
| uglify-js | 2.8.29 | 直接依赖 | npm |
| smart-buffer | 1.1.15 | 间接依赖 | npm |
| buildmail | 4.0.1 | 间接依赖 | npm |
| diffie-hellman | 5.0.2 | 间接依赖 | npm |
| lazy-cache | 1.0.4 | 间接依赖 | npm |
| astw | 2.2.0 | 间接依赖 | npm |
| lru-cache | 4.1.1 | 间接依赖 | npm |
| gitconfiglocal | 1.0.0 | 间接依赖 | npm |
| parents | 1.0.1 | 间接依赖 | npm |
| commander | 2.10.0 | 间接依赖 | npm |
| mimic-fn | 1.1.0 | 间接依赖 | npm |
| combine-lists | 1.0.1 | 间接依赖 | npm |