6 Total advisories
6 Vulnerabilities
0 Malware
Dependency scanning
Check whether com.google.protobuf:protobuf-java is in your codebase
Corgea flags malicious and compromised dependencies with reachability analysis, so you fix the packages that actually run in your application instead of working through the whole lockfile.
Vulnerabilities
MEDIUM 5.7
CVE-2022-3171
protobuf-java has a potential Denial of Service issue
HIGH 7.5
CVE-2024-7254
protobuf-java has potential Denial of Service issue
HIGH 7.5
CVE-2021-22570
Withdrawn Advisory: NULL Pointer Dereference in Protocol Buffers
HIGH 7.5
CVE-2022-3510
Protobuf Java vulnerable to Uncontrolled Resource Consumption
HIGH 7.5
CVE-2021-22569
A potential Denial of Service issue in protobuf-java
HIGH 7.5
CVE-2022-3509
Protobuf Java vulnerable to Uncontrolled Resource Consumption
Browse more Maven advisories
Learn What is SAST?
Static Application Security Testing finds vulnerabilities like this one in source code before it ships. Read the guide →
Ready to move
Start Securing
Free, no credit card | First findings in minutes