VYPR

Maven package

edu.stanford.nlp/stanford-corenlp

pkg:maven/edu.stanford.nlp/stanford-corenlp

Vulnerabilities (5)

  • CVE-2021-44550Feb 23, 2022
    affected < 4.4.0fixed 4.4.0

    An Incorrect Access Control vulnerability exists in CoreNLP 4.3.2 via the classifier in NERServlet.java (lines 158 and 159).

  • CVE-2022-0239CriJan 17, 2022
    affected < 4.4.0fixed 4.4.0

    corenlp is vulnerable to Improper Restriction of XML External Entity Reference

  • CVE-2022-0198Jan 13, 2022
    affected <= 4.3.2

    corenlp is vulnerable to Improper Restriction of XML External Entity Reference

  • CVE-2021-3869Oct 19, 2021
    affected < 4.3.1fixed 4.3.1

    corenlp is vulnerable to Improper Restriction of XML External Entity Reference

  • CVE-2021-3878Oct 15, 2021
    affected < 4.3.1fixed 4.3.1

    corenlp is vulnerable to Improper Restriction of XML External Entity Reference