VYPR

Maven package

org.richfaces/richfaces

pkg:maven/org.richfaces/richfaces

Vulnerabilities (2)

  • CVE-2014-0086Mar 31, 2014
    affected >= 4.3.4, <= 4.3.5

    The doFilter function in webapp/PushHandlerFilter.java in JBoss RichFaces 4.3.4, 4.3.5, and 5.x allows remote attackers to cause a denial of service (memory consumption and out-of-memory error) via a large number of malformed atmosphere push requests.

  • CVE-2013-2165Jul 23, 2013
    affected >= 3.1.0, < 3.3.3fixed 3.3.3

    ResourceBuilderImpl.java in the RichFaces 3.x through 5.x implementation in Red Hat JBoss Web Framework Kit before 2.3.0, Red Hat JBoss Web Platform through 5.2.0, Red Hat JBoss Enterprise Application Platform through 4.3.0 CP10 and 5.x through 5.2.0, Red Hat JBoss BRMS through 5