WhisperX tag archive

#Maven

This page collects WhisperX intelligence signals tagged #Maven. It is designed for humans, search engines, and AI agents: each item links to a canonical source-backed record with sector, source, timestamp, credibility, and exportable structured data.

Latest Signals (2)

The Lab · 2026-03-27 03:27:02 · GitHub Issues

1. CVE-2025-67030: Critical Directory Traversal Flaw in Plexus-Utils Library Exposes Systems to Arbitrary Code Execution

A critical vulnerability in a widely used Java library allows attackers to execute arbitrary code on affected systems. The flaw, tracked as CVE-2025-67030, is a Directory Traversal vulnerability in the `extractFile` method of `org.codehaus.plexus.util.Expand` within the `plexus-utils` library. This vulnerability enable...

The Lab · 2026-04-18 07:22:32 · GitHub Issues

2. Dependency-Track Adds Maven/pom.xml Support as 9th Ecosystem, Expanding Java Vulnerability Scanning

Dependency-Track, an open-source software composition analysis (SCA) platform, has expanded its vulnerability scanning capabilities to include the Maven ecosystem. This marks the ninth package manager supported by the project, integrating Java projects into its automated security analysis pipeline. The new feature enab...