maven package report

Is com.github.tomakehurst:wiremock-jre8 safe?

1 known vulnerability, worst severity MEDIUM.

cvss
3.9

how bad it is if exploited, out of 10

epss
0.60%

chance of exploitation in the next 30 days

xyz score
2.2

CyberXYZ composite, out of 10

fig. 01 — GHSA-pmxq-pj47-j8j4, the advisory selected below

// advisories

GHSA-pmxq-pj47-j8j4

MEDIUMCVE-2023-41329

The proxy mode of WireMock, can be protected by the network restrictions configuration, as documented in [Preventing proxying to and recording from specific target addresses](https://wiremock.org/docs/configuration/#preventing-proxying-to-and-recording-from-specific-target-addresses). These restrictions can be configured using the domain names, and in such a case the configuration is vulnerable to

Affected
>=0, <2.35.1, >=3.0.0, <3.0.3
Fixed in
2.35.1
Weakness
CWE-290
Published
2023-09-08
Source
github

GHSANVDMITRE


// ai model usage

Tracked for PyPI packages. HuggingFace models declare Python dependencies, so maven packages are not covered.


Checked 2026-09-22 at 02:38 UTC. The most recent advisory here was published 2023-09-08. Updated continuously from NVD, GHSA, OSV and CNA feeds.

Think a verdict here is wrong? Tell us — we respond within 2 business days.
Is com.github.tomakehurst:wiremock-jre8 safe? maven package security report | CyberXYZ