codehaus-plexus
Security Risk Profile
77
/100
highSecurity Risk Score
Comprehensive risk assessment based on 6 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from January 3, 2018 to present
6
Total CVEs
4
Critical+High
0
Exploited
0
Unpatched
Threat Assessment
Avg CVSS
7.6
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
0
Critical/High
Risk Level
77/100
high
Severity Distribution
Critical
2High
2Medium
2Low
0Exploit Likelihood
>50% chance
020-50%
05-20%
0<5%
0Age Distribution
Common Weaknesses (CWE)
1
Path Traversal
4
2
XEE
1
3
OS Command Injection
1
4
Command Injection
1
Most Affected Products
1. Codehaus-plexus Plexus-utils5
2. Debian Debian Linux5
3. maven/org.codehaus.plexus:plexus-utils3
4. redhat/plexus-archiver2
5. Codehaus-plexus plexus-archiver2
Recent Vulnerabilities
See more →CVE-2025-67030
CVSS 8.8high
3/25/2026
CVE-2023-37460
CVSS 9.8critical
Plexus Archiver vulnerable to Arbitrary File Creation in AbstractUnArchiver
7/25/2023
CVE-2022-4245
CVSS 4.3medium
Codehaus-plexus: xml external entity (xxe) injection
12/1/2022
CVE-2022-4244
CVSS 7.5high
Codehaus-plexus: directory traversal
12/1/2022
CVE-2018-1002200
CVSS 5.5medium
5/30/2018
CVE-2017-1000487
CVSS 9.8critical
1/3/2018
Monitor codehaus-plexus in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.