Hutool 扩展工具类(提供其它类库的封装)
88%
Total Score
97
28
100
100
| Title | Versions | Severity |
|---|---|---|
AIKIDO-2026-10920 Pre-CVE Found by Aikido Intel before public disclosure or CVE publication. hutool-extra is vulnerable to Remote Code Execution (RCE) in versions 0.0.1 - 5.8.45. | 0.0.1 - 5.8.45 | Critical |
CVE-2025-56769 cn.hutool:hutool-extra is vulnerable to Improper Neutralization of Special Elements used in an Expression Language Statement ('Expression Language Injection') in versions 0.0.0 - 5.8.40. | 0.0.0 - 5.8.40 | High |
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
cn.hutool:hutool-core Version ${project.parent.version} | — | — |
cn.hutool:hutool-setting Version ${project.parent.version} | — | — |
org.apache.velocity:velocity-engine-core Version 2.3 | — | — |
com.ibeetl:beetl Version 3.15.14.RELEASE | — | — |
org.rythmengine:rythm-engine Version 1.4.2 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant