Package Health

zstd-jni

JNI bindings for Zstd native library that provides fast and high compression lossless algorithm for Java and all JVM languages.

Latest 1.5.7-21com.github.lubenMavenMaven

88%

Total Score

healthy

Healthy: strong ongoing maintenance and frequent releases outweigh unpinned CI actions.

Are you affected? Scan for Free

Health Score Breakdown

Repo toolingcaution

The project uses established build tools, but no security-scanning tools were detected. This is a modest transparency and maintenance gap, not evidence of an unsafe release by itself.

Security policycaution

The repository has no published security policy, leaving vulnerability-reporting expectations unclear for a native-code library.

Version stabilitycaution

The latest version is on a stable major line, but it is classified as a prerelease and all recent releases share that classification, which adds some release-quality uncertainty.

Workflow auditcaution

Both workflows completed the audit without detected dangerous findings or untrusted checkouts, but all 24 action references are unpinned, weakening build reproducibility and update control.

Vulnerabilities

TitleVersionsSeverity
AIKIDO-2026-777190 New
zstd-jni is vulnerable to Out-of-bounds Read in versions 1.2.0 - 1.5.7-13.
1.2.0 - 1.5.7-13
High
AIKIDO-2026-954873 New
zstd-jni is vulnerable to Integer Overflow in versions 1.1.1 - 1.5.7-13.
1.1.1 - 1.5.7-13
Medium
AIKIDO-2026-989226 New
zstd-jni is vulnerable to Out-of-bounds Read in versions 1.3.3-1 - 1.5.7-13.
1.3.3-1 - 1.5.7-13
High
AIKIDO-2026-35074 New
zstd-jni is vulnerable to Use-After-Free in versions 1.3.8-4 - 1.5.7-13.
1.3.8-4 - 1.5.7-13
High
AIKIDO-2026-536802 New
zstd-jni is vulnerable to Use-After-Free in versions 1.3.8-4 - 1.5.7-13.
1.3.8-4 - 1.5.7-13
High

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

No direct dependencies.

Weekly Downloads

Info

Last Published
3 days ago
Created
10 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform