Package Health

org.bouncycastle:bctls-fips

The Bouncy Castle Java APIs for the TLS, including a JSSE provider. The APIs are designed primarily to be used in conjunction with the BC FIPS provider. The APIs may also be used with other providers although if being used in a FIPS context it is the responsibility of the user to ensure that any other providers used are FIPS certified and used appropriately.

Latest 2.1.24MavenMaven

97%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

95

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

96

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

100

Are you affected? Scan for Free

Vulnerabilities

TitleVersionsSeverity
AIKIDO-2026-486120 New
bctls-fips is vulnerable to Denial of Service (DoS) in versions 1.0.0 - 1.0.23, 2.0.0 - 2.0.23 and 2.1.0 - 2.1.23.
1.0.0 - 1.0.232.0.0 - 2.0.232.1.0 - 2.1.23
Medium
AIKIDO-2026-733725 New
bctls-fips is vulnerable to Improper Certificate Validation in versions 1.0.7 - 1.0.23, 2.0.0 - 2.0.23 and 2.1.0 - 2.1.23.
1.0.7 - 1.0.232.0.0 - 2.0.232.1.0 - 2.1.23
High
CVE-2024-30171
org.bouncycastle:bctls-fips is vulnerable to Observable Discrepancy in versions 0.0.0 - 1.0.19.
0.0.0 - 1.0.19
Medium

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

DependencyLast ReleaseScore
org.bouncycastle:bcutil-fips
Version [2.1.7,2.2.0)

Weekly Downloads

Info

Last Published
25 days ago
Created
7 years ago