92%
Total Score
100
91
80
100
| Title | Versions | Severity |
|---|---|---|
AIKIDO-2025-10102 Pre-CVE Found by Aikido Intel before public disclosure or CVE publication. primefaces is vulnerable to Cross-site Scripting (XSS) in versions 7.0.0 - 14.0.12. | 7.0.0 - 14.0.12 | Medium |
CVE-2017-1000486 org.primefaces:primefaces is vulnerable to Inadequate Encryption Strength in versions 5.0 - 6.0. | 5.0 - 6.0 | Critical |
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
org.primefaces:primefaces-cdk-api Version 16.0.0-RC2 | — | — |
org.json:json Version 20260719 | — | — |
org.owasp.encoder:encoder Version 1.4.0 | — | — |
commons-io:commons-io Version 2.15.1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant