Core domain for batch processing, expressing a domain of Jobs, Steps, Chunks, etc
87%
Total Score
99
60
80
100
| Title | Versions | Severity |
|---|---|---|
AIKIDO-2026-474902 New spring-batch-core is vulnerable to Deserialization of Untrusted Data in versions 0.0.1 - 6.0.4. | 0.0.1 - 6.0.4 | Medium |
AIKIDO-2026-908402 New spring-batch-core is vulnerable to Deserialization of Untrusted Data in versions 5.2.0 - 6.0.4. | 5.2.0 - 6.0.4 | Medium |
CVE-2020-5411 org.springframework.batch:spring-batch-core is vulnerable to Deserialization of Untrusted Data in versions 4.0.0 - 4.2.2. | 4.0.0 - 4.2.2 | High |
CVE-2019-3774 org.springframework.batch:spring-batch-core is vulnerable to Improper Restriction of XML External Entity Reference in versions 0.0.0 - 3.0.10.RELEASE, 4.0.0.RELEASE - 4.0.2.RELEASE and 4.1.0.RELEASE - 4.1.0.RELEASE. | 0.0.0 - 3.0.10.RELEASE4.0.0.RELEASE - 4.0.2.RELEASE4.1.0.RELEASE - 4.1.0.RELEASE | Critical |
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
org.springframework.batch:spring-batch-infrastructure Version 6.1.0-M1 | — | — |
org.springframework:spring-aop Version 7.1.0-M1 | — | — |
org.springframework:spring-beans Version 7.1.0-M1 | — | — |
org.springframework:spring-context Version 7.1.0-M1 | — | — |
org.springframework:spring-tx Version 7.1.0-M1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant