Spring Security is a powerful and highly customizable authentication and access-control framework. It provides protection against attacks like session fixation, clickjacking, cross site request forgery, etc

Compile Dependencies (13)

Category/LicenseGroup / ArtifactVersionUpdates
Logging Apache 2.0
commons-logging » commons-logging
Apache Commons Logging is a thin adapter allowing configurable bridging to other,
1.1.11.3.6
Cache Impl Apache 2.0
net.sf.ehcache » ehcache(optional)
End-user ehcache3 jar artifact
1.6.23.12.0
Apache 2.0
org.apache.tomcat » annotations-api(optional)
Annotations Package
6.0.1411.0.22
AOP EPL 2.0
org.aspectj » aspectjrt
The AspectJ runtime is a small library necessary to run Java programs enhanced by AspectJ aspects during a previous
1.6.51.9.25.1
AOP EPL 2.0
org.aspectj » aspectjweaver
The AspectJ weaver applies aspects to Java classes. It can be used as a Java agent in order to apply load-time
1.6.51.9.25.1
Expression Lang Apache 2.0
org.springframework » spring-expression4 vulnerabilities
Powerful Expression Language for querying and manipulating an object graph at runtime. It is an extension of the ...
3.0.0.RC37.0.7
Core Utils Apache 2.0
org.springframework » spring-core5 vulnerabilities
Basic building block for Spring that in conjunction with Spring Beans provides dependency injection and IoC features.
3.0.0.RC37.0.7
Dep Injection Apache 2.0
org.springframework » spring-context3 vulnerabilities
Spring Context provides access to configured objects like a registry (a context). It inherits its features from Spring ...
3.0.0.RC37.0.7
Transactions Apache 2.0
org.springframework » spring-tx
Support for programmatic and declarative transaction management for classes that implement special interfaces or any ...
3.0.0.RC37.0.7
AOP Apache 2.0
org.springframework » spring-aop
Spring AOP provides an Alliance-compliant aspect-oriented programming implementation allowing you to define method ...
3.0.0.RC37.0.7
JDBC Extension Apache 2.0
org.springframework » spring-jdbc(optional)
Spring JDBC provides an abstraction layer that simplifies code to use JDBC and the parsing of database-vendor specific ...
3.0.0.RC37.0.7
Web Framework Apache 2.0
org.springframework » spring-web(optional)9 vulnerabilities
Spring Web provides integration features such as multipart file upload functionality and the initialization of the IoC ...
3.0.0.RC37.0.7
Testing Apache 2.0
org.springframework » spring-test(optional)
Spring Test supports the unit testing and integration testing of Spring components with JUnit or TestNG. It provides ...
3.0.0.RC37.0.7

Runtime Dependencies (2)

Category/LicenseGroup / ArtifactVersionUpdates
Bytecode Apache 2.0
cglib » cglib-nodep(optional)
High level API to generate and transform Java byte code. This version has no dependences (ASM is renamed and included in ...
2.23.3.0
Logging Apache 2.0
log4j » log4j(optional)6 vulnerabilities
Implementation for Apache Log4J, a highly configurable logging tool that focuses on performance and low garbage ...
1.2.142.26.0

Test Dependencies (2)

Category/LicenseGroup / ArtifactVersionUpdates
Collections Apache 2.0
commons-collections » commons-collections2 vulnerabilities
The Apache Commons Collections package contains types that extend and augment the Java Collections Framework.
3.24.5.0
hsqldb » hsqldb
HSQLDB - Lightweight 100% Java SQL Database Engine
1.8.0.72.7.4