Skip to content

Vulnerable library protobuf-java 3.11.4

Moderate
skylot published GHSA-fjh6-p566-wr6q Jul 20, 2022

Package

maven com.google.protobuf:protobuf-java (Maven)

Affected versions

3.11.4

Patched versions

3.16.1, 3.18.2, 3.19.2

Description

Impact

Vulnerable library protobuf-java 3.11.4 (CVE-2021-22569)

Patches

Dependency updated in jadx 1.4.3

References

According to the AquaSecurity report:
05F1C52A666E4FCC844ABD085BD55124

Also, Maven repository have links to this and other vulnerabilities from dependencies:
https://mvnrepository.com/artifact/com.google.protobuf/protobuf-java/3.11.4

Severity

Moderate

CVE ID

CVE-2021-22569

Weaknesses

No CWEs

Credits