Maven · repo1.maven.org
org.beangle.hibernate:beangle-hibernate-core
Java Jndi Lookup: JNDI / Naming.lookup — remote class-loading primitive (Log4Shell family).
Why PkgRadar flagged 7.4.1.Final
| Severity | Signal | Evidence |
|---|---|---|
| medium | Java Jndi Lookup | JNDI / Naming.lookup — remote class-loading primitive (Log4Shell family). · org/hibernate/engine/jndi/internal/JndiServiceImpl.java |
| medium | Remote Payload | matched "cUrl " · org/hibernate/boot/registry/internal/StandardServiceRegistryImpl.java |
| medium | Remote Payload | matched "cUrl " · org/hibernate/engine/jdbc/connections/internal/DatabaseConnectionInfoImpl.java |
| medium | Remote Payload | matched "cUrl " · org/hibernate/jpa/boot/internal/EntityManagerFactoryBuilderImpl.java |
Scanned versions
| Version | Verdict | Score | Scanned (UTC) |
|---|---|---|---|
7.4.1.Final | High risk | 30 | 2026-06-15 |
Block this in CI
pkgradar gate --ecosystem maven org.beangle.hibernate:[email protected]