PkgRadar

Maven · repo1.maven.org

org.jgroups:jgroups

Java Jndi Lookup, Java Unsafe Deserialize, Java Process Spawn +1 more

Why PkgRadar flagged 5.5.6.Final

SeveritySignalEvidence
mediumJava Jndi Lookuporg/jgroups/protocols/JDBC_PING2.java
mediumJava Jndi Lookuporg/jgroups/protocols/JDBC_PING.java
mediumJava Unsafe Deserializeorg/jgroups/blocks/ReplicatedHashMap.java
mediumJava Unsafe Deserializeorg/jgroups/util/Base64.java
mediumJava Process Spawnorg/jgroups/protocols/FD_HOST.java
mediumJava Static Init Side Effectorg/jgroups/protocols/SWIFT_PING.java

Showing signal labels only. Sign in to view the exact matched indicators for each finding.

Scanned versions

VersionVerdictScoreScanned (UTC)
5.5.6.FinalReview352026-06-25

Block this in CI

PkgRadar gates org.jgroups:jgroups (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem maven org.jgroups:[email protected]