Dependency-Check is an open source tool performing a best effort analysis of 3rd party dependencies;
false positives and false negatives may exist in the analysis performed by the tool. Use of the tool and
the reporting provided constitutes acceptance for use in an AS IS condition, and there are NO warranties,
implied or otherwise, with regard to the analysis or its use. Any use of the tool and the reporting provided
is at the user’s risk. In no event shall the copyright holder or OWASP be held liable for any damages whatsoever
arising out of or in connection with the use of this tool, the analysis performed, or the resulting report.
File Path: /Volumes/Users/fritz/Business/Tidalwave/Projects/WorkAreas/Tidalwave/tidalwave.bitbucket.io/repository/org/eclipse/angus/angus-activation/2.0.2/angus-activation-2.0.2.jar MD5: 42bba74155dc773eca277ee7a16f74be SHA1: 41f1e0ddd157c856926ed149ab837d110955a9fc SHA256:6dd3bcffc22bce83b07376a0e2e094e4964a3195d4118fb43e380ef35436cc1e Referenced In Project/Scope: TheseFoolishThings :: Examples :: Finder :: JPA Finder:runtime angus-activation-2.0.2.jar is in the transitive dependency tree of the listed items.Included by: pkg:maven/org.hibernate.orm/hibernate-core@6.6.3.Final
File Path: /Volumes/Users/fritz/Business/Tidalwave/Projects/WorkAreas/Tidalwave/tidalwave.bitbucket.io/repository/org/antlr/antlr4-runtime/4.13.0/antlr4-runtime-4.13.0.jar MD5: bff95723c494b332b14575d713a65df4 SHA1: 5a02e48521624faaf5ff4d99afc88b01686af655 SHA256:bd7f7b5d07bc0b047f10915b32ca4bb1de9e57d8049098882e4453c88c076a5d Referenced In Project/Scope: TheseFoolishThings :: Examples :: Finder :: JPA Finder:runtime antlr4-runtime-4.13.0.jar is in the transitive dependency tree of the listed items.Included by: pkg:maven/org.hibernate.orm/hibernate-core@6.6.3.Final
Byte Buddy is a Java library for creating Java classes at run time.
This artifact is a build of Byte Buddy with all ASM dependencies repackaged into its own name space.
File Path: /Volumes/Users/fritz/Business/Tidalwave/Projects/WorkAreas/Tidalwave/tidalwave.bitbucket.io/repository/net/bytebuddy/byte-buddy/1.15.11/byte-buddy-1.15.11.jar MD5: 603bc53c7a294f23765bfb7e1820ad44 SHA1: f61886478e0f9ee4c21d09574736f0ff45e0a46c SHA256:fa08998aae1e7bdae83bde0712c50e8444d71c0e0c196bb2247ade8d4ad0eb90 Referenced In Project/Scope: TheseFoolishThings :: Examples :: Finder :: JPA Finder:runtime byte-buddy-1.15.11.jar is in the transitive dependency tree of the listed items.Included by: pkg:maven/org.hibernate.orm/hibernate-core@6.6.3.Final
Library for introspecting types with full generic information
including resolving of field and method types.
License:
Apache License, Version 2.0: https://www.apache.org/licenses/LICENSE-2.0.txt
File Path: /Volumes/Users/fritz/Business/Tidalwave/Projects/WorkAreas/Tidalwave/tidalwave.bitbucket.io/repository/com/fasterxml/classmate/1.7.0/classmate-1.7.0.jar MD5: 3b8f14fe92feb865a8205aa63c5ed769 SHA1: 0e98374da1f2143ac8e6e0a95036994bb19137a3 SHA256:cb868f231c5cceb89d795ea00e6e1b7a93b8f4ac1ce1d8be76dde322dff4a046 Referenced In Project/Scope: TheseFoolishThings :: Examples :: Finder :: JPA Finder:runtime classmate-1.7.0.jar is in the transitive dependency tree of the listed items.Included by: pkg:maven/org.hibernate.orm/hibernate-core@6.6.3.Final
File Path: /Volumes/Users/fritz/Business/Tidalwave/Projects/WorkAreas/Tidalwave/tidalwave.bitbucket.io/repository/com/h2database/h2/2.3.232/h2-2.3.232.jar MD5: 756154ae197457f2995b89c11bc9b2c3 SHA1: 4fcc05d966ccdb2812ae8b9a718f69226c0cf4e2 SHA256:8dae62d22db8982c3dcb3826edb9c727c5d302063a67eef7d63d82de401f07d3 Referenced In Project/Scope: TheseFoolishThings :: Examples :: Finder :: JPA Finder:compile h2-2.3.232.jar is in the transitive dependency tree of the listed items.Included by: pkg:maven/it.tidalwave.thesefoolishthings/it-tidalwave-thesefoolishthings-examples-finderexample3@3.2-ALPHA-25
h2database - Improper Link Resolution Before File Access
The software attempts to access a file based on the filename, but it does not properly prevent that filename from identifying a link or shortcut that resolves to an unintended resource.
CWE-59 Improper Link Resolution Before File Access ('Link Following')
File Path: /Volumes/Users/fritz/Business/Tidalwave/Projects/WorkAreas/Tidalwave/tidalwave.bitbucket.io/repository/com/h2database/h2/2.3.232/h2-2.3.232.jar/org/h2/util/data.zip/org/h2/server/web/res/table.js MD5: 8973a8c183f3455d8c4fe07a9a963429 SHA1: 4b32bb0b435151f899abdc8a98dab8f844b10b94 SHA256:807d50c7d28cc022b174774cfaff3d1c8b39ea04c1e260ddb6265e7fc0660910 Referenced In Project/Scope: TheseFoolishThings :: Examples :: Finder :: JPA Finder:compile
Evidence
Type
Source
Name
Value
Confidence
Identifiers
None
h2-2.3.232.jar: data.zip: tree.js
File Path: /Volumes/Users/fritz/Business/Tidalwave/Projects/WorkAreas/Tidalwave/tidalwave.bitbucket.io/repository/com/h2database/h2/2.3.232/h2-2.3.232.jar/org/h2/util/data.zip/org/h2/server/web/res/tree.js MD5: 8105bba99dd1db86cb1cf23b2556a620 SHA1: 1c00b802f6cb1013cb0ed40eec6a98b5ba4cd0e7 SHA256:c5602b0b3488bb7d61959228a224a5f806f2749d67f9cdc182327fe069b94238 Referenced In Project/Scope: TheseFoolishThings :: Examples :: Finder :: JPA Finder:compile
Evidence
Type
Source
Name
Value
Confidence
Identifiers
None
hibernate-commons-annotations-7.0.3.Final.jar
Description:
Common reflection code used in support of annotation processing
License:
Apache License Version 2.0: https://opensource.org/licenses/Apache-2.0
File Path: /Volumes/Users/fritz/Business/Tidalwave/Projects/WorkAreas/Tidalwave/tidalwave.bitbucket.io/repository/org/hibernate/common/hibernate-commons-annotations/7.0.3.Final/hibernate-commons-annotations-7.0.3.Final.jar MD5: 6698f99235fe6d36c42caaf2e6b52797 SHA1: e183c4be8bb41d12e9f19b374e00c34a0a85f439 SHA256:0db2fd57d5e43688ac6ed5cdf36deaf05d84340dcc24c2dd2a2114de38e5175d Referenced In Project/Scope: TheseFoolishThings :: Examples :: Finder :: JPA Finder:runtime hibernate-commons-annotations-7.0.3.Final.jar is in the transitive dependency tree of the listed items.Included by: pkg:maven/org.hibernate.orm/hibernate-core@6.6.3.Final
GNU Library General Public License v2.1 or later: https://www.opensource.org/licenses/LGPL-2.1
File Path: /Volumes/Users/fritz/Business/Tidalwave/Projects/WorkAreas/Tidalwave/tidalwave.bitbucket.io/repository/org/hibernate/orm/hibernate-core/6.6.3.Final/hibernate-core-6.6.3.Final.jar MD5: 4958b9d932192d83eb93442e1cd4c7bf SHA1: d32d7ef93bb2ecbef8738cda4ead5ee6fa19f5c1 SHA256:6e341ca061766070f455473bc90e893b51260cffe91ada628ae3fa482dd1da72 Referenced In Project/Scope: TheseFoolishThings :: Examples :: Finder :: JPA Finder:compile hibernate-core-6.6.3.Final.jar is in the transitive dependency tree of the listed items.Included by: pkg:maven/it.tidalwave.thesefoolishthings/it-tidalwave-thesefoolishthings-examples-finderexample3@3.2-ALPHA-25
File Path: /Volumes/Users/fritz/Business/Tidalwave/Projects/WorkAreas/Tidalwave/tidalwave.bitbucket.io/repository/com/sun/istack/istack-commons-runtime/4.1.2/istack-commons-runtime-4.1.2.jar MD5: 535154ef647af2a52478c4debec93659 SHA1: 18ec117c85f3ba0ac65409136afa8e42bc74e739 SHA256:7fd6792361f4dd00f8c56af4a20cecc0066deea4a8f3dec38348af23fc2296ee Referenced In Project/Scope: TheseFoolishThings :: Examples :: Finder :: JPA Finder:runtime istack-commons-runtime-4.1.2.jar is in the transitive dependency tree of the listed items.Included by: pkg:maven/org.hibernate.orm/hibernate-core@6.6.3.Final
File Path: /Volumes/Users/fritz/Business/Tidalwave/Projects/WorkAreas/Tidalwave/tidalwave.bitbucket.io/repository/jakarta/activation/jakarta.activation-api/2.1.3/jakarta.activation-api-2.1.3.jar MD5: 76e7b680375ea9f40f3ddbd702efcd25 SHA1: fa165bd70cda600368eee31555222776a46b881f SHA256:01b176d718a169263e78290691fc479977186bcc6b333487325084d6586f4627 Referenced In Project/Scope: TheseFoolishThings :: Examples :: Finder :: JPA Finder:runtime jakarta.activation-api-2.1.3.jar is in the transitive dependency tree of the listed items.Included by: pkg:maven/org.hibernate.orm/hibernate-core@6.6.3.Final
The Apache Software License, Version 2.0: http://www.apache.org/licenses/LICENSE-2.0.txt
File Path: /Volumes/Users/fritz/Business/Tidalwave/Projects/WorkAreas/Tidalwave/tidalwave.bitbucket.io/repository/jakarta/inject/jakarta.inject-api/2.0.0/jakarta.inject-api-2.0.0.jar MD5: 6dcba3a46ee8556a4d4312c1c2bd4d79 SHA1: 46fc8560b6fd17b78396d88f39c1a730457671f0 SHA256:842ccf3b892aca3fbd384c99d1516a8b7c448c55cee560ab2724488016198706 Referenced In Project/Scope: TheseFoolishThings :: Examples :: Finder :: JPA Finder:runtime jakarta.inject-api-2.0.0.jar is in the transitive dependency tree of the listed items.Included by: pkg:maven/org.hibernate.orm/hibernate-core@6.6.3.Final
Eclipse Public License v. 2.0: http://www.eclipse.org/legal/epl-2.0
Eclipse Distribution License v. 1.0: http://www.eclipse.org/org/documents/edl-v10.php
File Path: /Volumes/Users/fritz/Business/Tidalwave/Projects/WorkAreas/Tidalwave/tidalwave.bitbucket.io/repository/jakarta/persistence/jakarta.persistence-api/3.1.0/jakarta.persistence-api-3.1.0.jar MD5: 35a1b7dfb38cf44ff795be607b0e6b5b SHA1: 66901fa1c373c6aff65c13791cc11da72060a8d6 SHA256:475389446d35c6f46c565728b756dc508c284644ea2690644e0d8e7e339d42fd Referenced In Project/Scope: TheseFoolishThings :: Examples :: Finder :: JPA Finder:compile jakarta.persistence-api-3.1.0.jar is in the transitive dependency tree of the listed items.Included by: pkg:maven/org.hibernate.orm/hibernate-core@6.6.3.Final
File Path: /Volumes/Users/fritz/Business/Tidalwave/Projects/WorkAreas/Tidalwave/tidalwave.bitbucket.io/repository/jakarta/transaction/jakarta.transaction-api/2.0.1/jakarta.transaction-api-2.0.1.jar MD5: 5315974a3935e342b40849478e1c9966 SHA1: 51a520e3fae406abb84e2e1148e6746ce3f80a1a SHA256:50c0a7c760c13ae6c042acf182b28f0047413db95b4636fb8879bcffab5ba875 Referenced In Project/Scope: TheseFoolishThings :: Examples :: Finder :: JPA Finder:compile jakarta.transaction-api-2.0.1.jar is in the transitive dependency tree of the listed items.Included by: pkg:maven/org.hibernate.orm/hibernate-core@6.6.3.Final
File Path: /Volumes/Users/fritz/Business/Tidalwave/Projects/WorkAreas/Tidalwave/tidalwave.bitbucket.io/repository/jakarta/xml/bind/jakarta.xml.bind-api/4.0.2/jakarta.xml.bind-api-4.0.2.jar MD5: 0c8f9991081def819435c3ff36e4d93f SHA1: 6cd5a999b834b63238005b7144136379dc36cad2 SHA256:0d6bcfe47763e85047acf7c398336dc84ff85ebcad0a7cb6f3b9d3e981245406 Referenced In Project/Scope: TheseFoolishThings :: Examples :: Finder :: JPA Finder:runtime jakarta.xml.bind-api-4.0.2.jar is in the transitive dependency tree of the listed items.Included by: pkg:maven/org.hibernate.orm/hibernate-core@6.6.3.Final
File Path: /Volumes/Users/fritz/Business/Tidalwave/Projects/WorkAreas/Tidalwave/tidalwave.bitbucket.io/repository/io/smallrye/jandex/3.2.0/jandex-3.2.0.jar MD5: 703254a1bd4c37efeebdc0a283c65565 SHA1: f17ad860f62a08487b9edabde608f8ac55c62fa7 SHA256:6da3e9ce8d0c0a433f3e7ce610a3c66accb00c71fee67aa0ff3e5a841395ac15 Referenced In Project/Scope: TheseFoolishThings :: Examples :: Finder :: JPA Finder:runtime jandex-3.2.0.jar is in the transitive dependency tree of the listed items.Included by: pkg:maven/org.hibernate.orm/hibernate-core@6.6.3.Final
CDDL + GPLv2 with classpath exception: https://github.com/javaee/javax.annotation/blob/master/LICENSE
File Path: /Volumes/Users/fritz/Business/Tidalwave/Projects/WorkAreas/Tidalwave/tidalwave.bitbucket.io/repository/javax/annotation/javax.annotation-api/1.3.2/javax.annotation-api-1.3.2.jar MD5: 2ab1973eefffaa2aeec47d50b9e40b9d SHA1: 934c04d3cfef185a8008e7bf34331b79730a9d43 SHA256:e04ba5195bcd555dc95650f7cc614d151e4bcd52d29a10b8aa2197f3ab89ab9b Referenced In Project/Scope: TheseFoolishThings :: Examples :: Finder :: JPA Finder:compile javax.annotation-api-1.3.2.jar is in the transitive dependency tree of the listed items.Included by: pkg:maven/it.tidalwave.thesefoolishthings/it-tidalwave-thesefoolishthings-examples-finderexample3@3.2-ALPHA-25
File Path: /Volumes/Users/fritz/Business/Tidalwave/Projects/WorkAreas/Tidalwave/tidalwave.bitbucket.io/repository/org/glassfish/jaxb/jaxb-core/4.0.5/jaxb-core-4.0.5.jar MD5: ab09aef6bebd4438b0a02707881801e4 SHA1: 007b4b11ea5542eea4ad55e1080b23be436795b3 SHA256:ad3fd9bf00de3eda9859f70b6cfb011e2fe9904804e16a2665092888ece0fdca Referenced In Project/Scope: TheseFoolishThings :: Examples :: Finder :: JPA Finder:runtime jaxb-core-4.0.5.jar is in the transitive dependency tree of the listed items.Included by: pkg:maven/org.hibernate.orm/hibernate-core@6.6.3.Final
File Path: /Volumes/Users/fritz/Business/Tidalwave/Projects/WorkAreas/Tidalwave/tidalwave.bitbucket.io/repository/org/glassfish/jaxb/jaxb-runtime/4.0.5/jaxb-runtime-4.0.5.jar MD5: c7384f1f95b8a8e15291485ff9dbe4f3 SHA1: ca84c2a7169b5293e232b9d00d1e4e36d4c3914a SHA256:485d8940e76373a7f300815ea5504bf5b726c234425ad30971019d133124cca4 Referenced In Project/Scope: TheseFoolishThings :: Examples :: Finder :: JPA Finder:runtime jaxb-runtime-4.0.5.jar is in the transitive dependency tree of the listed items.Included by: pkg:maven/org.hibernate.orm/hibernate-core@6.6.3.Final
File Path: /Volumes/Users/fritz/Business/Tidalwave/Projects/WorkAreas/Tidalwave/tidalwave.bitbucket.io/repository/org/jboss/logging/jboss-logging/3.6.1.Final/jboss-logging-3.6.1.Final.jar MD5: acab989faf62db02c092448e95614fab SHA1: 886afbb445b4016a37c8960a7aef6ebd769ce7e5 SHA256:5e08a4b092dc85b337f0910a740571d8720cfa565fabd880a8caf94a657ca416 Referenced In Project/Scope: TheseFoolishThings :: Examples :: Finder :: JPA Finder:runtime jboss-logging-3.6.1.Final.jar is in the transitive dependency tree of the listed items.Included by: pkg:maven/org.hibernate.orm/hibernate-core@6.6.3.Final
The Apache Software License, Version 2.0: http://www.apache.org/licenses/LICENSE-2.0.txt
File Path: /Volumes/Users/fritz/Business/Tidalwave/Projects/WorkAreas/Tidalwave/tidalwave.bitbucket.io/repository/com/google/code/findbugs/jsr305/3.0.2/jsr305-3.0.2.jar MD5: dd83accb899363c32b07d7a1b2e4ce40 SHA1: 25ea2e8b0c338a877313bd4672d3fe056ea78f0d SHA256:766ad2a0783f2687962c8ad74ceecc38a28b9f72a2d085ee438b7813e928d0c7 Referenced In Project/Scope: TheseFoolishThings :: Examples :: Finder :: JPA Finder:compile jsr305-3.0.2.jar is in the transitive dependency tree of the listed items.Included by: pkg:maven/com.github.spotbugs/spotbugs-annotations@3.1.9
File Path: /Volumes/Users/fritz/Business/Tidalwave/Projects/WorkAreas/Tidalwave/tidalwave.bitbucket.io/repository/ch/qos/logback/logback-core/1.5.15/logback-core-1.5.15.jar MD5: 932d68eb5c938eee29ddd0f47c0cf31b SHA1: 81633c8360b7e5b4edc52ca908bf14de0b73ef05 SHA256:695bc40dd790cb710575f768e37b8eb12f814d84b008011a2ef85d5daaafa745 Referenced In Project/Scope: TheseFoolishThings :: Examples :: Finder :: JPA Finder:runtime logback-core-1.5.15.jar is in the transitive dependency tree of the listed items.Included by: pkg:maven/it.tidalwave.thesefoolishthings/it-tidalwave-thesefoolishthings-examples-finderexample3@3.2-ALPHA-25
Spice up your java: Automatic Resource Management, automatic generation of getters, setters, equals, hashCode and toString, and more!
License:
The MIT License: https://projectlombok.org/LICENSE
File Path: /Volumes/Users/fritz/Business/Tidalwave/Projects/WorkAreas/Tidalwave/tidalwave.bitbucket.io/repository/org/projectlombok/lombok/1.18.36/lombok-1.18.36.jar MD5: 92c08153ae16c161c8cc2cc8185d2724 SHA1: 5a30490a6e14977d97d9c73c924c1f1b5311ea95 SHA256:73b6b05b6a2d365b700bab08d30f94de9d336490bc0acce5b6181fef48cbf18e Referenced In Project/Scope: TheseFoolishThings :: Examples :: Finder :: JPA Finder:provided lombok-1.18.36.jar is in the transitive dependency tree of the listed items.Included by: pkg:maven/it.tidalwave.thesefoolishthings/it-tidalwave-thesefoolishthings-examples-finderexample3@3.2-ALPHA-25
File Path: /Volumes/Users/fritz/Business/Tidalwave/Projects/WorkAreas/Tidalwave/tidalwave.bitbucket.io/repository/org/slf4j/slf4j-api/2.0.16/slf4j-api-2.0.16.jar MD5: c8de8f5d740584cb24b5652cfba8b3c4 SHA1: 0172931663a09a1fa515567af5fbef00897d3c04 SHA256:a12578dde1ba00bd9b816d388a0b879928d00bab3c83c240f7013bf4196c579a Referenced In Project/Scope: TheseFoolishThings :: Examples :: Finder :: JPA Finder:compile slf4j-api-2.0.16.jar is in the transitive dependency tree of the listed items.Included by: pkg:maven/it.tidalwave.thesefoolishthings/it-tidalwave-role@3.2-ALPHA-25
GNU LESSER GENERAL PUBLIC LICENSE, Version 2.1: https://www.gnu.org/licenses/old-licenses/lgpl-2.1.en.html
File Path: /Volumes/Users/fritz/Business/Tidalwave/Projects/WorkAreas/Tidalwave/tidalwave.bitbucket.io/repository/com/github/spotbugs/spotbugs-annotations/3.1.9/spotbugs-annotations-3.1.9.jar MD5: 56a1a81d69b6a111161bbce0e6dea26a SHA1: 2ef5127efcc1a899aab8c66d449a631c9a99c469 SHA256:68c7c46b4299e94837e236ae742f399901a950fe910fe3ca710026753b5dd2e1 Referenced In Project/Scope: TheseFoolishThings :: Examples :: Finder :: JPA Finder:compile spotbugs-annotations-3.1.9.jar is in the transitive dependency tree of the listed items.Included by: pkg:maven/it.tidalwave.thesefoolishthings/it-tidalwave-thesefoolishthings-examples-finderexample3@3.2-ALPHA-25
TXW is a library that allows you to write XML documents.
File Path: /Volumes/Users/fritz/Business/Tidalwave/Projects/WorkAreas/Tidalwave/tidalwave.bitbucket.io/repository/org/glassfish/jaxb/txw2/4.0.5/txw2-4.0.5.jar MD5: 2f5aa7dbd5e326562cff6ce720a1485a SHA1: f36a4ef12120a9bb06d766d6a0e54b144fd7ed98 SHA256:917355bc451481f30d043b24d123110517966af34383901773882810dca480e5 Referenced In Project/Scope: TheseFoolishThings :: Examples :: Finder :: JPA Finder:runtime txw2-4.0.5.jar is in the transitive dependency tree of the listed items.Included by: pkg:maven/org.hibernate.orm/hibernate-core@6.6.3.Final