Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

plantuml — Vulnerabilities & Security Advisories 4

Browse all 4 CVE security advisories affecting plantuml. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Plantuml is a Java-based tool for creating UML diagrams through text descriptions, widely used in software development for visualizing system architectures. Historically, it has been vulnerable to remote code execution (RCE) due to unsafe deserialization and improper input validation, as well as cross-site scripting (XSS) through crafted diagram inputs. The tool has faced privilege escalation risks in certain deployment scenarios. While no major public security incidents have been widely documented, the four CVEs on record highlight persistent concerns around input handling and sandbox bypasses. Its Java foundation introduces additional attack surfaces, though regular updates mitigate some risks. Users should implement strict input validation and maintain current versions to address potential vulnerabilities.

Top products by plantuml: plantuml/plantuml

This page lists every published CVE security advisory associated with plantuml. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.