Giter Club home page Giter Club logo

httpcomponents-client's Introduction

Apache HttpComponents Client
============================

Welcome to the HttpClient component of the Apache HttpComponents project.

Building Instructions
---------------------

For building from source instructions please refer to BUILDING.txt.

Dependencies
------------

HttpClient main module requires Java 7 compatible runtime and
depends on the following external libraries:

* Apache HttpComponents HttpCore
* Apache Logging Log4j2 API
* Apache Commons Codec

Other dependencies are optional.

(for detailed information on external dependencies please see pom.xml)

Licensing
---------

Apache HttpComponents Client is licensed under the Apache License 2.0.
See the files called LICENSE.txt and NOTICE.txt for more information.

Cryptographic Software Notice
-----------------------------

This distribution may include software that has been designed for use
with cryptographic software. The country in which you currently reside
may have restrictions on the import, possession, use, and/or re-export
to another country, of encryption software. BEFORE using any encryption
software, please check your country's laws, regulations and policies
concerning the import, possession, or use, and re-export of encryption
software, to see if this is permitted. See <http://www.wassenaar.org/>
for more information.

The U.S. Government Department of Commerce, Bureau of Industry and
Security (BIS), has classified this software as Export Commodity
Control Number (ECCN) 5D002.C.1, which includes information security
software using or performing cryptographic functions with asymmetric
algorithms. The form and manner of this Apache Software Foundation
distribution makes it eligible for export under the License Exception
ENC Technology Software Unrestricted (TSU) exception (see the BIS
Export Administration Regulations, Section 740.13) for both object
code and source code.

The following provides more details on the included software that
may be subject to export controls on cryptographic software:

  Apache HttpComponents Client interfaces with the
  Java Secure Socket Extension (JSSE) API to provide

    - HTTPS support

  Apache HttpComponents Client does not include any
  implementation of JSSE.

Contact
-------

  o For general information visit the main project site at
    http://hc.apache.org/

  o For current status information visit the status page at
    http://hc.apache.org/status.html

httpcomponents-client's People

Contributors

andyklimczak avatar catchsudheera avatar daddywri avatar fxbonnet avatar garydgregory avatar hapeka72 avatar jsedding avatar kwrightapache avatar michael-o avatar ok2c avatar pavolloffay avatar rjackson64840 avatar sebbasf avatar sermojohn avatar simonetripodi avatar xiaohu-zhang avatar

Watchers

 avatar

httpcomponents-client's Issues

[DepShield] Usage of com.fasterxml.jackson.core:jackson-databind:2.9.1 results in vulnerability to [CVE-2018-5968] Incomplete Blacklist, Deserialization of Untrusted Data

This is an automated GitHub Issue created by Sonatype DepShield. GitHub Apps, including DepShield, can be managed from the Developer settings of the repository administrators.

This application's usage of com.fasterxml.jackson.core:jackson-databind:2.9.1 causes a vulnerability to [CVE-2018-5968] Incomplete Blacklist, Deserialization of Untrusted Data with a CVSS score of 8.1. Details about the vulnerability are available on the OSS Index page for [CVE-2018-5968] Incomplete Blacklist, Deserialization of Untrusted Data.

[DepShield] Usage of com.fasterxml.jackson.core:jackson-databind:2.9.1 results in vulnerability to [CVE-2017-17485] Improper Control of Generation of Code ("Code Injection")

This is an automated GitHub Issue created by Sonatype DepShield. GitHub Apps, including DepShield, can be managed from the Developer settings of the repository administrators.

This application's usage of com.fasterxml.jackson.core:jackson-databind:2.9.1 causes a vulnerability to [CVE-2017-17485] Improper Control of Generation of Code ("Code Injection") with a CVSS score of 9.8. Details about the vulnerability are available on the OSS Index page for [CVE-2017-17485] Improper Control of Generation of Code ("Code Injection").

[DepShield] Usage of com.fasterxml.jackson.core:jackson-databind:2.9.1 results in vulnerability to [CVE-2018-7489] Incomplete Blacklist, Deserialization of Untrusted Data

This is an automated GitHub Issue created by Sonatype DepShield. GitHub Apps, including DepShield, can be managed from the Developer settings of the repository administrators.

This application's usage of com.fasterxml.jackson.core:jackson-databind:2.9.1 causes a vulnerability to [CVE-2018-7489] Incomplete Blacklist, Deserialization of Untrusted Data with a CVSS score of 9.8. Details about the vulnerability are available on the OSS Index page for [CVE-2018-7489] Incomplete Blacklist, Deserialization of Untrusted Data.

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    ๐Ÿ–– Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. ๐Ÿ“Š๐Ÿ“ˆ๐ŸŽ‰

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google โค๏ธ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.