java-spring
Warn
Audited by Socket on Sep 11, 2026
1 alert found:
AnomalyAnomalyevals/files/application.yml
LOWAnomalyLOW
evals/files/application.yml
No evidence of malware or intentional malicious behavior is present. The main security concerns are hardcoded database credentials, automatic Hibernate schema updates, and unrestricted wildcard exposure of management endpoints. Risk depends on deployment and actuator authentication controls; this configuration should be reviewed before production use.
Confidence: 99%Severity: 68%
Audit Metadata