minor

Update GWT to version 2.12

critical

XSS vulnerability in /jsp/openapi/server/displayAPISpec.jsp

major

Security issues in the UMLJS project
StackOverflowError when rolling back in the transaction monitor

minor

Modelleditor swallows classification with a less-than sign in the name
Update minimatch and serialize-javascript to fix CVE-2026-27903, CVE-2026-27904, and GHSA-5c6j-r48x-rmvq
Eclipse error after dependency update: maven-jar-plugin 3.5.0 causes "outside of a scoping block" error in m2e