Package impact
Maven / org.jboss.netty:netty
| CVE | Severity | CVSS | Risk | Flags | OS | Vendor | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2021-37137 | high | — | 8.0 | 5y ago | SnappyFrameDecoder doesn't restrict chunk length any may buffer skippable chunks in an unnecessary way | |||
| CVE-2021-37136 | high | — | 8.0 | 5y ago | Bzip2Decoder doesn't allow setting size restrictions for decompressed data | |||
| CVE-2015-2156 | high | 7.5 | 7.5 | 9y ago | Information Exposure in Netty | |||
| CVE-2021-43797 | medium | — | 5.5 | 5y ago | HTTP request smuggling in netty | |||
| CVE-2021-21409 | medium | — | 5.5 | 5y ago | Possible request smuggling in HTTP/2 due missing validation of content-length | |||
| CVE-2021-21295 | medium | — | 5.5 | 5y ago | Possible request smuggling in HTTP/2 due missing validation | |||
| CVE-2021-21290 | medium | — | 5.5 | 5y ago | Local Information Disclosure Vulnerability in Netty on Unix-Like systems |