📦 Netty

by Netty

🔍 What is Netty?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-58057

HIGH CVSS 7.5 Sep 4, 2025

A denial-of-service vulnerability in Netty's BrotliDecoder and other decompression decoders allows attackers to cause out-of-memory conditions by sending specially crafted input. This affects applicat...

CVE-2023-44487

HIGH CVSS 7.5 Oct 10, 2023

CVE-2023-44487 is an HTTP/2 protocol vulnerability that allows attackers to cause denial of service by rapidly resetting streams, consuming server resources. This affects any system using HTTP/2, incl...

CVE-2021-37136

HIGH CVSS 7.5 Oct 19, 2021

CVE-2021-37136 is a denial-of-service vulnerability in Netty's Bzip2Decoder that allows attackers to trigger out-of-memory errors by sending specially crafted Bzip2 compressed data. The vulnerability ...

CVE-2025-67735

MEDIUM CVSS 6.5 Dec 16, 2025

This CVE describes a CRLF injection vulnerability in Netty's HttpRequestEncoder that allows request smuggling. Attackers can inject malicious content into HTTP requests to bypass security controls or ...

CVE-2024-47535

MEDIUM CVSS 5.5 Nov 12, 2024

This vulnerability in Netty allows attackers to cause denial of service by creating a large file that Netty attempts to load on Windows systems. When Netty tries to read this non-existent file that an...