Vulnerabilities (CVE)

Filtered by vendor Netty Subscribe
Filtered by product Netty
Total 21 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2019-20445 6 Apache, Canonical, Debian and 3 more 8 Spark, Ubuntu Linux, Debian Linux and 5 more 2024-11-21 6.4 MEDIUM 9.1 CRITICAL
HttpObjectDecoder.java in Netty before 4.1.44 allows a Content-Length header to be accompanied by a second Content-Length header, or by a Transfer-Encoding header.