An open API service providing security vulnerability metadata for many open source software ecosystems.

maven

org.eclipse.jetty:jetty-http

maven

Jetty HTTP Artifact

View on github.com · View on repo1.maven.org

Security Advisories for org.eclipse.jetty:jetty-http in maven

Potential
High
about 1 year ago

Eclipse Jetty affected by MadeYouReset HTTP/2 vulnerability GSA_kwCzR0hTQS1tbXhtLTh3MzMtd2M0aM4ABLSz

maven org.eclipse.jetty.http2:jetty-http2-common, org.eclipse.jetty.http2:http2-common
Moderate
almost 2 years ago

Eclipse Jetty URI parsing of invalid authority GSA_kwCzR0hTQS1xaDhnLTU4cHAtMnd4aM4ABAQY

maven org.eclipse.jetty:jetty-http
Potential
Moderate
almost 2 years ago

Eclipse Jetty has a denial of service vulnerability on DosFilter GSA_kwCzR0hTQS1qMjZ3LWY5cnEtbXIycc4ABAPv

maven org.eclipse.jetty:jetty-servlets, org.eclipse.jetty.ee9:jetty-ee9-servlets, org.eclipse.jetty.ee8:jetty-ee8-servlets, org.eclipse.jetty.ee10:jetty-ee10-servlets
Potential
High
over 2 years ago

Connection leaking on idle timeout when TCP congested GSA_kwCzR0hTQS1yZ2d2LWN2N3ItbXc5OM4AA5gs

maven org.eclipse.jetty.http3:jetty-http3-common, org.eclipse.jetty.http2:jetty-http2-common, org.eclipse.jetty.http3:http3-common, org.eclipse.jetty.http2:http2-common
Moderate
almost 3 years ago

Jetty accepts "+" prefixed value in Content-Length GSA_kwCzR0hTQS1obXI3LW00OGctNDhmNs4AA13o

maven org.eclipse.jetty:jetty-http