org.eclipse.jetty:jetty-servlets
Utility Servlets from Jetty
Security Advisories for org.eclipse.jetty:jetty-servlets in maven
Potential
High
12 months ago
Eclipse Jetty affected by MadeYouReset HTTP/2 vulnerability
maven
org.eclipse.jetty.http2:jetty-http2-common, org.eclipse.jetty.http2:http2-common
Potential
High
over 1 year ago
Eclipse Jetty HTTP/2 client can force the server to allocate a humongous byte buffer that may lead to OoM and subsequently the JVM to exit
maven
org.eclipse.jetty.http2:jetty-http2-common
Potential
High
over 1 year ago
**UNSUPPORTED WHEN ASSIGNED** GzipHandler causes part of request body to be seen as request body of a separate request
maven
org.eclipse.jetty:jetty-server
Potential
Moderate
almost 2 years ago
Eclipse Jetty URI parsing of invalid authority
maven
org.eclipse.jetty:jetty-http
Potential
Moderate
almost 2 years ago
Eclipse Jetty's ThreadLimitHandler.getRemote() vulnerable to remote DoS attacks
maven
org.eclipse.jetty:jetty-server
Low
almost 2 years ago
Eclipse Jetty's PushSessionCacheFilter can cause remote DoS attacks
maven
org.eclipse.jetty:jetty-servlets
Moderate
almost 2 years ago
Eclipse Jetty has a denial of service vulnerability on DosFilter
maven
org.eclipse.jetty:jetty-servlets, org.eclipse.jetty.ee9:jetty-ee9-servlets, org.eclipse.jetty.ee8:jetty-ee8-servlets, org.eclipse.jetty.ee10:jetty-ee10-servlets
Potential
High
over 2 years ago
Connection leaking on idle timeout when TCP congested
maven
org.eclipse.jetty.http3:jetty-http3-common, org.eclipse.jetty.http2:jetty-http2-common, org.eclipse.jetty.http3:http3-common, org.eclipse.jetty.http2:http2-common
Low
almost 3 years ago
Jetty vulnerable to errant command quoting in CGI Servlet
maven
org.eclipse.jetty.ee8:jetty-ee8-servlets, org.eclipse.jetty.ee9:jetty-ee9-servlets, org.eclipse.jetty.ee10:jetty-ee10-servlets, org.eclipse.jetty:jetty-servlets
Moderate
about 5 years ago
Jetty Utility Servlets ConcatServlet Double Decoding Information Disclosure Vulnerability
maven
org.eclipse.jetty:jetty-servlets