Security Advisories for org.eclipse.jetty:jetty-xml in maven
Potential
High
12 months ago
Eclipse Jetty affected by MadeYouReset HTTP/2 vulnerability
maven
org.eclipse.jetty.http2:jetty-http2-common, org.eclipse.jetty.http2:http2-common
Potential
High
over 1 year ago
Eclipse Jetty HTTP/2 client can force the server to allocate a humongous byte buffer that may lead to OoM and subsequently the JVM to exit
maven
org.eclipse.jetty.http2:jetty-http2-common
Potential
High
over 1 year ago
**UNSUPPORTED WHEN ASSIGNED** GzipHandler causes part of request body to be seen as request body of a separate request
maven
org.eclipse.jetty:jetty-server
Potential
Moderate
almost 2 years ago
Eclipse Jetty URI parsing of invalid authority
maven
org.eclipse.jetty:jetty-http
Potential
Moderate
almost 2 years ago
Eclipse Jetty's ThreadLimitHandler.getRemote() vulnerable to remote DoS attacks
maven
org.eclipse.jetty:jetty-server
Potential
Low
almost 2 years ago
Eclipse Jetty's PushSessionCacheFilter can cause remote DoS attacks
maven
org.eclipse.jetty:jetty-servlets
Potential
High
over 2 years ago
Connection leaking on idle timeout when TCP congested
maven
org.eclipse.jetty.http3:jetty-http3-common, org.eclipse.jetty.http2:jetty-http2-common, org.eclipse.jetty.http3:http3-common, org.eclipse.jetty.http2:http2-common
Low
about 3 years ago
Eclipse Jetty XmlParser allows arbitrary DOCTYPE declarations
maven
org.eclipse.jetty:jetty-xml