netty
Security Risk Profile
Security Risk Score
Comprehensive risk assessment based on 83 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from April 30, 2014 to present
Threat Assessment
Severity Distribution
Exploit Likelihood
Age Distribution
Common Weaknesses (CWE)
Most Affected Products
Recent Vulnerabilities
See more →Netty susceptible to HTTP/2 Reset Attack with different on-the-wire signature
Netty's HttpObjectDecoder skips arbitrary initial control characters when only initial CRLF characters are permitted
Netty has unbounded pre-allocation in RedisArrayAggregator from RESP array length
Netty's wrapping plain trust manager silently disables hostname verification
Netty QUIC stateless reset token material exposed through header-visible connection IDs
Netty HTTP/3 QPACK Blocked Streams Memory Exhaustion
Netty HAProxy: Unbalanced Reference Count in Nested PP2_TYPE_SSL TLV Parsing Leads to Memory Exhaustion
netty-codec-http2: ByteBuf Reference-Count Leak in DelegatingDecompressorFrameListener Leads to Memory Exhaustion
Netty's Lack of Lifecycle Cleanup Leads to Pooled ByteBuf Leak in RedisArrayAggregator
Netty has Insufficient Bailiwick Validation for NS Records
Monitor netty in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.