netty
Security Risk Profile
Security Risk Score
Comprehensive risk assessment based on 113 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from April 30, 2014 to present
Threat Assessment
Severity Distribution
Exploit Likelihood
Age Distribution
Common Weaknesses (CWE)
Most Affected Products
Recent Vulnerabilities
See more →Netty: Missing CertificateID Validation in OCSP Response Allows Replay Attacks
Netty: HTTP/2 decompression leaks ByteBuf reference count when the decompressor channel is already closed (Direct memory leak / OOM DoS)
Netty: XML External Entity (XXE) injection via unconfigured XML factory when DTD and entity processing are enabled
Netty: Memory Exhaustion via HTTP/3 Reserved Frame Types
Netty has a Security Control Bypass via CORS Short-Circuit Failure
Netty SpdyHttpDecoder: ByteBuf Reference Leak on RST_STREAM Leads to Native Memory Exhaustion
Netty codec-haproxy: Signed-Byte Sentinel Collision in HAProxyMessageDecoder Leads to Unbounded Memory Exhaustion
Netty SPDY zlib header block continues decoded expansion after maxHeaderSize truncation
Netty SPDY SETTINGS frame count materializes unbounded settings map
Netty: Denial of Service via Unbounded Headers in StompSubframeDecoder
Monitor netty in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.