Where
-Infinity
0

Mortbay JettyIn Eclipse Jetty versions 12.0.0 to 12.0.16 included, an HTTP/2 client can specify a very large valu…

Risk 33
Severity
7
First published (updated )

Eclipse JettyEclipse Jetty HTTP clients can increase memory allocation

Risk 46
Severity
7.5
First published (updated )

Mortbay JettyThere exists a security vulnerability in Jetty's DosFilter which can be exploited by unauthorized us…

Risk 19
Severity
4
First published (updated )

Mortbay JettyThere exists a security vulnerability in Jetty's ThreadLimitHandler.getRemote() which can be exploit…

Risk 18
Severity
4
First published (updated )

maven/org.eclipse.jetty:jetty-servletsJetty PushSessionCacheFilter can cause remote DoS attacks

Risk 40
Severity
6.5
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Mortbay JettyJetty is a Java based web server and servlet engine. An HTTP/2 SSL connection that is established an…

Risk 19
Severity
4
First published (updated )

CVE-2023-44487: HTTP/2 Rapid Reset attack against many implementations

First published (updated )

maven/org.eclipse.jetty.http2:http2-serverA flaw was found in the Eclipse Jetty http2-server package. This flaw allows an attacker to cause a …

Risk 45
Severity
7.5
First published (updated )

redhat/jetty-httpInput Validation

Risk 22
Severity
4
First published (updated )

redhat/jetty-serverA flaw was found in the Jetty-server package. This flaw allows an attacker to send invalid requests,…

Risk 45
Severity
7.5
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Red Hat KeycloakA vulnerability was found in keycloak, where on using lower case HTTP headers (via cURL) we can bypa…

Risk 18
Severity
4
First published (updated )

Mortbay JettyXSS

Risk 39
Severity
6.1
First published (updated )

debian/jettyXSS

Risk 38
Severity
6.1
First published (updated )

debian/jettyInfoleak

Risk 43
Severity
7.5
First published (updated )

debian/jettyXSS

Risk 38
Severity
6.1
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

debian/jettyXSS

Risk 38
Severity
6.1
First published (updated )

Oracle Communications Element ManagerInfoleak

Risk 28
Severity
5.3
First published (updated )

Mortbay JettyIn Eclipse Jetty version 9.3.x and 9.4.x, the server is vulnerable to Denial of Service conditions i…

Risk 44
Severity
7.5
First published (updated )

Oracle Retail Xstore Point of ServiceEclipse Jetty could allow a remote attacker to obtain sensitive information. An attacker could send …

Risk 28
Severity
5.3
First published (updated )

Eclipse JettyXSS

Risk 45
Severity
7.5
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

IBM Cognos AnalyticsEclipse Jetty could allow a remote attacker to hijack a user's session, caused by a flaw in the File…

Risk 80
Severity
8.8
First published (updated )

Oracle REST Data ServicesInfoleak

Risk 45
Severity
7.5
First published (updated )

Mortbay JettyThe path normalization mechanism in PathResource class in Eclipse Jetty 9.3.x before 9.3.9 on Window…

Risk 86
Severity
9.8
First published (updated )

Mortbay JettyInfoleak

Risk 43
Severity
7.5
First published (updated )

Eclipse Foundation Jetty 9.3Reached end of life

EOL
Dec 7, 2020
Support Ends
Dec 7, 2020
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Eclipse Foundation Jetty 9.3Reached end of life

EOL
Dec 7, 2020
Support Ends
Dec 7, 2020
First published (updated )

Eclipse Foundation Jetty 9.2Reached end of life

EOL
Mar 8, 2018
Support Ends
Mar 8, 2018
First published (updated )

Eclipse Foundation Jetty 9.2Reached end of life

EOL
Mar 8, 2018
Support Ends
Mar 8, 2018
First published (updated )

Eclipse Foundation Jetty 9.1Reached end of life

EOL
Dec 31, 2014
Support Ends
Dec 31, 2014
First published (updated )

Eclipse Foundation Jetty 9.1Reached end of life

EOL
Dec 31, 2014
Support Ends
Dec 31, 2014
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203