Vulnerability index

Browse CVEs

68 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Netty MEDIUM 5.5
CVE-2025-25193

Netty, an asynchronous, event-driven network application framework, has a vulnerability in versions up to and including 4.1.118.Final. An unsafe read…

Fix: 4.1.118+
Fix from $1,600 2025-02-10
Netty MEDIUM 5.5
CVE-2024-47535

Netty is an asynchronous event-driven network application framework for rapid development of maintainable high performance protocol servers & clients…

Fix: 4.1.115+
Fix from $1,600 2024-11-12
Netty Incubator Codec Ohttp HIGH 8.1
CVE-2024-40642

The netty incubator codec.bhttp is a java language binary http parser. In affected versions the `BinaryHttpParser` class does not properly validate i…

Fix: 0.0.13+
Fix from $1,950 2024-07-18
Netty Incubator Codec Ohttp CRITICAL 9.1
CVE-2024-36121

netty-incubator-codec-ohttp is the OHTTP implementation for netty. BoringSSLAEADContext keeps track of how many OHTTP responses have been sent and us…

Fix: 0.0.11+
Fix from $2,300 2024-06-04
Netty MEDIUM 6.5
CVE-2023-34462

Netty is an asynchronous event-driven network application framework for rapid development of maintainable high performance protocol servers & clients…

Fix: 4.1.94+
Fix from $1,600 2023-06-22
Netty HIGH 7.5
CVE-2015-2156EPSS 5%

Netty before 3.9.8.Final, 3.10.x before 3.10.3.Final, 4.0.x before 4.0.28.Final, and 4.1.x before 4.1.0.Beta5 and Play Framework 2.x before 2.3.9 mig…

Fix: after 3.9.7
Fix from $1,950 2017-10-18
Netty MEDIUM 5.0
CVE-2014-3488

The SslHandler in Netty before 3.9.2 allows remote attackers to cause a denial of service (infinite loop and CPU consumption) via a crafted SSLv2Hell…

Fix: after 3.9.1.1
Fix from $1,600 2014-07-31
Netty MEDIUM 5.0
CVE-2014-0193

WebSocket08FrameDecoder in Netty 3.6.x before 3.6.9, 3.7.x before 3.7.1, 3.8.x before 3.8.2, 3.9.x before 3.9.1, and 4.0.x before 4.0.19 allows remot…

Patch available
Fix from $1,600 2014-05-06