issues Search Results · language:Dune language:Python linked:pr language:JavaScript language:Java language:Python
Filter by
5.8M results
Summary
In specific scenarios involving HTTP redirects from a secure to an insecure endpoint, the Reactor Netty HTTP client may
leak credentials. In order for this to happen, the HTTP client must have ...
security
Summary
io.netty : netty-codec-http2 - Denial of Service (DoS)
CVE: CVE-2026-48043 CWE: CWE-400
References
- https://guide.sonatype.com/vulnerability/CVE-2026-48043?component-type=maven
component-name=io.netty%2Fnetty-codec-http2 ...
security
Summary
Netty - HTTP/2 SETTINGS_MAX_HEADER_LIST_SIZE Handling Denial of Service
CVE: CVE-2026-50560 CWE: CWE-770
References
- https://guide.sonatype.com/vulnerability/CVE-2026-50560?component-type=maven ...
security
Summary
Netty: DNS Cache Poisoning due to Predictable PRNG and Default Static Source Port
CVE: CVE-2026-45673 CWE: CWE-330, CWE-340
References
- https://github.com/netty/netty/security/advisories/GHSA-xmv7-r254-6q78 ...
security
Summary
Netty: Unix-socket fd receive leaks descriptors when peer sends two at once
CVE: CVE-2026-45536 CWE: CWE-200, CWE-772
References
- https://github.com/netty/netty/security/advisories/GHSA-w573-9ffj-6ff9 ...
security
Summary
Netty has Insufficient Bailiwick Validation for NS Records
CVE: CVE-2026-47691 CWE: CWE-345
References
- https://github.com/netty/netty/security/advisories/GHSA-5pvg-856g-cp85
- https://github.com/netty/netty ...
security
Summary
Netty Vulnerable to DNS Cache Poisoning via Missing Bailiwick Checks in CNAME Records
CVE: CVE-2026-45674 CWE: CWE-345
References
- https://github.com/netty/netty/security/advisories/GHSA-676x-f7gg-47vc ...
security
Summary
Netty: SNI handler pre-allocates up to 16 MiB from nine attacker bytes
CVE: CVE-2026-45416 CWE: CWE-770
References
- https://github.com/netty/netty/security/advisories/GHSA-x4gw-5cx5-pgmh ...
security
Summary
Netty has an IPv6 Subnet Filter Bypass via Incorrect Comparator Masking
CVE: CVE-2026-44249 CWE: CWE-284, CWE-697
References
- https://github.com/netty/netty/security/advisories/GHSA-3qp7-7mw8-wx86 ...
security
Summary
Netty HTTP/2: Advertised MAX_CONCURRENT_STREAMS are not enforced
CVE: CVE-2026-47244 CWE: CWE-400
References
- https://github.com/netty/netty/security/advisories/GHSA-5x3r-wrvg-rp6q
- https://github.com/netty/netty ...
security

Learn how you can use GitHub Issues to plan and track your work.
Save views for sprints, backlogs, teams, or releases. Rank, sort, and filter issues to suit the occasion. The possibilities are endless.Learn more about GitHub IssuesProTip! Restrict your search to the title by using the in:title qualifier.