11.0.26
10 years ago
1 months ago
Known vulnerabilities in the org.eclipse.jetty.http2:http2-server package. This does not include vulnerabilities belonging to this package’s dependencies.
Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.
Fix for freeVulnerability | Vulnerable Version |
---|---|
Affected versions of this package are vulnerable to Allocation of Resources Without Limits or Throttling via malformed HTTP/2 control frames that manipulate the How to fix Allocation of Resources Without Limits or Throttling? Upgrade | [,9.4.58.v20250814)[10.0.0-alpha0,10.0.26)[11.0.0-alpha0,11.0.26) |
Affected versions of this package are vulnerable to Insufficient Resource Pool due to improper handling of an invalid HTTP/2 request processing, when the How to fix Insufficient Resource Pool? Upgrade | [,9.4.47)[10.0.0-alpha0,10.0.10)[11.0.0-alpha0,11.0.10) |