In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsUpgrade io.netty.incubator:netty-incubator-codec-ohttp to version 0.0.23.Final or higher.
Affected versions of this package are vulnerable to Improper Control of a Resource Through its Lifetime in the OHttpServerCodec process. An attacker can cause a native direct memory leak by sending encrypted client requests with invalid AEAD tags, leading to resource exhaustion and potential denial of service.