AsyncHttpClient
Security Risk Profile
Security Risk Score
Comprehensive risk assessment based on 11 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from September 1, 2017 to present
Threat Assessment
Severity Distribution
Exploit Likelihood
Age Distribution
Common Weaknesses (CWE)
Most Affected Products
Recent Vulnerabilities
See more →AsyncHttpClient: WebSocket handshake continues after a failed Sec-WebSocket-Accept check
AsyncHttpClient: Replay to a different host sends the original host request and credentials to the new host
AsyncHttpClient: Digest mutual authentication is switched off by a peer offering qop=auth-int
AsyncHttpClient: Origin credentials sent in cleartext to a proxy that rejects the CONNECT
AsyncHttpClient: Pooled connections can still be shared across NTLM, Negotiate and proxy logins
AsyncHttpClient: Incomplete origin checks in the default cookie store allow cookie tossing onto public-suffix and IP-address hosts
AsyncHttpClient: Unbounded WebSocket permessage-deflate decompression enables a decompression-bomb denial of service when compression is enabled
AsyncHttpClient: SOCKS proxy credentials sent to the origin server over plaintext HTTP
AsyncHttpClient: Cookie stored for an unrelated domain (cookie tossing) via ThreadSafeCookieStore
Monitor AsyncHttpClient in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.