jetty
Security Risk Profile
44
/100
mediumSecurity Risk Score
Comprehensive risk assessment based on 9 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from October 11, 2002 to present
9
Total CVEs
1
Critical+High
0
Exploited
1
Unpatched
Threat Assessment
Avg CVSS
5.7
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
1
Critical/High
Risk Level
44/100
medium
Severity Distribution
Critical
0High
1Medium
6Low
0Exploit Likelihood
>50% chance
020-50%
05-20%
0<5%
0Age Distribution
Common Weaknesses (CWE)
1
Path Traversal
1
2
XSS
1
Most Affected Products
1. Jetty Jetty HTTP server99
2. Jetty jetty5
3. maven/org.eclipse.jetty:jetty-server4
4. maven/org.mortbay.jetty:jetty3
5. IBM Trading Partner Interchange2
Recent Vulnerabilities
See more →https://seclists.org/oss-sec/2025/q3/131
unknown
HTTP/2 implementations avulnerable to "MadeYouset" DoS attack through HTTP/2 control frames
8/20/2025🔧 No Patch
https://seclists.org/oss-sec/2023/q4/75
unknown
CVE-2023-44487: HTTP/2 Rapid Reset attack against many implementations
10/10/2023🔧 No Patch
CVE-2006-6969
CVSS 6.8medium
2/7/2007
CVE-2006-2758
CVSS 5.0medium
6/2/2006🔧 No Patch
CVE-2006-2759
CVSS 5.0medium
6/2/2006🔧 No Patch
CVE-2004-2381
CVSS 5.0medium
12/31/2004
CVE-2004-2478
CVSS 7.5high
12/31/2004🔧 No Patch
CVE-2002-1533
CVSS 5.8medium
3/18/2003
CVE-2002-1178
CVSS 5.0medium
10/11/2002
Monitor jetty in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.