netty
Security Risk Profile
Security Risk Score
Comprehensive risk assessment based on 185 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from April 30, 2014 to present
Threat Assessment
Severity Distribution
Exploit Likelihood
Age Distribution
Common Weaknesses (CWE)
Most Affected Products
Recent Vulnerabilities
See more →Netty 4.2.11 through 4.2.17 QUIC Hostname Verification Bypass
Io.netty/netty-handler-ssl-ocsp: netty: missing extended key usage (eku) check in ocsp client allows certificate revocation bypass
Io.netty/netty-codec-smtp: netty netty-codec-smtp — smtp command-name field is not crlf-validated (incomplete fix of cve-2025-59419)
Io.netty/netty-codec-mqtt: netty: resource exhaustion in mqttdecoder
Io.netty/netty-codec-http: netty: http request smuggling via post-digit whitespace in chunk-size parsing
Io.netty/netty-codec-http: netty split transfer-encoding fields bypass final-chunked validation and enable request smuggling
Monitor netty in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.