Skip to content

GitHub Advisory Database

Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.

3 advisories

Loading
The Eclipse Jetty Server Artifact has a Gzip request memory leak High
CVE-2026-1605 was published for org.eclipse.jetty:jetty-server (Maven) Mar 5, 2026
glebashnik Credited to glebashnik and bjorncs bjorncs bjorncs
Eclipse Jetty HTTP/2 client can force the server to allocate a humongous byte buffer that may lead to OoM and subsequently the JVM to exit High
CVE-2025-1948 was published for org.eclipse.jetty.http2:jetty-http2-common (Maven) May 8, 2025
bjorncs Credited to bjorncs
Jetty vulnerable to Invalid HTTP/2 requests that can lead to denial of service High
CVE-2022-2048 was published for org.eclipse.jetty.http2:http2-server (Maven) Jul 7, 2022
bjorncs Credited to bjorncs and hakonhall hakonhall hakonhall
ProTip! Advisories are also available from the GraphQL API