Netty-incubator-codec-ohttp
This hub aggregates every CVE we track for Netty-incubator-codec-ohttp, a product in the oss libraries space. Use it to gauge the current risk picture and drill into individual advisories.
6
CVEs tracked
1
Critical
1
High
0
In CISA KEV
Severity distribution
MEDIUM2HIGH1CRITICAL1
Monthly trend
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
3
0
0
1
2024-102026-09
Latest CVEs
The 6 most recently published vulnerabilities affecting Netty-incubator-codec-ohttp.
- CVE-2026-54251netty-incubator-codec-ohttp: [OHttpServerCodec] Native Direct-Memory Leak on AEAD Decryption Failure Leads to Gateway Denial of Service
- CVE-2026-48480netty-incubator-codec-ohttp OHttpVersionChunkDraft's Missing Final-Chunk Enforcement Leads to Undetected Stream Truncation
- CVE-2026-48040netty-incubator-codec-ohttp's Incorrect Native Pointer Derivation in Pooled Direct ByteBuf Fallback Leads to Out-of-Bounds Native Memory Access9.1
- CVE-2026-41207netty-incubator-codec-ohttp's HPKEContext operations may produce empty byte[] on failures5.3
- CVE-2024-40642Absent Input Validation in BinaryHttpParser in the netty incubator codec.bhttp 8.1
- CVE-2024-36121 netty-incubator-codec-ohttp's BoringSSLAEADContext Repeats Nonces5.9
Product normalization is registry-driven with AI assist and human review. How it works