CVE-2021-21295MEDIUMCVSS 5.9fixed in 1.16.02021-03-09
CVE-2021-21295 [MEDIUM] CWE-444 CVE-2021-21295: Netty is an open-source, asynchronous event-driven network application framework for rapid developme
Netty is an open-source, asynchronous event-driven network application framework for rapid development of maintainable high performance protocol servers & clients. In Netty (io.netty:netty-codec-http2) before version 4.1.60.Final there is a vulnerability that enables request smuggling. If a Content-Length header is present in the original HTTP/2 req
nvd