Package impact

java MAVEN / io.netty:netty-codec-http2

0
KEVHas exploit
Reset
CVE Severity CVSS Risk Published Description Impact
CVE-2026-42587 high 7.5 7.5 15d ago Netty: HttpContentDecompressor maxAllocation bypass when Content-Encoding set to br/zstd/snappy leads to decompression bomb DoS susedebianjava