<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T07:05:17.033232+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2022-00314</id>
    <title>bdu:2022-00314</title>
    <updated>2026-10-03T07:05:17.083998+00:00</updated>
    <content>bdu:2022-00314</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2022-00314"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2022-avi-113</id>
    <title>certfr-2022-avi-113 — De multiples vulnérabilités ont été découvertes dans les produits
NetApp. Elles permettent à un attaquant de provoquer…</title>
    <updated>2026-10-03T07:05:17.084049+00:00</updated>
    <content>certfr-2022-avi-113</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2022-avi-113"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-59929</id>
    <title>EUVD-2026-59929</title>
    <updated>2026-10-03T07:05:17.084070+00:00</updated>
    <content>EUVD-2026-59929</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-59929"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2019-20445</id>
    <title>fkie_cve-2019-20445</title>
    <updated>2026-10-03T07:05:17.084091+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>HttpObjectDecoder.java in Netty before 4.1.44 allows a Content-Length header to be accompanied by a second Content-Length header, or by a Transfer-Encoding header.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2019-20445"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-p2v9-g2qv-p635</id>
    <title>GHSA-p2v9-g2qv-p635 — HTTP Request Smuggling in Netty</title>
    <updated>2026-10-03T07:05:17.084120+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Maven: io.netty:netty-handler, Maven: org.jboss.netty:netty, Maven: io.netty:netty</p>
<p>HttpObjectDecoder.java in Netty before 4.1.44 allows a Content-Length header to be accompanied by a second Content-Length header, or by a Transfer-Encoding header.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-p2v9-g2qv-p635"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2019-20445</id>
    <title>gsd-2019-20445</title>
    <updated>2026-10-03T07:05:17.084148+00:00</updated>
    <content>gsd-2019-20445</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2019-20445"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/oesa-2024-2066</id>
    <title>OESA-2024-2066 — netty3 security update</title>
    <updated>2026-10-03T07:05:17.084160+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> openEuler:20.03-LTS-SP4: netty3</p>
<p>Netty is a NIO client server framework which enables quick and easy development of network applications such as protocol servers and clients. It greatly simplifies and streamlines network programming such as TCP and UDP socket server.

Security Fix(es):

Netty before 4.1.42.Final mishandles whitespace before the colon in HTTP headers (such as a &amp;quot;Transfer-Encoding : chunked&amp;quot; line), which leads to HTTP request smuggling.(CVE-2019-16869)

HttpObjectDecoder.java in Netty before 4.1.44 allows an HTTP header that lacks a colon, which might be interpreted as a separate header with an incorrect syntax, or might be interpreted as an &amp;quot;invalid fold.&amp;quot;(CVE-2019-20444)

HttpObjectDecoder.java in Netty before 4.1.44 allows a Content-Length header to be accompanied by a second Content-Length header, or by a Transfer-Encoding header.(CVE-2019-20445)</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/oesa-2024-2066"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2020:0497</id>
    <title>RHSA-2020:0497 — Red Hat Security Advisory: AMQ Online security update</title>
    <updated>2026-10-03T07:05:17.084187+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>netty: HTTP request smuggling netty: HttpObjectDecoder.java allows Content-Length header to accompanied by second Content-Length header netty: HTTP Request Smuggling due to Transfer-Encoding whitespace mishandling</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2020:0497"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2019-20445</id>
    <title>UBUNTU-CVE-2019-20445</title>
    <updated>2026-10-03T07:05:17.084207+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:Pro:14.04:LTS: netty, Ubuntu:16.04:LTS: netty-3.9, Ubuntu:Pro:16.04:LTS: netty, Ubuntu:18.04:LTS: netty, Ubuntu:18.04:LTS: netty-3.9</p>
<p>HttpObjectDecoder.java in Netty before 4.1.44 allows a Content-Length header to be accompanied by a second Content-Length header, or by a Transfer-Encoding header.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2019-20445"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2022-2133</id>
    <title>WID-SEC-W-2022-2133 — JFrog Artifactory: Mehrere Schwachstellen in Drittanbieter-Komponenten</title>
    <updated>2026-10-03T07:05:17.084232+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>JFrog Artifactory nutzt verschiedene Komponenten von Drittanbietern. Diese enthalten mehrere Schwachstellen. Neuen Informationen von JFrog zufolge sind diese Schwachstellen jedoch nicht in Produkten von JFrog ausnutzbar.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2022-2133"/>
  </entry>
</feed>
