Skip to content

sdk vulnerable to netty CVEs #173

@matt-j-martin-oracle-com

Description

Please update the netty dependencies to 4.1.127 or greater to address the following CVEs

CVE-2025-55163 GHSA-prj3-ccx8-p6x4 is on package netty-codec-http
CVE-2025-58057 GHSA-3p8m-j85q-pgmj is on packages netty-codec and netty-codec-compression

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions