Skip to content

GitHub Advisory Database

Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.

2 advisories

Loading
HTTP/2 HPACK integer overflow and buffer allocation High
CVE-2023-36478 was published for org.eclipse.jetty.http2:http2-hpack (Maven) Oct 10, 2023
bismuthsalamander samalws-tob
kaoudis smichaels-tob joakime
Credited to bismuthsalamander, samalws-tob, kaoudis, smichaels-tob, and joakime
Jetty vulnerable to errant command quoting in CGI Servlet Low
CVE-2023-36479 was published for org.eclipse.jetty.ee10:jetty-ee10-servlets (Maven) Sep 14, 2023
bismuthsalamander kaoudis
joakime
Credited to bismuthsalamander, kaoudis, and joakime
ProTip! Advisories are also available from the GraphQL API