pkg:Debian/undertow
共 57 筆 CVECRITICAL4HIGH34MEDIUM18
✅ 檢查你的版本
所有已知漏洞
- CRITICAL9.8CVE-2022-4492Undertow client not checking server identity presented by server certificate in https connectionsfrom 0, < 2.3.8-2
- CRITICAL9.8CVE-2019-10212Potential to access user credentials from the log files when debug logging enabledfrom 0, < 2.0.27-1
- from 0, < 2.0.23-1
- CRITICAL9.6CVE-2025-12543Undertow HTTP server core doesn't properly validate the Host header in incoming HTTP requestsfrom 0
- from 0
- from 0
- from 0
- from 0, < 2.0.30-1
- from 0, < 2.1.0-1
- HIGH7.5CVE-2024-4027Undertow Servlets Vulnerable to Remote DoS via OutOfMemoryError when Passed Large Parameter Namesfrom 0
- HIGH7.5CVE-2024-3884Undertow OutOfMemory when parsing form data encoding with application/x-www-form-urlencodedfrom 0
- from 0, < 2.3.20-1
- from 0, < 2.3.18-1
- from 0, < 2.3.18-1
- from 0, < 2.3.18-1
- from 0, < 2.3.18-1
- from 0, < 2.3.18-1
- from 0
- from 0, < 2.3.18-1
- from 0, < 2.3.18-1
- from 0, < 2.3.18-1
- from 0, < 2.3.18-1
- from 0, < 2.3.8-2
- from 0, < 2.2.17-1
- from 0, < 2.2.18-1
- from 0, < 2.2.16-1
- from 0, < 2.2.10-1
- from 0, < 2.2.12-1
- from 0, < 2.0.30-1
- from 0, < 2.0.23-1
- HIGH7.5CVE-2018-1048Improper Limitation of a Pathname to a Restricted Directory in Jboss EAP Undertowfrom 0, < 1.4.22-1
- from 0, < 2.2.4-1
- from 0, < 2.1.1-1
- HIGH7.5CVE-2019-19343A flaw was found in Undertow when using Remoting as shipped in Red Hat Jboss EAP before version 7.2.4.from 0, < 2.0.25-1
- HIGH7.5CVE-2019-10184Undertow Missing Authorization when requesting a protected directory without trailing slashfrom 0, < 2.0.23-1
- from 0, < 1.4.18-1
- from 0, < 2.3.18-1
- from 0, < 2.3.18-1
- from 0, < 1.4.25-1
- from 0, < 2.1.1-1
- from 0, < 1.4.8-1+deb9u1
- from 0, < 1.4.18-1
- from 0, < 1.4.3-1
- from 0, < 1.4.23-1
- from 0, < 1.4.25-1
- MEDIUM5.9CVE-2026-3260Undertow: Denial of Service via Multipart/Form-Data Parsing on HTTP GET Requestsfrom 0
- from 0, < 2.2.10-1
- from 0, < 1.4.3-1
- from 0, < 1.4.25-1
- from 0, < 2.3.18-1
- from 0, < 2.3.18-1
- from 0, < 2.3.18-1
- from 0, < 2.0.23-1
- from 0, < 2.2.21-1
- from 0, < 2.2.0-1
- from 0, < 2.2.0-1
- —CVE-2024-4109Rejected reason: Red Hat Product Security has determined that this CVE is not a security vulnerability.from 0