Bug Report
Transitive netty dependencies bring 3 High and 3 Medium vulnerabilities.
io.netty:netty-handler 4.1.112.Final
CVE-2025-24970
io.netty:netty-codec-http 4.1.112.Final
CVE-2025-58056
CVE-2025-58057
CVE-2025-67735
io.netty:netty-common 4.1.112.Final
CVE-2024-47535
CVE-2025-25193
Versions
Current Behavior
Multiple vulnerabilities detected
Expected behavior/code
No vulnerabilities detected
Possible Solution
Update netty stack to the latest version.
As a workaround, override "io.projectreactor.netty" % "reactor-netty-core" dependency version to a newer one.
Bug Report
Transitive netty dependencies bring 3 High and 3 Medium vulnerabilities.
io.netty:netty-handler 4.1.112.FinalCVE-2025-24970
io.netty:netty-codec-http 4.1.112.FinalCVE-2025-58056
CVE-2025-58057
CVE-2025-67735
io.netty:netty-common 4.1.112.FinalCVE-2024-47535
CVE-2025-25193
Versions
Current Behavior
Multiple vulnerabilities detected
Expected behavior/code
No vulnerabilities detected
Possible Solution
Update netty stack to the latest version.
As a workaround, override "io.projectreactor.netty" % "reactor-netty-core" dependency version to a newer one.