Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Eclipse Jetty — Vulnerabilities & Security Advisories 28

All 28 CVE vulnerabilities found in Eclipse Jetty, with AI-generated Chinese analysis, references, and POCs.

This page aggregates known security weaknesses for Eclipse Jetty under the Common Weakness Enumeration classification system. It serves as a centralized resource for tracking vulnerabilities associated with this specific open-source web server and servlet container. The collection focuses on identifying security flaws that impact the integrity, availability, and confidentiality of applications relying on Jetty. The vulnerability database includes entries spanning from the early development stages of the project to the present day, ensuring historical coverage of security incidents. By capturing data across multiple years, the page reflects the evolving threat landscape and the continuous efforts to harden the software. This long-term perspective allows researchers and developers to observe trends in vulnerability discovery and remediation over time. Users can discover how to track a vendor's advisories to stay informed about critical updates and patch availability. The resource also enables deeper exploration of a specific weakness class, providing context on how different flaw types manifest within Jetty’s architecture. Additionally, stakeholders can look up a product's vulnerability history to assess risk exposure and prioritize security audits. This holistic view supports informed decision-making for system administrators and security professionals who need to maintain robust defense postures against known exploitation vectors.

Vendor: The Eclipse Foundation

CVE IDTitleCVSSSeverityPublished
CVE-2026-2332 HTTP Request Smuggling via Chunked Extension Quoted-String Parsing CWE-444 7.4 High2026-04-14
CVE-2026-5795 Eclipse Jetty 授权问题漏洞 CWE-226 7.4 High2026-04-08
CVE-2026-1605 Eclipse Jetty 安全漏洞 CWE-400 7.5 High2026-03-05
CVE-2025-11143 Eclipse Jetty 输入验证错误漏洞 CWE-20 3.7 Low2026-03-05
CVE-2025-5115 MadeYouReset HTTP/2 vulnerability CWE-400 7.5AIHighAI2025-08-20
CVE-2022-2191 Eclipse Jetty 安全漏洞 CWE-404 7.5 High2022-07-07
CVE-2022-2047 Eclipse Jetty 输入验证错误漏洞 CWE-20 2.7 Low2022-07-07
CVE-2022-2048 Eclipse Jetty 安全漏洞 CWE-410 7.5 High2022-07-07
CVE-2021-34429 Eclipse Jetty 安全漏洞 CWE-200 5.3 Medium2021-07-15
CVE-2021-34428 Eclipse Jetty 代码问题漏洞 CWE-613 2.9 Low2021-06-22
CVE-2021-28169 Eclipse Jetty 安全漏洞 CWE-200 5.3 Medium2021-06-09
CVE-2021-28165 Eclipse Jetty 资源管理错误漏洞 CWE-400 7.5 High2021-04-01
CVE-2021-28164 Eclipse Jetty 安全漏洞 CWE-200 5.3 Medium2021-04-01
CVE-2021-28163 Eclipse Jetty 后置链接漏洞 CWE-200 2.7 Low2021-04-01
CVE-2020-27223 Eclipse Jetty 资源管理错误漏洞 CWE-407 5.2 Medium2021-02-26
CVE-2020-27218 Eclipse Jetty 安全漏洞 CWE-226 4.8 -2020-11-28
CVE-2020-27216 Eclipse Jetty 安全漏洞 CWE-378 5.8 -2020-10-23
CVE-2019-17638 Eclipse Jetty 安全漏洞 CWE-672 9.4 -2020-07-09
CVE-2019-17632 Eclipse Jetty 跨站脚本漏洞 CWE-79 5.8 -2019-11-25
CVE-2019-10247 Eclipse Jetty 信息泄露漏洞 CWE-213 5.3 -2019-04-22
CVE-2019-10246 Eclipse Jetty 信息泄露漏洞 CWE-213 5.3 -2019-04-22
CVE-2019-10241 Eclipse Jetty 跨站脚本漏洞 CWE-79 6.1 -2019-04-22
CVE-2018-12545 Eclipse Jetty 输入验证错误漏洞 CWE-400 7.5 -2019-03-27
CVE-2018-12536 Eclipse Jetty Server 信息泄露漏洞 CWE-209 5.3 -2018-06-27
CVE-2017-7658 Eclipse Jetty Server 环境问题漏洞 CWE-444 9.8 -2018-06-26
CVE-2017-7657 Eclipse Jetty 环境问题漏洞 CWE-444 9.8 -2018-06-26
CVE-2017-7656 Eclipse Jetty 安全漏洞 CWE-444 6.5 -2018-06-26
CVE-2018-12538 Eclipse Jetty 授权问题漏洞 CWE-6 8.3 -2018-06-22

All 28 known CVE vulnerabilities affecting Eclipse Jetty with full Chinese analysis, references, and POCs where available.