CVE Tools

Reactor Netty

13 CVEs tracked. None of them is in CISA KEV.

This hub aggregates every CVE we track for Reactor Netty, a product in the cloud saas space. Use it to gauge the current risk picture and drill into individual advisories.

Reactor Netty CVEs per month

Oct 2024 to Sep 2026. Point at a month, or focus the strip and use the arrow keys.
Reactor Netty CVEs per month
MonthCVEs
2024-100
2024-110
2024-120
2025-010
2025-020
2025-030
2025-040
2025-050
2025-060
2025-071
2025-080
2025-090
2025-100
2025-110
2025-120
2026-010
2026-020
2026-030
2026-040
2026-050
2026-061
2026-070
2026-085
2026-090

Severity

How the 13 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.

  • High323%
  • Medium969%
  • Low18%

Latest CVEs

The 13 most recently published vulnerabilities affecting Reactor Netty.

  1. CVE-2026-47874Reactor Netty HTTP Server Denial of Service With Pipelined Requests5.3
  2. CVE-2026-47845Reactor Netty HTTP Server may incorrectly evaluate proxy addresses5.3
  3. CVE-2026-47848Reactor Netty WebSocket Client Leaks Credentials On Redirect6.1
  4. CVE-2026-47844Reactor Netty HTTP Server Leaks Exception Details5.3
  5. CVE-2026-47843Reactor Netty may incorrectly route traffic due to DNS resolver reuse3.7
  6. CVE-2026-41715Reactor Netty HTTP Client Leaks Credentials On Protocol Downgrade Redirect6.1
  7. CVE-2025-22227CVE-2025-22227: Authentication Leak On Redirect With Reactor Netty HTTP Client6.1
  8. CVE-2023-34054Reactor Netty HTTP Server Metrics DoS Vulnerability5.3
  9. CVE-2023-34062In Reactor Netty HTTP Server, versions 1.1.x prior to 1.1.13 and versions 1.0.x prior to 1.0.39, a malicious user can send a request using a specially crafted URL that can lead to a directory trave...7.5
  10. CVE-2022-31684Reactor Netty HTTP Server, in versions 1.0.11 - 1.0.23, may log request headers in some cases of invalid HTTP requests. The logged headers may reveal valid access tokens to those with access to ser...4.3
  11. CVE-2020-5403DoS Via Malformed URL with Reactor Netty HTTP Server7.5
  12. CVE-2020-5404Authentication Leak On Redirect With Reactor Netty HttpClient5.9
  13. CVE-2019-11284Reactor Netty authentication leak in redirects8.6

Product grouping is registry-driven, with AI assist and human review. How it works

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store