Eclipse Foundation Eclipse Jetty

3 known vulnerabilities in Eclipse Foundation Eclipse Jetty, with patch priority, exploit likelihood and the news covering them.

Latest vulnerabilities

  • CVE-2026-19203 CVSS 8.3 high A client may issue specially crafted HTTP/1.1 chunked requests to a Jetty server that cause Jetty and an intermediary proxy to interpret…
  • CVE-2026-12611 CVSS 8.7 high A client may issue HTTP/2 requests to a Jetty server that result in blocking writes that are never unblocked, eventually causing all…
  • CVE-2026-19204 CVSS 8.7 high A client may send a WebSocket frame with an unknown opcode and a very large declared payload length, causing Jetty to attempt a large…