VYPR

apk package

chainguard/logstash-input-http

pkg:apk/chainguard/logstash-input-http

Vulnerabilities (2)

  • CVE-2025-67735Dec 16, 2025
    affected < 3.10.4-r0fixed 3.10.4-r0

    Netty is an asynchronous, event-driven network application framework. In versions prior to 4.1.129.Final and 4.2.8.Final, the `io.netty.handler.codec.http.HttpRequestEncoder` has a CRLF injection with the request URI when constructing a request. This leads to request smuggling wh

  • CVE-2025-58057Sep 3, 2025
    affected < 3.10.3-r0fixed 3.10.3-r0

    Netty is an asynchronous event-driven network application framework for rapid development of maintainable high performance protocol servers & clients. In netty-codec-compression versions 4.1.124.Final and below, and netty-codec versions 4.2.4.Final and below, when supplied with s