sdk vulnerable to netty CVEs
Opened this issue · 0 comments
matt-j-martin-oracle-com commented
Please update the netty dependencies to 4.1.127 or greater to address the following CVEs
CVE-2025-55163 GHSA-prj3-ccx8-p6x4 is on package netty-codec-http
CVE-2025-58057 GHSA-3p8m-j85q-pgmj is on packages netty-codec and netty-codec-compression