HIGHMaven

Eclipse Jetty affected by MadeYouReset HTTP/2 vulnerability

Eclipse Jetty affected by MadeYouReset HTTP/2 vulnerability

CVE-2025-5115Published 1 year agoUpdated 5 days agoSource: OSV

Affected packages

  • org.eclipse.jetty.http2:http2-common9.3.0 → 9.4.58
  • org.eclipse.jetty.http2:jetty-http2-common12.0.0 → 12.0.25

Exploit signal

Known exploited (CISA KEV)
No
EPSS score
EPSS percentile

EPSS is the probability a CVE is exploited in the wild; percentile is its rank among all CVEs.

Eclipse Jetty affected by MadeYouReset HTTP/2 vulnerability | HackTribune