HIGHMaven

Netty affected by MadeYouReset HTTP/2 DDoS vulnerability

Netty affected by MadeYouReset HTTP/2 DDoS vulnerability

CVE-2025-55163Published 1 year agoUpdated 5 days agoSource: OSV

Affected packages

  • io.grpc:grpc-netty-shadedbefore 1.75.0
  • io.netty:netty-codec-http24.2.0.Alpha1 → 4.2.4.Final

Exploit signal

Known exploited (CISA KEV)
No
EPSS score
EPSS percentile

EPSS is the probability a CVE is exploited in the wild; percentile is its rank among all CVEs.

Netty affected by MadeYouReset HTTP/2 DDoS vulnerability | HackTribune