Loading vulnerability details…
CVSS v3.1
N/A
EPSS
74.88%
Published
Oct 7, 2016
Modified
May 6, 2026
Public PoC / Exploit (3)
All weaponized →Links to public security research (Exploit-DB, Nuclei, Trickest, GitHub) for defensive use only.
Description
The exception handling code in Eclipse Jetty before 9.2.9.v20150224 allows remote attackers to obtain sensitive information from process memory via illegal characters in an HTTP header, aka JetLeak.
Weaknesses (CWE)
Affected Products (9)
References (20)