客户端可能向 Jetty 服务器发送经过特殊构造的 HTTP/1.1 块状编码(chunked)请求,导致 Jetty 与中间代理服务器对请求边界的解释产生差异,从而可能引发 HTTP 请求走私(HTTP Request Smuggling)。 该问题源于 Jetty 在解析块状请求的某些部分时,将单个 LF 字符(\n)视为终止符。根据 Jetty 的版本及配置的 HTTP 合规模式,这种情况可能出现在块扩展字段、块数据终止或尾部(trailer)终止环节。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Eclipse Foundation | Eclipse Jetty | 12.1.0≤ 12.1.11 |
affected |
12.0.0≤ 12.0.37 |
affected | ||
11.0.0≤ 11.0.31 |
affected | ||
10.0.0≤ 10.0.31 |
affected | ||
9.4.0≤ 9.4.63 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Eclipse Foundation | Eclipse Jetty | 12.1.0 ~ 12.1.11 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-86464 | 9.9 CRITICAL | CVE-2026-86464 |
| CVE-2026-84197 | 9.2 CRITICAL | Ditto Node.js客户端 1.0.0-3.9.0 WebSocket TLS验证缺失 |
| CVE-2026-12611 | 8.7 HIGH | Jetty HTTP/2竞态条件导致服务器无响应 |
| CVE-2026-86590 | 6.3 MEDIUM | Eclipse Che 7.79.0-7.121.0 服务端请求伪造(SSRF) |
No comments yet