Eclipse Jetty before 9.2.9.v20150224 allows remote attackers to obtain sensitive information from process memory via illegal characters in an HTTP header.
id: CVE-2015-2080
info:
name: Eclipse Jetty <9.2.9.v20150224 - Sensitive Information Leakage
au
...