All 4 CVE vulnerabilities found in Red Hat JBoss Enterprise Application Platform 8.1.7.GA, with AI-generated Chinese analysis, references, and POCs.
Vendor: Red Hat
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2025-12799 | Jastow: jastow cross-site scripting attack due to unsanitized uri CWE-79 | 6.5 | Medium | 2026-07-07 |
| CVE-2026-28369 | Undertow: undertow: request smuggling via malformed http request headers CWE-444 | 8.7 | High | 2026-03-27 |
| CVE-2026-28367 | Undertow: undertow: request smuggling via `\r\r\r` as a header block terminator CWE-444 | 8.7 | High | 2026-03-27 |
| CVE-2026-28368 | Undertow: undertow: request smuggling via inconsistent header parsing CWE-444 | 8.7 | High | 2026-03-27 |
All 4 known CVE vulnerabilities affecting Red Hat JBoss Enterprise Application Platform 8.1.7.GA with full Chinese analysis, references, and POCs where available.