CVE-2026-47874 | CVSS: 5.3 | 严重级别: MEDIUM
The vulnerability occurs when a client sends HTTP/1.1 pipelined requests over a single connection, causing the Reactor Netty HTTP server to consume an excessive amount of memory.
Reactor Netty 1.3.0 – 1.3.6
Reactor Netty 1.1.0 – 1.2.18
Reactor Netty 1.0.52 and earlier
参考链接:
• https://spring.io/security/cve-2026-47874
📌 数据来源: NVD 官方
⚠️ 合规声明: 本文内容仅用于网络安全合规学习、科研与授权测试用途。严禁用于任何未授权行为,违者自行承担全部法律责任。