Package
flyway
Component
netty-codec-http
Latest update
Fixed version
12.9.0-r0
6.5
CVSS V3
Build, ship, and run secure software with minimal, hardened container images — rebuilt from source daily and guarded under our industry-leading remediation SLA.
Start for freeStatus
Fixed version
12.9.0-r0Status
Impact
This instance of the vulnerable artifact is in the vendored couchbase/core-io-3.11.2.jar. Couchbase upstream have moved to a fixed version in https://github.com/couchbase/couchbase-jvm-clients/commit/26764ad6 but have not yet cut a release containing that change, so remediation is not yet possible.
Status