/
DirectorySecurity AdvisoriesPricing
Sign In
Security Advisories

CVE-2023-34062

Published

Last updated

NVD

https://nvd.nist.gov/vuln/detail/CVE-2023-34062

Severity

Unknown

Description

In Reactor Netty HTTP Server, versions 1.1.x prior to 1.1.13 and versions 1.0.x prior to 1.0.39, a malicious user can send a request using a specially crafted URL that can lead to a directory traversal attack.

Specifically, an application is vulnerable if Reactor Netty HTTP Server is configured to serve static resources.

References

  • https://images.chainguard.dev/security/CGA-w9fh-6r6w-f7rr

Affected packages


Safe Source for Open Sourceâ„¢
Media KitContact Us
© 2025 Chainguard. All Rights Reserved.
Private PolicyTerms of Use

Products

Chainguard ContainersChainguard LibrariesChainguard VMs