RHSA-2026:20568HighCVSS 7.5

Red Hat Security Advisory: jmc security update

Published
May 26, 2026
Last Modified
June 2, 2026

🔗 CVE IDs covered (2)

📋 Description

CVE-2025-66566 — lz4-java: lz4-java: Information Disclosure via Insufficient Output Buffer Clearing CVE-2026-2332 — org.eclipse.jetty/jetty-http: HTTP request smuggling via chunked extension quoted-string parsing

🔗 References (5)