Skip to content

[GHSA-qh8g-58pp-2wxh] Eclipse Jetty URI parsing of invalid authority#7128

Closed
jkuhel wants to merge 1 commit intojkuhel/advisory-improvement-7128from
jkuhel-GHSA-qh8g-58pp-2wxh
Closed

[GHSA-qh8g-58pp-2wxh] Eclipse Jetty URI parsing of invalid authority#7128
jkuhel wants to merge 1 commit intojkuhel/advisory-improvement-7128from
jkuhel-GHSA-qh8g-58pp-2wxh

Conversation

@jkuhel
Copy link

@jkuhel jkuhel commented Mar 6, 2026

Updates

  • Affected products
  • CVSS v3

Comments
Updated the affected and patched versions to include the fixes from this commit
jetty/jetty.project@db8bb7a

@github
Copy link
Collaborator

github commented Mar 6, 2026

Hi there @joakime! A community member has suggested an improvement to your security advisory. If approved, this change will affect the global advisory listed at github.com/advisories. It will not affect the version listed in your project repository.

This change will be reviewed by our Security Curation Team. If you have thoughts or feedback, please share them in a comment here! If this PR has already been closed, you can start a new community contribution for this advisory

@github-actions github-actions bot changed the base branch from main to jkuhel/advisory-improvement-7128 March 6, 2026 20:05
@joakime
Copy link

joakime commented Mar 6, 2026

Reject, for the same reasons as past attempts to "fix" this Advisory.

See last discussion...

@yhidad31
Copy link

yhidad31 commented Mar 6, 2026

👋 Hello @jkuhel and @joakime, based on the history of requests for this change, we'll be keeping the advisory in its current state and will not be accepting the proposed updates at this time. If The Eclipse Foundation provides any additional information in the record for https://www.cve.org/CVERecord?id=CVE-2024-6763 and/or GHSA-qh8g-58pp-2wxh, feel free to submit another PR.

@yhidad31 yhidad31 closed this Mar 6, 2026
@github-actions github-actions bot deleted the jkuhel-GHSA-qh8g-58pp-2wxh branch March 6, 2026 22:04
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants