VendorsLinecorparmeriaall versions
Vulnerabilities

Linecorp LINE Corporation Armeria

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

5CVEs
CVE-2024-1735
A vulnerability has been identified in armeria-saml versions less than 1.27.2, allowing the use of malicious SAML messages to bypass authentication. All users who rely on armeria-saml older than version 1.27.2 must upgrade to 1.27.2 or later.
Published 2024-02-26 · Analyzed
9.1EPSS 0.008
CVE-2023-44487
The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many streams quickly, as exploited in the wild in August through October 2023.
Published 2023-10-10 · Analyzed
7.5KEV1 PoCEPSS 1.000
CVE-2021-43795
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') in com.linecorp.armeria:armeria
Published 2021-12-02 · Modified
7.5EPSS 0.016
CVE-2023-38493
Paths contain matrix variables bypass decorators
Published 2023-07-25 · Modified
7.5EPSS 0.007
CVE-2019-16771
Improper Neutralization of CRLF Sequences in HTTP Headers ('HTTP Response Splitting') in Armeria
Published 2019-12-06 · Modified
6.5EPSS 0.010