CVE-2026-89044 | Netty up to 4.1.137.Final/4.2.17.Final Transfer-Encoding request smuggling

SecurityVulns

A vulnerability described as problematic has been identified in Netty up to 4.1.137.Final/4.2.17.Final. Impacted is an unknown function of the component Transfer-Encoding. Such manipulation leads to http request smuggling.

This vulnerability is documented as CVE-2026-89044. The attack can be executed remotely. There is not any exploit available.

Upgrading the affected component is recommended.VulDB Recent EntriesRead More