CVE-2026-107285 | AsyncHttpClient async-http-client prior 2.16.1/3.0.12 WebSocket Upgrade NettyRequestFactory.newNettyRequest information disclosure
A vulnerability has been found in AsyncHttpClient async-http-client and classified as problematic. This vulnerability affects the function NettyRequestFactory.newNettyRequest of the component WebSocket Upgrade. The manipulation leads to information disclosure.
This vulnerability is uniquely identified as CVE-2026-107285. The attack is possible to be carried out remotely. No exploit exists.
The affected component should be upgraded.VulDB Recent EntriesRead More