Undertow
Undertow is a flexible performant web server written in java providing both blocking and non-blocking APIs based on NIO.rnrnUndertow has a composition based architecture that allows you to build a web server by combining small single purpose handlers. The gives you the flexibility to choose between a full Java EE servlet 4.0 container or a low level non-blocking handler to anything in between.
Official Site:
http://undertow.io/Severity Summary:
Reference
Title
Severity
Undertow Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability
Undertow Inconsistent Interpretation of HTTP Requests (HTTP Request Smuggling) Vulnerability
Undertow Inconsistent Interpretation of HTTP Requests (HTTP Request Smuggling) Vulnerability
Undertow Concurrent Execution using Shared Resource with Improper Synchronization (Race Condition) Vulnerability
Undertow Improper Limitation of a Pathname to a Restricted Directory (Path Traversal) Vulnerability
Undertow Inconsistent Interpretation of HTTP Requests (HTTP Request Smuggling) Vulnerability
Undertow Inconsistent Interpretation of HTTP Requests (HTTP Request Smuggling) Vulnerability
Undertow Improper Neutralization of CRLF Sequences in HTTP Headers (HTTP Response Splitting) Vulnerability
Undertow Inconsistent Interpretation of HTTP Requests (HTTP Request Smuggling) Vulnerability