io.ktor:ktor
Maven2 known CVEs affecting this package
Aggregated from OSV, GitHub Security Advisories, NVD, and vendor advisories. Each CVE links to its full detail page with vendor advisories, patches, fixed versions, and remediation guidance.
CVEs affecting io.ktor:ktorpage 1 of 1
- CVE-2022-38179MEDIUMCVSS 4.7EG 4.7✓ Fixed in 2.1.02022-08-12
vulnerable: 1.0.0 ... 2.0.3 (48 versions)
JetBrains Ktor before 2.1.0 was vulnerable to the Reflect File Download attack
- CVE-2022-38180MEDIUMCVSS 5.3EG 5.3✓ Fixed in 2.1.02022-08-12
vulnerable: 1.0.0 ... 2.0.3 (48 versions)
In JetBrains Ktor before 2.1.0 the wrong authentication provider could be selected in some cases
Check whether io.ktor:ktor is used in your infrastructure
EchelonGraph scans your cloud and SBOMs to map every package to your actual deployments. See blast radius for io.ktor:ktor CVEs against the assets you own.
Start Free Scan →