Skip to content
Noroxi

async-http-client project records

2 published records for vendor async-http-client project.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
100%
Median publish → KEV
No record has entered KEV

Records by year

    Bar: total · dark part: CISA KEV.

    Recurring classes

    The weakness classes this vendor ships most often: where to look.

    CWE

    Attack profile

    All records

    2 records
    • CVE-2013-7397
      17Monitor

      Async Http Client (aka AHC or async-http-client) before 1.9.0 skips X.509 certificate verification unless both a keyStore location and a tru

      MediumCVSS 4.3No exploitEPSS 1%

      redhat · jboss fuseJun 24, 2015

    • CVE-2013-7398
      17Monitor

      main/java/com/ning/http/client/AsyncHttpClientConfig.java in Async Http Client (aka AHC or async-http-client) before 1.9.0 does not require

      MediumCVSS 4.3No exploitEPSS 1%

      async-http-client project · async-http-clientJun 24, 2015