{"id":"ECHO-9e12-62af-9330","upstream":["CVE-2021-43797","GHSA-wx5j-54mm-rqqq"],"severity":[],"modified":"2026-09-30T11:25:17.071Z","affected":[{"package":{"ecosystem":"Echo:Maven","name":"netty","purl":"pkg:maven/netty"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"}]}]}],"references":[{"type":"WEB","url":"https://advisory.echohq.com/cve/CVE-2021-43797"},{"type":"WEB","url":"https://github.com/advisories/GHSA-wx5j-54mm-rqqq"}],"withdrawn":"2026-09-30T11:25:17.071Z","summary":"Reopened: bumped to 3.10.6.Final, which is still vulnerable. Bumped version 3.10.6.Final is still in < 4.0.0; upstream fix none"}