changed affected versions for CVE-2020-27216, CVE-2020-27218, CVE-2020-27223

Hello. Thanks for your work!

I've found that jetty packages have more affected versions than NVD advisories contain.

Is it possible to update GitLab Advisory? thanks a lot!

affected packages:

  • CVE-2020-27216:
    • jetty-client
    • jetty-webapp
    • jetty-server
    • jetty-util
    • jetty-http
  • CVE-2020-27218:
    • jetty-server
    • jetty-webapp
  • CVE-2020-27223:
    • jetty-server
    • jetty-http

links:

  • https://nvd.nist.gov/vuln/detail/CVE-2020-27216
  • https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-27216
  • https://nvd.nist.gov/vuln/detail/CVE-2020-27218
  • https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-27218
  • https://nvd.nist.gov/vuln/detail/CVE-2020-27223
  • https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-27223
Assignee Loading
Time tracking Loading