Description

The Jetty URI parser has some key differences to other common parsers when evaluating invalid or unusual URIs. Differential parsing of URIs in systems using multiple components may result in security by-pass. For example a component that enforces a black list may interpret the URIs differently from one that generates a response. At the very least, differential parsing may divulge implementation details.

INFO

Published Date :

2026-03-05T09:26:59.830Z

Last Modified :

2026-03-05T14:48:41.622Z

Source :

eclipse
AFFECTED PRODUCTS

The following products are affected by CVE-2025-11143 vulnerability.

Vendors Products
Eclipse
  • Jetty
REFERENCES

Here, you will find a curated list of external links that provide in-depth information to CVE-2025-11143.

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact