Monitor vulnerabilities like this one.
Sign up free to get alerted when software you use is affected.
9.8
Apache Zookeeper using Netty may allow data leaks
published today
Summary
The Apache Zookeeper software includes a component called Netty that has several security weaknesses. These could let attackers view or manipulate data passing through Zookeeper. Update Zookeeper to the latest version or apply the vendor's patches to protect your system.
What to do
- Update apache-zookeeper to version 3.8.6-r6.
Affected software
| Ecosystem | Vendor | Product | Affected versions |
|---|---|---|---|
| CleanStart | – | apache-zookeeper |
< 3.8.6-r6 Fix: upgrade to 3.8.6-r6
|
Original advisory text
Netty (io
Multiple security vulnerabilities affect the apache-zookeeper package. Netty (io. See references for individual vulnerability details.
References
- https://github.com/cleanstart-dev/cleanstart-security-advisories/tree/main/advis... Vendor Advisory
- https://osv.dev/vulnerability/CVE-2026-62243 URL
- https://osv.dev/vulnerability/CVE-2026-75595 URL
- https://nvd.nist.gov/vuln/detail/CVE-2026-62243 URL
- https://nvd.nist.gov/vuln/detail/CVE-2026-75595 URL
Severity
9.8
Critical
CVSS 3.1: 9.8 (OSV)
Timeline
Published3 Sep 2026
Updated3 Sep 2026
First seen3 Sep 2026
Sources
CLEANSTART-2026-LB53225 · OSV
Monitor software like this
Free during beta