Explore

Rule Explorer

Search the public rule index by CVE, GHSA, CWE, language, framework, author, or rule slug. Filter by language, framework, severity, confidence, license, and validation status.

Public rules
2917
Downloads
3.3M
Verified
2917
Authors
2
Search the rule indexUse CVE, GHSA, CWE, language, framework, package, or rule slug.
1 rules matched. Showing 1 loaded rules.
Publish rule
CVE-2026-44248: Netty Replaying Decoder Readablebytes Doscve-2026-44248-netty-replaying-decoder-readablebytes-dos

A ReplayingDecoder checks the currently available `readableBytes()` against a maximum limit inside a `Signal` catch block, rather than the message's declared size. An attacker can send an oversized message in small chunks, bypassing early rejection. The decoder will repeatedly re-parse the growing buffer, causing severe CPU and memory exhaustion. Compare aga

by Provallyupdated 2026-06-23Apache-2.0
7420 direct742 via packs
downloads
65quality
All matching rules loaded.