A vulnerability marked as critical has been reported in netty netty-codec-http up to 4.1.133.Final/4.2.13.Final. Affected is an unknown function. This manipulation causes http request smuggling.

This vulnerability appears as CVE-2026-42585. The attack may be initiated remotely. There is no available exploit.

It is suggested to upgrade the affected component.