CVE-2025-29904: JetBrains Ktor

Medium severity, CVSS 5.3. EPSS: 0.3% chance of exploitation in the next 30 days.

In JetBrains Ktor before 3.1.1 an HTTP Request Smuggling was possible

Affected products

  • JetBrains Ktor: before 3.1.1 (fixed in 3.1.1)

Published 2025-03-12. Last modified 2026-06-17.