Root has patched CVE-2025-22227 in the io.root.io.projectreactor.netty:reactor-netty-http package for Root:Maven. Multiple fixed versions available.
{ "source": "Root", "severity": "MEDIUM", "distro": "maven", "distro_version": "" }
true
"https://api.root.io/external/osv/ROOT-APP-MAVEN-CVE-2025-22227.json"
"root.io.1"
4.0
"1.1.13"
[ "1.0.45-root.io.1", "1.0.45-root.io.2", "1.0.45-root.io.3", "1.1.13-root.io.1" ]
""
1.0
"1.0.45-aikido.3"
[ "1.0.45-aikido.3" ]