Quarkus
Read post

Quarkus 3.33.3 released - LTS maintenance release

Quarkus 3.33.3 has been released as a maintenance update for the 3.33 LTS stream. The release focuses heavily on security, patching 19 CVEs across Quarkus direct dependencies and Netty (upgraded to 4.1.136.Final). Notable fixes include Eclipse Vert.x cross-origin header propagation and cross-domain cookie injection, pgjdbc channel binding downgrade, Jackson-databind @JsonIgnore and @JsonView bypasses, a Jansi heap buffer overflow, a LangChain4j SQL injection, and numerous Netty vulnerabilities covering zip bombs, CR/LF injection, memory exhaustion, and improper access control. Upgrading via the Quarkus CLI with the 3.33 stream flag is recommended.

    #security#java#quarkus
Jul 29•2m read time•From quarkus.io
Post cover image
2.8K Impressions
Quarkus's image
Quarkus

Quarkus' platform is a modern Java framework optimized for Kubernetes and cloud-native environments,...

175 Followers

•

633 Upvotes

Would you recommend this post?

Copy link
WhatsApp
Facebook
X
New Squad
  • © 2026 Daily Dev Ltd.
  • Guidelines
  • Explore
  • Tags
  • Sources
  • Squads
  • Leaderboard