Red Hat released JBoss Enterprise Application Platform 8.1.7 with an Important security update to remediate five vulnerabilities in bundled Netty components affecting JBoss EAP 8.1 deployments. The flaws can enable denial of service, information disclosure and data manipulation, hostname verification bypass, insufficient bailiwick validation for NS records, and an IPv6 subnet rule bypass, impacting JBoss EAP 8.1 on RHEL 8, RHEL 9, and RHEL 10 for x86_64 systems.
The fixes were published in Red Hat advisories RHSA-2026:49700 and RHSA-2026:49701, which update Netty in the JBoss EAP 8.1.z stream from 4.1.133.Final-redhat-00001 to 4.1.135.Final-redhat-00001. Red Hat’s product documentation and release materials for JBoss EAP 8.1 accompany the release, while the advisories direct customers to ensure prerequisite errata are applied, back up existing installations, and deploy the updated packages.

See real exploitation activity before you spend the cycle.
3 events from the most recent confirmed update back to the earliest known activity.
As part of the 2026-08-03 security update, Red Hat upgraded Netty in JBoss EAP 8.1.z from 4.1.133.Final-redhat-00001 to 4.1.135.Final-redhat-00001. The advisories list updated Netty and WildFly packages for the affected JBoss EAP 8.1.7 builds.
The 2026-08-03 advisories state that Red Hat fixed five Netty vulnerabilities in JBoss EAP 8.1.7: CVE-2026-45416, CVE-2026-45674, CVE-2026-50010, CVE-2026-47691, and CVE-2026-44249. The issues covered denial of service, information disclosure and data manipulation, hostname verification bypass, insufficient bailiwick validation, and an IPv6 subnet rule bypass.
On 2026-08-03, Red Hat issued Important security advisories RHSA-2026:49700 and RHSA-2026:49701 for Red Hat JBoss Enterprise Application Platform 8.1.7. The advisories announced security updates for JBoss EAP 8.1 affecting supported x86_64 builds, including RHEL 8, RHEL 9, and RHEL 10 variants.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
See real exploitation activity behind this advisory so you can triage it against everything else in the queue.
4 references tracked. Mallory keeps watching after this page renders.
access.redhat.com
Open sourceaccess.redhat.com
Open sourcedocs.redhat.com
Open sourcedocs.redhat.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.