Airlift's vulnerability footprint centers on its AirCompressor product, a modestly represented component with a niche deployment scope. The observed weakness classes—insertion of sensitive information into sent data and out-of-bounds reads—reflect input-handling and data-exposure risks in compression and data-transmission logic; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Airlift over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2025-67721HIGH Aircompressor is a library with ports of the Snappy, LZO, LZ4, and Zstandard compression algorithms to Java. In versions 3.3 and below, incorrect handling of malformed data in Java | Dec 12, 2025 | 7.5 | 27 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Airlift.
Media articles that mention a CVE ID that affects a product developed by Airlift — matched by CVE ID, not by vendor name.