Eclipse Jetty is an open source, Java-based web server and Java servlet container from the Eclipse Foundation. Eclipse Jetty 9.4.37.v20210219 to 9.4.38.v20210224 has an information disclosure vulnerability that allows request uris containing \%2e or \%2e\%2e to access protected resources in the WEB-INF directory. This rule supports to defend the A6: Vulnerable and Outdated Components of OWASP Top 10 - 2021. Other reference:None