Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 71

Количество 71

altlinux логотип

ALT-PU-2022-7664

около 4 лет назад

ALT-PU-2022-7664: package `java-11-openjdk` update to version 11.0.16.0.8-alt1_1jpp11

CVSS3: 7.5
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:3092-1

около 4 лет назад

Security update for java-1_8_0-openj9

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:4166-1

почти 4 года назад

Security update for java-1_8_0-ibm

EPSS: Низкий
altlinux логотип

ALT-PU-2022-7663

около 4 лет назад

ALT-PU-2022-7663: package `java-11-openjdk` update to version 11.0.15.0.10-alt1_1jpp11

CVSS3: 7.5
EPSS: Низкий
altlinux логотип

ALT-PU-2022-7661

около 4 лет назад

ALT-PU-2022-7661: package `java-11-openjdk` update to version 11.0.15.0.10-alt1_1jpp11

CVSS3: 7.5
EPSS: Низкий
redos логотип

ROS-20240521-05

больше 2 лет назад

Множественные уязвимости java-1.8.0-openjdk

CVSS3: 9.1
EPSS: Низкий
ubuntu логотип

CVE-2022-34169

около 4 лет назад

The Apache Xalan Java XSLT library is vulnerable to an integer truncation issue when processing malicious XSLT stylesheets. This can be used to corrupt Java class files generated by the internal XSLTC compiler and execute arbitrary Java bytecode. Users are recommended to update to version 2.7.3 or later. Note: Java runtimes (such as OpenJDK) include repackaged copies of Xalan.

CVSS3: 7.5
EPSS: Высокий
redhat логотип

CVE-2022-34169

около 4 лет назад

The Apache Xalan Java XSLT library is vulnerable to an integer truncation issue when processing malicious XSLT stylesheets. This can be used to corrupt Java class files generated by the internal XSLTC compiler and execute arbitrary Java bytecode. Users are recommended to update to version 2.7.3 or later. Note: Java runtimes (such as OpenJDK) include repackaged copies of Xalan.

CVSS3: 7.5
EPSS: Высокий
nvd логотип

CVE-2022-34169

около 4 лет назад

The Apache Xalan Java XSLT library is vulnerable to an integer truncation issue when processing malicious XSLT stylesheets. This can be used to corrupt Java class files generated by the internal XSLTC compiler and execute arbitrary Java bytecode. Users are recommended to update to version 2.7.3 or later. Note: Java runtimes (such as OpenJDK) include repackaged copies of Xalan.

CVSS3: 7.5
EPSS: Высокий
msrc логотип

CVE-2022-34169

около 1 года назад

Apache Xalan Java XSLT library is vulnerable to an integer truncation issue when processing malicious XSLT stylesheets

CVSS3: 7.5
EPSS: Высокий
debian логотип

CVE-2022-34169

около 4 лет назад

The Apache Xalan Java XSLT library is vulnerable to an integer truncat ...

CVSS3: 7.5
EPSS: Высокий
suse-cvrf логотип

openSUSE-SU-2025:0066-1

больше 1 года назад

Security update for java-11-openj9

EPSS: Низкий
suse-cvrf логотип

SUSE-RU-2024:3971-1

почти 2 года назад

Recommended update for mojo-parent

EPSS: Высокий
github логотип

GHSA-9339-86wc-4qgf

около 4 лет назад

Apache Xalan Java XSLT library integer truncation issue when processing malicious XSLT stylesheets

CVSS3: 7.5
EPSS: Высокий
fstec логотип

BDU:2022-04788

около 4 лет назад

Уязвимость библиотеки Apache Xalan Java XSLT, связанная с ошибкой приведения целочисленного значения, позволяющая нарушителю выполнить произвольный код

CVSS3: 7.5
EPSS: Высокий
altlinux логотип

ALT-PU-2024-17652

почти 2 года назад

ALT-PU-2024-17652: package `xalan-j2` update to version 2.7.3-alt1

CVSS3: 7.5
EPSS: Высокий
altlinux логотип

ALT-PU-2024-16795

почти 2 года назад

ALT-PU-2024-16795: package `xalan-j2` update to version 2.7.3-alt1

CVSS3: 7.5
EPSS: Высокий
ubuntu логотип

CVE-2022-21541

около 4 лет назад

Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot). Supported versions that are affected are Oracle Java SE: 7u343, 8u333, 11.0.15.1, 17.0.3.1, 18.0.1.1; Oracle GraalVM Enterprise Edition: 20.3.6, 21.3.2 and 22.1.0. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Oracle Java SE, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability can also be exploited by using APIs in the specified ...

CVSS3: 5.9
EPSS: Низкий
redhat логотип

CVE-2022-21541

около 4 лет назад

Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot). Supported versions that are affected are Oracle Java SE: 7u343, 8u333, 11.0.15.1, 17.0.3.1, 18.0.1.1; Oracle GraalVM Enterprise Edition: 20.3.6, 21.3.2 and 22.1.0. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Oracle Java SE, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability can also be exploited by using APIs in the specified ...

CVSS3: 5.9
EPSS: Низкий
nvd логотип

CVE-2022-21541

около 4 лет назад

Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot). Supported versions that are affected are Oracle Java SE: 7u343, 8u333, 11.0.15.1, 17.0.3.1, 18.0.1.1; Oracle GraalVM Enterprise Edition: 20.3.6, 21.3.2 and 22.1.0. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Oracle Java SE, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability can also be exploited by using APIs in the specified Com

CVSS3: 5.9
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
altlinux логотип
ALT-PU-2022-7664

ALT-PU-2022-7664: package `java-11-openjdk` update to version 11.0.16.0.8-alt1_1jpp11

CVSS3: 7.5
около 4 лет назад
suse-cvrf логотип
SUSE-SU-2022:3092-1

Security update for java-1_8_0-openj9

около 4 лет назад
suse-cvrf логотип
SUSE-SU-2022:4166-1

Security update for java-1_8_0-ibm

почти 4 года назад
altlinux логотип
ALT-PU-2022-7663

ALT-PU-2022-7663: package `java-11-openjdk` update to version 11.0.15.0.10-alt1_1jpp11

CVSS3: 7.5
около 4 лет назад
altlinux логотип
ALT-PU-2022-7661

ALT-PU-2022-7661: package `java-11-openjdk` update to version 11.0.15.0.10-alt1_1jpp11

CVSS3: 7.5
около 4 лет назад
redos логотип
ROS-20240521-05

Множественные уязвимости java-1.8.0-openjdk

CVSS3: 9.1
больше 2 лет назад
ubuntu логотип
CVE-2022-34169

The Apache Xalan Java XSLT library is vulnerable to an integer truncation issue when processing malicious XSLT stylesheets. This can be used to corrupt Java class files generated by the internal XSLTC compiler and execute arbitrary Java bytecode. Users are recommended to update to version 2.7.3 or later. Note: Java runtimes (such as OpenJDK) include repackaged copies of Xalan.

CVSS3: 7.5
81%
Высокий
около 4 лет назад
redhat логотип
CVE-2022-34169

The Apache Xalan Java XSLT library is vulnerable to an integer truncation issue when processing malicious XSLT stylesheets. This can be used to corrupt Java class files generated by the internal XSLTC compiler and execute arbitrary Java bytecode. Users are recommended to update to version 2.7.3 or later. Note: Java runtimes (such as OpenJDK) include repackaged copies of Xalan.

CVSS3: 7.5
81%
Высокий
около 4 лет назад
nvd логотип
CVE-2022-34169

The Apache Xalan Java XSLT library is vulnerable to an integer truncation issue when processing malicious XSLT stylesheets. This can be used to corrupt Java class files generated by the internal XSLTC compiler and execute arbitrary Java bytecode. Users are recommended to update to version 2.7.3 or later. Note: Java runtimes (such as OpenJDK) include repackaged copies of Xalan.

CVSS3: 7.5
81%
Высокий
около 4 лет назад
msrc логотип
CVE-2022-34169

Apache Xalan Java XSLT library is vulnerable to an integer truncation issue when processing malicious XSLT stylesheets

CVSS3: 7.5
81%
Высокий
около 1 года назад
debian логотип
CVE-2022-34169

The Apache Xalan Java XSLT library is vulnerable to an integer truncat ...

CVSS3: 7.5
81%
Высокий
около 4 лет назад
suse-cvrf логотип
openSUSE-SU-2025:0066-1

Security update for java-11-openj9

больше 1 года назад
suse-cvrf логотип
SUSE-RU-2024:3971-1

Recommended update for mojo-parent

81%
Высокий
почти 2 года назад
github логотип
GHSA-9339-86wc-4qgf

Apache Xalan Java XSLT library integer truncation issue when processing malicious XSLT stylesheets

CVSS3: 7.5
81%
Высокий
около 4 лет назад
fstec логотип
BDU:2022-04788

Уязвимость библиотеки Apache Xalan Java XSLT, связанная с ошибкой приведения целочисленного значения, позволяющая нарушителю выполнить произвольный код

CVSS3: 7.5
81%
Высокий
около 4 лет назад
altlinux логотип
ALT-PU-2024-17652

ALT-PU-2024-17652: package `xalan-j2` update to version 2.7.3-alt1

CVSS3: 7.5
81%
Высокий
почти 2 года назад
altlinux логотип
ALT-PU-2024-16795

ALT-PU-2024-16795: package `xalan-j2` update to version 2.7.3-alt1

CVSS3: 7.5
81%
Высокий
почти 2 года назад
ubuntu логотип
CVE-2022-21541

Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot). Supported versions that are affected are Oracle Java SE: 7u343, 8u333, 11.0.15.1, 17.0.3.1, 18.0.1.1; Oracle GraalVM Enterprise Edition: 20.3.6, 21.3.2 and 22.1.0. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Oracle Java SE, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability can also be exploited by using APIs in the specified ...

CVSS3: 5.9
3%
Низкий
около 4 лет назад
redhat логотип
CVE-2022-21541

Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot). Supported versions that are affected are Oracle Java SE: 7u343, 8u333, 11.0.15.1, 17.0.3.1, 18.0.1.1; Oracle GraalVM Enterprise Edition: 20.3.6, 21.3.2 and 22.1.0. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Oracle Java SE, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability can also be exploited by using APIs in the specified ...

CVSS3: 5.9
3%
Низкий
около 4 лет назад
nvd логотип
CVE-2022-21541

Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot). Supported versions that are affected are Oracle Java SE: 7u343, 8u333, 11.0.15.1, 17.0.3.1, 18.0.1.1; Oracle GraalVM Enterprise Edition: 20.3.6, 21.3.2 and 22.1.0. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Oracle Java SE, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability can also be exploited by using APIs in the specified Com

CVSS3: 5.9
3%
Низкий
около 4 лет назад

Уязвимостей на страницу