Логотип exploitDog
bind:"GHSA-9v5j-pxpg-qprp" OR bind:"CVE-2025-53066"
Консоль
Логотип exploitDog

exploitDog

bind:"GHSA-9v5j-pxpg-qprp" OR bind:"CVE-2025-53066"

Количество 28

Количество 28

github логотип

GHSA-9v5j-pxpg-qprp

5 месяцев назад

Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JAXP). Supported versions that are affected are Oracle Java SE: 8u461, 8u461-perf, 11.0.28, 17.0.16, 21.0.8, 25; Oracle GraalVM for JDK: 17.0.16 and 21.0.8; Oracle GraalVM Enterprise Edition: 21.3.15. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability can be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. This vulnerability also applies to Java deployments, typically in clients running sandboxed Java Web Start a...

CVSS3: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2025-53066

5 месяцев назад

Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JAXP). Supported versions that are affected are Oracle Java SE: 8u461, 8u461-perf, 11.0.28, 17.0.16, 21.0.8, 25; Oracle GraalVM for JDK: 17.0.16 and 21.0.8; Oracle GraalVM Enterprise Edition: 21.3.15. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability can be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. This vulnerability also applies to Java deployments, typically in clients running sandboxed Java Web Start ap...

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2025-53066

5 месяцев назад

Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JAXP). Supported versions that are affected are Oracle Java SE: 8u461, 8u461-perf, 11.0.28, 17.0.16, 21.0.8, 25; Oracle GraalVM for JDK: 17.0.16 and 21.0.8; Oracle GraalVM Enterprise Edition: 21.3.15. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability can be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. This vulnerability also applies to Java deployments, typically in clients running sandboxed Java Web Start a...

CVSS3: 4.8
EPSS: Низкий
nvd логотип

CVE-2025-53066

5 месяцев назад

Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JAXP). Supported versions that are affected are Oracle Java SE: 8u461, 8u461-perf, 11.0.28, 17.0.16, 21.0.8, 25; Oracle GraalVM for JDK: 17.0.16 and 21.0.8; Oracle GraalVM Enterprise Edition: 21.3.15. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability can be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. This vulnerability also applies to Java deployments, typically in clients running sandboxed Java Web Start appl

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2025-53066

5 месяцев назад

Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle Gr ...

CVSS3: 7.5
EPSS: Низкий
fstec логотип

BDU:2025-13795

6 месяцев назад

Уязвимость компонента JAXP программных платформ Java SE, GraalVM for JDK, GraalVM Enterprise Edition, позволяющая нарушителю получить несанкционированный доступ к данным платформы

CVSS3: 7.5
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2025:20125-1

4 месяца назад

Security update for java-17-openjdk

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:4039-1

5 месяцев назад

Security update for java-1_8_0-openjdk

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:4038-1

5 месяцев назад

Security update for java-1_8_0-openjdk

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:4005-1

5 месяцев назад

Security update for java-1_8_0-openj9

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:3997-1

5 месяцев назад

Security update for java-17-openjdk

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:3996-1

5 месяцев назад

Security update for java-11-openjdk

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:3835-1

5 месяцев назад

Security update for java-11-openjdk

EPSS: Низкий
oracle-oval логотип

ELSA-2025-18821

5 месяцев назад

ELSA-2025-18821: java-17-openjdk security update (MODERATE)

EPSS: Низкий
oracle-oval логотип

ELSA-2025-18815

5 месяцев назад

ELSA-2025-18815: java-1.8.0-openjdk security update (MODERATE)

EPSS: Низкий
oracle-oval логотип

ELSA-2025-18814

5 месяцев назад

ELSA-2025-18814: java-1.8.0-openjdk security update (MODERATE)

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2025:20123-1

4 месяца назад

Security update for java-21-openjdk

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:4287-1

4 месяца назад

Security update for java-25-openjdk

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:3965-1

5 месяцев назад

Security update for java-1_8_0-ibm

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:3964-1

5 месяцев назад

Security update for java-1_8_0-ibm

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-9v5j-pxpg-qprp

Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JAXP). Supported versions that are affected are Oracle Java SE: 8u461, 8u461-perf, 11.0.28, 17.0.16, 21.0.8, 25; Oracle GraalVM for JDK: 17.0.16 and 21.0.8; Oracle GraalVM Enterprise Edition: 21.3.15. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability can be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. This vulnerability also applies to Java deployments, typically in clients running sandboxed Java Web Start a...

CVSS3: 7.5
0%
Низкий
5 месяцев назад
ubuntu логотип
CVE-2025-53066

Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JAXP). Supported versions that are affected are Oracle Java SE: 8u461, 8u461-perf, 11.0.28, 17.0.16, 21.0.8, 25; Oracle GraalVM for JDK: 17.0.16 and 21.0.8; Oracle GraalVM Enterprise Edition: 21.3.15. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability can be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. This vulnerability also applies to Java deployments, typically in clients running sandboxed Java Web Start ap...

CVSS3: 7.5
0%
Низкий
5 месяцев назад
redhat логотип
CVE-2025-53066

Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JAXP). Supported versions that are affected are Oracle Java SE: 8u461, 8u461-perf, 11.0.28, 17.0.16, 21.0.8, 25; Oracle GraalVM for JDK: 17.0.16 and 21.0.8; Oracle GraalVM Enterprise Edition: 21.3.15. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability can be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. This vulnerability also applies to Java deployments, typically in clients running sandboxed Java Web Start a...

CVSS3: 4.8
0%
Низкий
5 месяцев назад
nvd логотип
CVE-2025-53066

Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JAXP). Supported versions that are affected are Oracle Java SE: 8u461, 8u461-perf, 11.0.28, 17.0.16, 21.0.8, 25; Oracle GraalVM for JDK: 17.0.16 and 21.0.8; Oracle GraalVM Enterprise Edition: 21.3.15. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability can be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. This vulnerability also applies to Java deployments, typically in clients running sandboxed Java Web Start appl

CVSS3: 7.5
0%
Низкий
5 месяцев назад
debian логотип
CVE-2025-53066

Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle Gr ...

CVSS3: 7.5
0%
Низкий
5 месяцев назад
fstec логотип
BDU:2025-13795

Уязвимость компонента JAXP программных платформ Java SE, GraalVM for JDK, GraalVM Enterprise Edition, позволяющая нарушителю получить несанкционированный доступ к данным платформы

CVSS3: 7.5
0%
Низкий
6 месяцев назад
suse-cvrf логотип
openSUSE-SU-2025:20125-1

Security update for java-17-openjdk

4 месяца назад
suse-cvrf логотип
SUSE-SU-2025:4039-1

Security update for java-1_8_0-openjdk

5 месяцев назад
suse-cvrf логотип
SUSE-SU-2025:4038-1

Security update for java-1_8_0-openjdk

5 месяцев назад
suse-cvrf логотип
SUSE-SU-2025:4005-1

Security update for java-1_8_0-openj9

5 месяцев назад
suse-cvrf логотип
SUSE-SU-2025:3997-1

Security update for java-17-openjdk

5 месяцев назад
suse-cvrf логотип
SUSE-SU-2025:3996-1

Security update for java-11-openjdk

5 месяцев назад
suse-cvrf логотип
SUSE-SU-2025:3835-1

Security update for java-11-openjdk

5 месяцев назад
oracle-oval логотип
ELSA-2025-18821

ELSA-2025-18821: java-17-openjdk security update (MODERATE)

5 месяцев назад
oracle-oval логотип
ELSA-2025-18815

ELSA-2025-18815: java-1.8.0-openjdk security update (MODERATE)

5 месяцев назад
oracle-oval логотип
ELSA-2025-18814

ELSA-2025-18814: java-1.8.0-openjdk security update (MODERATE)

5 месяцев назад
suse-cvrf логотип
openSUSE-SU-2025:20123-1

Security update for java-21-openjdk

4 месяца назад
suse-cvrf логотип
SUSE-SU-2025:4287-1

Security update for java-25-openjdk

4 месяца назад
suse-cvrf логотип
SUSE-SU-2025:3965-1

Security update for java-1_8_0-ibm

5 месяцев назад
suse-cvrf логотип
SUSE-SU-2025:3964-1

Security update for java-1_8_0-ibm

5 месяцев назад

Уязвимостей на страницу