Логотип exploitDog
bind:"GHSA-v5pp-g8vf-3fxg" OR bind:"CVE-2024-21131"
Консоль
Логотип exploitDog

exploitDog

bind:"GHSA-v5pp-g8vf-3fxg" OR bind:"CVE-2024-21131"

Количество 31

Количество 31

github логотип

GHSA-v5pp-g8vf-3fxg

11 месяцев назад

Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot). Supported versions that are affected are Oracle Java SE: 8u411, 8u411-perf, 11.0.23, 17.0.11, 21.0.3, 22.0.1; Oracle GraalVM for JDK: 17.0.11, 21.0.3, 22.0.1; Oracle GraalVM Enterprise Edition: 20.3.14 and 21.3.10. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability can be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. This vulnerability also applies to Java deployments, typically in clients running sandbox...

CVSS3: 3.7
EPSS: Низкий
ubuntu логотип

CVE-2024-21131

11 месяцев назад

Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot). Supported versions that are affected are Oracle Java SE: 8u411, 8u411-perf, 11.0.23, 17.0.11, 21.0.3, 22.0.1; Oracle GraalVM for JDK: 17.0.11, 21.0.3, 22.0.1; Oracle GraalVM Enterprise Edition: 20.3.14 and 21.3.10. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability can be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. This vulnerability also applies to Java deployments, typically in clients running sandboxe...

CVSS3: 3.7
EPSS: Низкий
redhat логотип

CVE-2024-21131

11 месяцев назад

Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot). Supported versions that are affected are Oracle Java SE: 8u411, 8u411-perf, 11.0.23, 17.0.11, 21.0.3, 22.0.1; Oracle GraalVM for JDK: 17.0.11, 21.0.3, 22.0.1; Oracle GraalVM Enterprise Edition: 20.3.14 and 21.3.10. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability can be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. This vulnerability also applies to Java deployments, typically in clients running sandbox...

CVSS3: 3.7
EPSS: Низкий
nvd логотип

CVE-2024-21131

11 месяцев назад

Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot). Supported versions that are affected are Oracle Java SE: 8u411, 8u411-perf, 11.0.23, 17.0.11, 21.0.3, 22.0.1; Oracle GraalVM for JDK: 17.0.11, 21.0.3, 22.0.1; Oracle GraalVM Enterprise Edition: 20.3.14 and 21.3.10. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability can be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. This vulnerability also applies to Java deployments, typically in clients running sandboxed

CVSS3: 3.7
EPSS: Низкий
debian логотип

CVE-2024-21131

11 месяцев назад

Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle Gr ...

CVSS3: 3.7
EPSS: Низкий
fstec логотип

BDU:2024-05610

11 месяцев назад

Уязвимость компонента Hotspot виртуальных машин Oracle GraalVM Enterprise Edition, Oracle GraalVM for JDK и программной платформы Oracle Java SE, позволяющая нарушителю получить доступ на изменение, добавление или удаление данных

CVSS3: 3.7
EPSS: Низкий
redos логотип

ROS-20241017-16

8 месяцев назад

Множественные уязвимости java-11-openjdk

CVSS3: 3.7
EPSS: Низкий
redos логотип

ROS-20241017-15

8 месяцев назад

Множественные уязвимости java-17-openjdk

CVSS3: 3.7
EPSS: Низкий
redos логотип

ROS-20241017-14

8 месяцев назад

Множественные уязвимости java-21-openjdk

CVSS3: 3.7
EPSS: Низкий
redos логотип

ROS-20241017-11

8 месяцев назад

Множественные уязвимости java-1.8.0-openjdk

CVSS3: 3.7
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:2628-1

11 месяцев назад

Security update for java-17-openjdk

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:2578-1

11 месяцев назад

Security update for java-21-openjdk

EPSS: Низкий
rocky логотип

RLSA-2024:4573

11 месяцев назад

Important: java-21-openjdk security update

EPSS: Низкий
rocky логотип

RLSA-2024:4568

около 1 месяца назад

Important: java-17-openjdk security update

EPSS: Низкий
oracle-oval логотип

ELSA-2024-4573

11 месяцев назад

ELSA-2024-4573: java-21-openjdk security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2024-4568

11 месяцев назад

ELSA-2024-4568: java-17-openjdk security update (IMPORTANT)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:3140-1

10 месяцев назад

Security update for java-1_8_0-openj9

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:2786-1

11 месяцев назад

Security update for java-1_8_0-openjdk

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:2766-1

11 месяцев назад

Security update for java-1_8_0-openjdk

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:2629-1

11 месяцев назад

Security update for java-11-openjdk

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-v5pp-g8vf-3fxg

Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot). Supported versions that are affected are Oracle Java SE: 8u411, 8u411-perf, 11.0.23, 17.0.11, 21.0.3, 22.0.1; Oracle GraalVM for JDK: 17.0.11, 21.0.3, 22.0.1; Oracle GraalVM Enterprise Edition: 20.3.14 and 21.3.10. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability can be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. This vulnerability also applies to Java deployments, typically in clients running sandbox...

CVSS3: 3.7
0%
Низкий
11 месяцев назад
ubuntu логотип
CVE-2024-21131

Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot). Supported versions that are affected are Oracle Java SE: 8u411, 8u411-perf, 11.0.23, 17.0.11, 21.0.3, 22.0.1; Oracle GraalVM for JDK: 17.0.11, 21.0.3, 22.0.1; Oracle GraalVM Enterprise Edition: 20.3.14 and 21.3.10. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability can be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. This vulnerability also applies to Java deployments, typically in clients running sandboxe...

CVSS3: 3.7
0%
Низкий
11 месяцев назад
redhat логотип
CVE-2024-21131

Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot). Supported versions that are affected are Oracle Java SE: 8u411, 8u411-perf, 11.0.23, 17.0.11, 21.0.3, 22.0.1; Oracle GraalVM for JDK: 17.0.11, 21.0.3, 22.0.1; Oracle GraalVM Enterprise Edition: 20.3.14 and 21.3.10. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability can be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. This vulnerability also applies to Java deployments, typically in clients running sandbox...

CVSS3: 3.7
0%
Низкий
11 месяцев назад
nvd логотип
CVE-2024-21131

Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot). Supported versions that are affected are Oracle Java SE: 8u411, 8u411-perf, 11.0.23, 17.0.11, 21.0.3, 22.0.1; Oracle GraalVM for JDK: 17.0.11, 21.0.3, 22.0.1; Oracle GraalVM Enterprise Edition: 20.3.14 and 21.3.10. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability can be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. This vulnerability also applies to Java deployments, typically in clients running sandboxed

CVSS3: 3.7
0%
Низкий
11 месяцев назад
debian логотип
CVE-2024-21131

Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle Gr ...

CVSS3: 3.7
0%
Низкий
11 месяцев назад
fstec логотип
BDU:2024-05610

Уязвимость компонента Hotspot виртуальных машин Oracle GraalVM Enterprise Edition, Oracle GraalVM for JDK и программной платформы Oracle Java SE, позволяющая нарушителю получить доступ на изменение, добавление или удаление данных

CVSS3: 3.7
0%
Низкий
11 месяцев назад
redos логотип
ROS-20241017-16

Множественные уязвимости java-11-openjdk

CVSS3: 3.7
8 месяцев назад
redos логотип
ROS-20241017-15

Множественные уязвимости java-17-openjdk

CVSS3: 3.7
8 месяцев назад
redos логотип
ROS-20241017-14

Множественные уязвимости java-21-openjdk

CVSS3: 3.7
8 месяцев назад
redos логотип
ROS-20241017-11

Множественные уязвимости java-1.8.0-openjdk

CVSS3: 3.7
8 месяцев назад
suse-cvrf логотип
SUSE-SU-2024:2628-1

Security update for java-17-openjdk

11 месяцев назад
suse-cvrf логотип
SUSE-SU-2024:2578-1

Security update for java-21-openjdk

11 месяцев назад
rocky логотип
RLSA-2024:4573

Important: java-21-openjdk security update

11 месяцев назад
rocky логотип
RLSA-2024:4568

Important: java-17-openjdk security update

около 1 месяца назад
oracle-oval логотип
ELSA-2024-4573

ELSA-2024-4573: java-21-openjdk security update (IMPORTANT)

11 месяцев назад
oracle-oval логотип
ELSA-2024-4568

ELSA-2024-4568: java-17-openjdk security update (IMPORTANT)

11 месяцев назад
suse-cvrf логотип
SUSE-SU-2024:3140-1

Security update for java-1_8_0-openj9

10 месяцев назад
suse-cvrf логотип
SUSE-SU-2024:2786-1

Security update for java-1_8_0-openjdk

11 месяцев назад
suse-cvrf логотип
SUSE-SU-2024:2766-1

Security update for java-1_8_0-openjdk

11 месяцев назад
suse-cvrf логотип
SUSE-SU-2024:2629-1

Security update for java-11-openjdk

11 месяцев назад

Уязвимостей на страницу