CVE-2018-12549
- EPSS 0.76%
- Published 11.02.2019 15:29:00
- Last modified 21.11.2024 03:45:25
In Eclipse OpenJ9 version 0.11.0, the OpenJ9 JIT compiler may incorrectly omit a null check on the receiver object of an Unsafe call when accelerating it.
CVE-2019-7317
- EPSS 0.99%
- Published 04.02.2019 08:29:00
- Last modified 21.11.2024 04:48:00
png_image_free in png.c in libpng 1.6.x before 1.6.37 has a use-after-free because png_image_free_function is called under png_safe_execute.
CVE-2018-14666
- EPSS 0.35%
- Published 22.01.2019 15:29:00
- Last modified 21.11.2024 03:49:32
An improper authorization flaw was found in the Smart Class feature of Foreman. An attacker can use it to change configuration of any host registered in Red Hat Satellite, independent of the organization the host belongs to. This flaw affects all Red...
CVE-2019-2449
- EPSS 2.56%
- Published 16.01.2019 19:30:32
- Last modified 21.11.2024 04:40:53
Vulnerability in the Java SE component of Oracle Java SE (subcomponent: Deployment). The supported version that is affected is Java SE: 8u192. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protoco...
CVE-2019-2422
- EPSS 0.24%
- Published 16.01.2019 19:30:31
- Last modified 21.11.2024 04:40:50
Vulnerability in the Java SE component of Oracle Java SE (subcomponent: Libraries). Supported versions that are affected are Java SE: 7u201, 8u192 and 11.0.1; Java SE Embedded: 8u191. Difficult to exploit vulnerability allows unauthenticated attacker...
CVE-2018-16887
- EPSS 0.26%
- Published 13.01.2019 02:29:00
- Last modified 21.11.2024 03:53:32
A cross-site scripting (XSS) flaw was found in the katello component of Satellite. An attacker with privilege to create/edit organizations and locations is able to execute a XSS attacks against other users through the Subscriptions or the Red Hat Rep...
CVE-2018-3214
- EPSS 0.15%
- Published 17.10.2018 01:31:23
- Last modified 21.11.2024 04:05:27
Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: Sound). Supported versions that are affected are Java SE: 6u201, 7u191 and 8u182; Java SE Embedded: 8u181; JRockit: R28.3.19. Easily exploitable vulner...
CVE-2018-3180
- EPSS 0.07%
- Published 17.10.2018 01:31:20
- Last modified 21.11.2024 04:05:21
Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: JSSE). Supported versions that are affected are Java SE: 6u201, 7u191, 8u182 and 11; Java SE Embedded: 8u181; JRockit: R28.3.19. Difficult to exploit v...
- EPSS 0.33%
- Published 17.10.2018 01:31:20
- Last modified 21.11.2024 04:05:21
Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: Scripting). Supported versions that are affected are Java SE: 8u182 and 11; Java SE Embedded: 8u181; JRockit: R28.3.19. Difficult to exploit vulnerabil...
CVE-2018-3169
- EPSS 0.24%
- Published 17.10.2018 01:31:19
- Last modified 21.11.2024 04:05:20
Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: Hotspot). Supported versions that are affected are Java SE: 7u191, 8u182 and 11; Java SE Embedded: 8u181. Difficult to exploit vulnerability allows unauthentica...