CVE-2024-47554
- EPSS 0.21%
- Published 03.10.2024 12:15:02
- Last modified 10.07.2025 21:10:32
Uncontrolled Resource Consumption vulnerability in Apache Commons IO. The org.apache.commons.io.input.XmlStreamReader class may excessively consume CPU resources when processing maliciously crafted input. This issue affects Apache Commons IO: from...
CVE-2023-46604
- EPSS 94.44%
- Published 27.10.2023 15:15:14
- Last modified 06.03.2025 19:48:51
The Java OpenWire protocol marshaller is vulnerable to Remote Code Execution. This vulnerability may allow a remote attacker with network access to either a Java-based OpenWire broker or client to run arbitrary shell commands by manipulating seria...
CVE-2023-26049
- EPSS 0.32%
- Published 18.04.2023 21:15:09
- Last modified 21.11.2024 07:50:39
Jetty is a java based web server and servlet engine. Nonstandard cookie parsing in Jetty may allow an attacker to smuggle cookies within other cookies, or otherwise perform unintended behavior by tampering with the cookie parsing mechanism. If Jetty ...
CVE-2022-39399
- EPSS 0.22%
- Published 18.10.2022 21:15:14
- Last modified 21.11.2024 07:18:12
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Networking). Supported versions that are affected are Oracle Java SE: 11.0.16.1, 17.0.4.1, 19; Oracle GraalVM Enterprise Edition: 20.3.7, 21....
CVE-2022-21628
- EPSS 0.16%
- Published 18.10.2022 21:15:13
- Last modified 21.11.2024 06:45:06
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Lightweight HTTP Server). Supported versions that are affected are Oracle Java SE: 8u341, 8u345-perf, 11.0.16.1, 17.0.4.1, 19; Oracle GraalVM...
CVE-2022-21626
- EPSS 0.1%
- Published 18.10.2022 21:15:13
- Last modified 21.11.2024 06:45:06
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Security). Supported versions that are affected are Oracle Java SE: 8u341, 8u345-perf, 11.0.16.1; Oracle GraalVM Enterprise Edition: 20.3.7, ...
CVE-2022-21624
- EPSS 0.13%
- Published 18.10.2022 21:15:13
- Last modified 21.11.2024 06:45:05
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JNDI). Supported versions that are affected are Oracle Java SE: 8u341, 8u345-perf, 11.0.16.1, 17.0.4.1, 19; Oracle GraalVM Enterprise Edition...
CVE-2022-21619
- EPSS 0.18%
- Published 18.10.2022 21:15:12
- Last modified 21.11.2024 06:45:05
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Security). Supported versions that are affected are Oracle Java SE: 8u341, 8u345-perf, 11.0.16.1, 17.0.4.1, 19; Oracle GraalVM Enterprise Edi...
CVE-2022-21618
- EPSS 0.16%
- Published 18.10.2022 21:15:12
- Last modified 21.11.2024 06:45:05
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JGSS). Supported versions that are affected are Oracle Java SE: 17.0.4.1, 19; Oracle GraalVM Enterprise Edition: 21.3.3 and 22.2.0. Easily ex...
CVE-2020-14573
- EPSS 0.29%
- Published 15.07.2020 18:15:23
- Last modified 21.11.2024 05:03:34
Vulnerability in the Java SE product of Oracle Java SE (component: Hotspot). Supported versions that are affected are Java SE: 11.0.7 and 14.0.1. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple prot...