CVE-2022-39399
- EPSS 0.22%
- Published 18.10.2022 21:15:14
- Last modified 21.11.2024 07:18:12
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Networking). Supported versions that are affected are Oracle Java SE: 11.0.16.1, 17.0.4.1, 19; Oracle GraalVM Enterprise Edition: 20.3.7, 21....
CVE-2022-21628
- EPSS 0.16%
- Published 18.10.2022 21:15:13
- Last modified 21.11.2024 06:45:06
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Lightweight HTTP Server). Supported versions that are affected are Oracle Java SE: 8u341, 8u345-perf, 11.0.16.1, 17.0.4.1, 19; Oracle GraalVM...
CVE-2022-21626
- EPSS 0.1%
- Published 18.10.2022 21:15:13
- Last modified 21.11.2024 06:45:06
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Security). Supported versions that are affected are Oracle Java SE: 8u341, 8u345-perf, 11.0.16.1; Oracle GraalVM Enterprise Edition: 20.3.7, ...
CVE-2022-21624
- EPSS 0.13%
- Published 18.10.2022 21:15:13
- Last modified 21.11.2024 06:45:05
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JNDI). Supported versions that are affected are Oracle Java SE: 8u341, 8u345-perf, 11.0.16.1, 17.0.4.1, 19; Oracle GraalVM Enterprise Edition...
CVE-2022-21619
- EPSS 0.18%
- Published 18.10.2022 21:15:12
- Last modified 21.11.2024 06:45:05
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Security). Supported versions that are affected are Oracle Java SE: 8u341, 8u345-perf, 11.0.16.1, 17.0.4.1, 19; Oracle GraalVM Enterprise Edi...
CVE-2022-21618
- EPSS 0.16%
- Published 18.10.2022 21:15:12
- Last modified 21.11.2024 06:45:05
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JGSS). Supported versions that are affected are Oracle Java SE: 17.0.4.1, 19; Oracle GraalVM Enterprise Edition: 21.3.3 and 22.2.0. Easily ex...
CVE-2022-2764
- EPSS 0.12%
- Published 01.09.2022 21:15:09
- Last modified 21.11.2024 07:01:39
A flaw was found in Undertow. Denial of service can be achieved as Undertow server waits for the LAST_CHUNK forever for EJB invocations.
CVE-2022-1319
- EPSS 0.23%
- Published 31.08.2022 16:15:09
- Last modified 21.11.2024 06:40:28
A flaw was found in Undertow. For an AJP 400 response, EAP 7 is improperly sending two response packets, and those packets have the reuse flag set even though JBoss EAP closes the connection. A failure occurs when the connection is reused after a 400...
CVE-2022-1259
- EPSS 0.18%
- Published 31.08.2022 16:15:09
- Last modified 21.11.2024 06:40:21
A flaw was found in Undertow. A potential security issue in flow control handling by the browser over HTTP/2 may cause overhead or a denial of service in the server. This flaw exists because of an incomplete fix for CVE-2021-3629.
CVE-2021-3859
- EPSS 0.9%
- Published 26.08.2022 16:15:09
- Last modified 21.11.2024 06:22:40
A flaw was found in Undertow that tripped the client-side invocation timeout with certain calls made over HTTP2. This flaw allows an attacker to carry out denial of service attacks.