📦 Jre

by Oracle

🔍 What is Jre?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-53066

HIGH CVSS 7.5 Oct 21, 2025

This vulnerability in Oracle Java's JAXP component allows unauthenticated attackers to access sensitive data via network protocols. It affects multiple Java SE and GraalVM versions, particularly impac...

CVE-2025-50059

HIGH CVSS 8.6 Jul 15, 2025

This vulnerability in Oracle Java SE and GraalVM networking components allows unauthenticated attackers with network access to bypass Java sandbox security and access critical data. It primarily affec...

CVE-2025-30749

HIGH CVSS 8.1 Jul 15, 2025

This vulnerability in Oracle Java's 2D component allows an unauthenticated attacker with network access to potentially compromise Java SE, GraalVM for JDK, and GraalVM Enterprise Edition. It primarily...

CVE-2025-21587

HIGH CVSS 7.4 Apr 15, 2025

This vulnerability in Java Secure Socket Extension (JSSE) allows attackers to manipulate or access critical data in Java applications. It affects multiple Oracle Java SE and GraalVM versions and can b...

CVE-2024-20952

HIGH CVSS 7.4 Jan 16, 2024

This Java security vulnerability allows attackers to bypass sandbox protections in client-side Java deployments. It affects Java SE, GraalVM for JDK, and GraalVM Enterprise Edition when running untrus...

CVE-2024-20932

HIGH CVSS 7.5 Jan 16, 2024

This vulnerability in Oracle Java SE and GraalVM allows unauthenticated attackers with network access to modify critical data in Java deployments that run untrusted code, such as sandboxed Java Web St...

CVE-2023-21930

HIGH CVSS 7.4 Apr 18, 2023

This vulnerability in Oracle Java SE and GraalVM Enterprise Edition's JSSE component allows attackers to compromise confidentiality and integrity of data via TLS connections. It affects Java deploymen...

CVE-2025-53057

MEDIUM CVSS 5.9 Oct 21, 2025

This vulnerability in Oracle Java SE and GraalVM allows an unauthenticated attacker with network access to potentially modify critical data through difficult-to-exploit attacks. It affects multiple Ja...

CVE-2025-30698

MEDIUM CVSS 5.6 Apr 15, 2025

This vulnerability in Oracle Java SE and GraalVM's 2D component allows an unauthenticated attacker with network access to potentially compromise Java deployments. It primarily affects clients running ...

CVE-2024-21145

MEDIUM CVSS 4.8 Jul 16, 2024

This vulnerability in Oracle Java SE's 2D component allows unauthenticated attackers with network access to potentially modify or read some accessible data. It affects multiple Java versions and Graal...