📦 Openjdk

by Oracle

🔍 What is Openjdk?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-20952

HIGH CVSS 7.4 Jan 16, 2024

This Java security vulnerability allows attackers to bypass sandbox protections in client-side Java deployments. It affects Java SE, GraalVM for JDK, and GraalVM Enterprise Edition when running untrus...

CVE-2023-21930

HIGH CVSS 7.4 Apr 18, 2023

This vulnerability in Oracle Java SE and GraalVM Enterprise Edition's JSSE component allows attackers to compromise confidentiality and integrity of data via TLS connections. It affects Java deploymen...

CVE-2022-21476

HIGH CVSS 7.5 Apr 19, 2022

This vulnerability in Oracle Java SE and GraalVM Enterprise Edition allows unauthenticated remote attackers to access sensitive data from Java applications. It affects Java deployments running sandbox...

CVE-2021-35560

HIGH CVSS 7.5 Oct 20, 2021

This vulnerability in Oracle Java SE 8u301 allows an unauthenticated attacker to potentially compromise Java deployments via network protocols when a user interacts with malicious content. It primaril...

CVE-2021-20264

HIGH CVSS 7.8 Oct 6, 2021

This vulnerability allows attackers with access to openjdk containers to modify the /etc/passwd file, enabling privilege escalation. It affects openjdk-1.8 and openjdk-11 containers, potentially compr...

CVE-2021-32553

HIGH CVSS 7.3 Jun 12, 2021

This vulnerability in Apport's read_file() function allows local attackers to read arbitrary files by exploiting symbolic links or FIFOs. When used by openjdk-17 package hooks, it can expose sensitive...