java
144 articles with this tag
CRITICAL
CRITICAL
LOW
CRITICAL
HIGH
INFO
INFO
INFO
INFO
HIGH
INFO
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
MEDIUM
HIGH
INFO
HIGH
HIGH
HIGH
MEDIUM
MEDIUM
CRITICAL
INFO
INFO
INFO
CRITICAL
HIGH
HIGH
CRITICAL
INFO
INFO
HIGH
CRITICAL
CRITICAL
HIGH
HIGH
MEDIUM
INFO
INFO
HIGH
MEDIUM
HIGH
HIGH
MEDIUM
INFO
HIGH
HIGH
HIGH
MEDIUM
MEDIUM
INFO
INFO
MEDIUM
INFO
INFO
MEDIUM
MEDIUM
HIGH
MEDIUM
INFO
HIGH
INFO
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
INFO
HIGH
CRITICAL
CRITICAL
CRITICAL
MEDIUM
HIGH
HIGH
MEDIUM
CRITICAL
MEDIUM
HIGH
MEDIUM
HIGH
HIGH
HIGH
HIGH
HIGH
CRITICAL
MEDIUM
MEDIUM
LOW
CRITICAL
CRITICAL
HIGH
HIGH
[NEU] [hoch] Apache Airflow FAB provider: Schwachstelle ermöglicht Erlangen von Administratorrechten
Unpatched Fastjson Vulnerability Exploited in Attacks
Java deprecates support for macOS x86
Fastjson 1.x RCE Vulnerability Targeted in Attacks With No Patched Available
RHSA-2026:42877: Important: java-1.8.0-openjdk security update
RHSA-2026:42893: Important: OpenJDK 17.0.20 Security Update for Windows Builds
RHSA-2026:42889: Important: OpenJDK 17.0.20 Security Update for Portable Linux Builds
RHSA-2026:42878: Important: OpenJDK 8u502 Security Update for Portable Linux Builds
RHSA-2026:42882: Important: OpenJDK 11.0.32 ELS Security Update for Windows Builds
RHSA-2026:42876: Important: java-1.8.0-openjdk security update
RHSA-2026:42887: Important: java-17-openjdk security update
RHSA-2026:44064: Important: jackson-annotations, jackson-core, jackson-databind, jackson-jaxrs-providers, and jackson-modules-base security update
RHSA-2026:44065: Important: jackson-annotations, jackson-core, jackson-databind, jackson-jaxrs-providers, and jackson-modules-base security update
RHSA-2026:44061: Important: pki-deps:10.6 security update
NCSC-2026-0261 [1.00] [M/H] Kwetsbaarheden verholpen in Oracle Java SE
[NEU] [mittel] Oracle Java SE: Mehrere Schwachstellen
[NEU] [mittel] IBM WebSphere Application Server: Schwachstelle ermöglicht Umgehen von Sicherheitsvorkehrungen
RHSA-2026:39188: Important: Red Hat JBoss Web Server 7.0.0 security release
[NEU] [mittel] Apache log4j und Log4cxx: Mehrere Schwachstellen ermöglichen Manipulation von Dateien
RHSA-2026:38796: Important: plexus-utils security update
RHSA-2026:38505: Important: tomcat security, bug fix, and enhancement update
RHSA-2026:36877: Important: tomcat security update
RHSA-2026:36789: Important: tomcat9 security update
[NEU] [mittel] IBM WebSphere Application Server Liberty: Schwachstelle ermöglicht Denial of Service
[NEU] [mittel] IBM WebSphere Application Server: Schwachstelle ermöglicht Ausführung von Aktionen
[NEU] [mittel] Red Hat JBoss Enterprise Application Platform (io.undertow.jastow): Schwachstelle ermöglicht Cross-Site Scripting
[UPDATE] [kritisch] Apache log4j: Schwachstelle ermöglicht Codeausführung
RHSA-2026:36344: Moderate: Red Hat JBoss Enterprise Application Platform 8.1.7 security update
RHSA-2026:36343: Moderate: Red Hat JBoss Enterprise Application Platform 8.1.7 security update
RHSA-2026:36342: Moderate: Red Hat JBoss Enterprise Application Platform 8.1.7 security update
[NEU] [hoch] Apache Camel: Mehrere Schwachstellen
[NEU] [mittel] PostgreSQL JDBC Driver: Schwachstelle ermöglicht Umgehen von Sicherheitsvorkehrungen
[NEU] [mittel] Apache HttpComponents Core: Mehrere Schwachstellen ermöglichen Denial of Service
[NEU] [hoch] IBM WebSphere Application Server: Mehrere Schwachstellen
RHSA-2026:33371: Important: Red Hat JBoss Enterprise Application Platform 7.3.18 security update
RHSA-2026:33372: Important: Red Hat JBoss Enterprise Application Platform 7.1.15 security update
[NEU] [hoch] FasterXML Jackson: Mehrere Schwachstellen
[NEU] [hoch] IBM WebSphere Application Server und Application Server Liberty: Mehrere Schwachstellen
PeopleSoft PeopleTools Pre-Authentication RCE: A PSIGW SSRF Chain That Executes Inside the JVM
[NEU] [hoch] IBM WebSphere Application Server: Mehrere Schwachstellen
RHSA-2026:26194: Important: Red Hat build of Quarkus 3.20.6.SP2 security update
Multiples vulnérabilités dans les produits Spring (12 juin 2026)
RHSA-2026:25126: Important: Red Hat JBoss Enterprise Application Platform 8.1.6 security update
RHSA-2026:25089: Important: HawtIO 4.4.0 for Red Hat build of Apache Camel 4 Release and security update.
Multiples vulnérabilités dans les produits Spring (09 juin 2026)
[UPDATE] [niedrig] FasterXML Jackson: Schwachstelle ermöglicht Offenlegung von Informationen
[UPDATE] [mittel] Apache Commons: Mehrere Schwachstellen ermöglichen nicht spezifizierten Angriff
[NEU] [hoch] Netty: Mehrere Schwachstellen
USN-8364-1: Apache Commons Lang vulnerability
RHSA-2026:22328: Important: java-21-ibm-semeru-certified-jdk security update
RHSA-2026:22304: Important: postgresql-jdbc security update
RHSA-2026:22139: Important: java-1.8.0-ibm security update
USN-8322-1: Apache Commons BeanUtils vulnerability
Vulnérabilité dans Spring AI (26 mai 2026)
RHSA-2026:19098: Important: Red Hat build of Quarkus 3.27.3.SP2 security update
RHSA-2026:19054: Important: tomcat security update
RHSA-2026:18537: Important: tomcat security update
[NEU] [mittel] Vaadin: Schwachstelle ermöglicht Offenlegung von Informationen
RHSA-2026:18054: Important: Red Hat JBoss Enterprise Application Platform 8.1.6 security update
RHSA-2026:18055: Important: Red Hat JBoss Enterprise Application Platform 8.1.6 security update
[NEU] [mittel] Apache Commons: Schwachstelle ermöglicht Denial of Service
CVE-2026-33117 Azure SDK for Java Security Feature Bypass Vulnerability
Multiples vulnérabilités dans les produits Spring (11 mai 2026)
DSA-6246-1 openjdk-25 - security update
RHSA-2026:11822: Important: OpenJDK 25.0.3 Security Update for Windows Builds
[NEU] [mittel] Red Hat JBoss Enterprise Application Platform (bouncycastle): Schwachstelle ermöglicht Offenlegung von Informationen
CVE-2026-41603 Apache Thrift: Java TSSLTransportFactory hostname verification
DSA-6237-1 openjdk-17 - security update
Don't Panic: The Thymeleaf Template Injection That Only Hurts If You Let It (CVE-2026-40478)
RHSA-2026:9689: Important: java-21-openjdk security update
RHSA-2026:9683: Important: java-1.8.0-openjdk security update
RHSA-2026:9686: Important: java-17-openjdk security update
RHSA-2026:9693: Important: java-25-openjdk security update
RHSA-2026:9682: Important: java-1.8.0-openjdk security update
RHSA-2026:9254: Important: Java 11 OpenJDK ELS Security Update
Multiples vulnérabilités dans Oracle Java SE (22 avril 2026)
Actively exploited Apache ActiveMQ flaw impacts 6,400 servers
Critical sandbox bypass fixed in popular Thymeleaf Java template engine
[NEU] [hoch] Bouncy Castle BC-JAVA: Mehrere Schwachstellen
[NEU] [mittel] Apache log4j: Mehrere Schwachstellen ermöglichen Manipulation von Dateien
Seven IBM WebSphere Liberty flaws can be chained into full takeover
13-year-old bug in ActiveMQ lets hackers remotely execute commands
USN-8144-1: Undertow vulnerability
[NEU] [hoch] IBM Semeru Runtime: Schwachstelle ermöglicht Codeausführung
Vulnérabilité dans Spring Cloud Config (24 mars 2026)
[UPDATE] [mittel] VMware Tanzu Spring Framework und Spring Security: Mehrere Schwachstellen ermöglichen Umgehen von Sicherheitsvorkehrungen
[UPDATE] [mittel] Bouncy Castle: Schwachstelle ermöglicht Manipulation von Daten
[UPDATE] [hoch] Logback: Schwachstelle ermöglicht Denial of Service
[UPDATE] [hoch] Logback: Schwachstelle ermöglicht Denial of Service
[UPDATE] [mittel] Apache Tomcat: Schwachstelle ermöglicht Umgehen von Sicherheitsvorkehrungen
[UPDATE] [hoch] Eclipse Jetty: Mehrere Schwachstellen ermöglichen Denial of Service
[UPDATE] [mittel] Apache Tomcat: Mehrere Schwachstellen
[UPDATE] [hoch] Red Hat Integration Camel for Spring Boot: Mehrere Schwachstellen
[UPDATE] [mittel] Apache CXF: Mehrere Schwachstellen
[UPDATE] [mittel] Apache CXF: Schwachstelle ermöglicht Denial of Service und Offenlegung von Informationen
[UPDATE] [niedrig] Apache Commons Lang: Schwachstelle ermöglicht Denial of Service
[UPDATE] [hoch] Apache Tomcat: Schwachstelle ermöglicht Codeausführung
[UPDATE] [hoch] Apache Tomcat: Mehrere Schwachstellen
[UPDATE] [mittel] Apache Tomcat: Mehrere Schwachstellen
[UPDATE] [hoch] Apache Commons BeanUtils: Schwachstelle ermöglicht Umgehen von Sicherheitsvorkehrungen