Unauthorized Access Vulnerability in Oracle GraalVM Enterprise Edition
CVE-2020-2595
5.8MEDIUM
What is CVE-2020-2595?
An exploitable vulnerability exists in the GraalVM Compiler component of Oracle's GraalVM Enterprise Edition that allows unauthenticated attackers with network access through multiple protocols to gain unauthorized read access to sensitive data. While the primary impact is within the Oracle GraalVM Enterprise Edition, it can potentially affect other products relying on it. This situation creates significant risks for organizations utilizing Oracle GraalVM Enterprise Edition in their operations.
Affected Version(s)
GraalVM Enterprise Edition 19.3.0.2