Vulnerability in Oracle Java SE and GraalVM Products
CVE-2024-21012
3.7LOW
What is CVE-2024-21012?
A vulnerability exists in Oracle Java SE and GraalVM products that allows an unauthenticated attacker with network access to compromise the system through various protocols. This weakness primarily affects environments where Java deployments use sandboxed applications to run untrusted code, such as those downloaded from the internet. Successful exploitation may lead to unauthorized access to data, enabling malicious parties to alter or delete crucial information. Organizations are advised to apply security updates to mitigate risks associated with this vulnerability.
Affected Version(s)
Java SE JDK and JRE Oracle Java SE:11.0.22
Java SE JDK and JRE Oracle Java SE:17.0.10
Java SE JDK and JRE Oracle Java SE:21.0.2