CVE-2025-50065

Severity
3.7LOW
EPSS
0.1%
top 77.87%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJul 15

Description

Vulnerability in the Oracle GraalVM for JDK product of Oracle Java SE (component: Native Image). The supported version that is affected is Oracle GraalVM for JDK: 24.0.1. Difficult to exploit vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle GraalVM for JDK. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Oracle GraalVM for JDK. CVSS 3.1 Base Score 3.7 (Availability imp

CVSS vector

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:LExploitability: 2.2 | Impact: 1.4

Affected Packages2 packages

🔴Vulnerability Details

2
CVEList
CVE-2025-50065: Vulnerability in the Oracle GraalVM for JDK product of Oracle Java SE (component: Native Image)2025-07-15
GHSA
GHSA-rjr4-j8jj-57rh: Vulnerability in the Oracle GraalVM for JDK product of Oracle Java SE (component: Native Image)2025-07-15

📋Vendor Advisories

1
Oracle
Oracle Oracle Java SE Risk Matrix: Native Image — CVE-2025-500652025-07-15
CVE-2025-50065 (LOW CVSS 3.7) | Vulnerability in the Oracle GraalVM | cvebase.io