cbcvebase.

Debian Openjdk-8 vulnerabilities

333 known vulnerabilities affecting debian/openjdk-8.

Total CVEs
333
CISA KEV
2
actively exploited
Public exploits
7
Exploited in wild
3
Severity breakdown
CRITICAL46HIGH45MEDIUM166LOW76

Vulnerabilities

Page 8 of 17
CVE-2023-21954P4MEDIUMCVSS 5.9fixed in openjdk-11 11.0.20+8-1~deb11u1 (bullseye)2023
CVE-2023-21954 [MEDIUM] CVE-2023-21954: openjdk-11 - Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product o... Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot). Supported versions that are affected are Oracle Java SE: 8u361, 8u361-perf, 11.0.18, 17.0.6; Oracle GraalVM Enterprise Edition: 20.3.9, 21.3.5 and 22.3.1. Difficult to exploit vulnerability allows unauthenticated attacker with network access vi
debian
CVE-2025-30761P3MEDIUMCVSS 5.9fixed in openjdk-11 11.0.28+6-1~deb11u1 (bullseye)2025
CVE-2025-30761 [MEDIUM] CVE-2025-30761: openjdk-11 - Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product o... Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Scripting). Supported versions that are affected are Oracle Java SE: 8u451, 8u451-perf and 11.0.27; Oracle GraalVM Enterprise Edition: 21.3.14. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols
debian
CVE-2016-0475P4MEDIUMCVSS 5.8fixed in openjdk-8 8u72-b15-1 (sid)2016
CVE-2016-0475 [MEDIUM] CVE-2016-0475: openjdk-8 - Unspecified vulnerability in the Java SE, Java SE Embedded, and JRockit componen... Unspecified vulnerability in the Java SE, Java SE Embedded, and JRockit components in Oracle Java SE 8u66; Java SE Embedded 8u65; and JRockit R28.3.8 allows remote attackers to affect confidentiality and integrity via unknown vectors related to Libraries. Scope: local sid: resolved (fixed in 8u72-b15-1)
debian
CVE-2020-14621P4MEDIUMCVSS 5.3fixed in openjdk-11 11.0.8+10-1 (bullseye)2020
CVE-2020-14621 [MEDIUM] CVE-2020-14621: openjdk-11 - Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (compon... Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: JAXP). Supported versions that are affected are Java SE: 7u261, 8u251, 11.0.7 and 14.0.1; Java SE Embedded: 8u251. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded. Successful att
debian
CVE-2017-10135P4MEDIUMCVSS 5.9fixed in openjdk-8 8u141-b15-1 (sid)2017
CVE-2017-10135 [MEDIUM] CVE-2017-10135: openjdk-8 - Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java... Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: JCE). Supported versions that are affected are Java SE: 6u151, 7u141 and 8u131; Java SE Embedded: 8u131; JRockit: R28.3.14. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE
debian
CVE-2015-4911P4MEDIUMCVSS 5.0fixed in openjdk-8 8u66-b17-1 (sid)2015
CVE-2015-4911 [MEDIUM] CVE-2015-4911: openjdk-8 - Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60; Java SE Embed... Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60; Java SE Embedded 8u51; and JRockit R28.3.7 allows remote attackers to affect availability via vectors related to JAXP, a different vulnerability than CVE-2015-4803 and CVE-2015-4893. Scope: local sid: resolved (fixed in 8u66-b17-1)
debian
CVE-2022-21540P4MEDIUMCVSS 5.3fixed in openjdk-11 11.0.16+8-1~deb11u1 (bullseye)2022
CVE-2022-21540 [MEDIUM] CVE-2022-21540: openjdk-11 - Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product o... Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot). Supported versions that are affected are Oracle Java SE: 7u343, 8u333, 11.0.15.1, 17.0.3.1, 18.0.1.1; Oracle GraalVM Enterprise Edition: 20.3.6, 21.3.2 and 22.1.0. Easily exploitable vulnerability allows unauthenticated attacker with network ac
debian
CVE-2024-20926P4MEDIUMCVSS 5.9fixed in openjdk-11 11.0.22+7-1~deb11u1 (bullseye)2024
CVE-2024-20926 [MEDIUM] CVE-2024-20926: openjdk-11 - Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Ente... Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Scripting). Supported versions that are affected are Oracle Java SE: 8u391, 8u391-perf, 11.0.21; Oracle GraalVM for JDK: 17.0.9; Oracle GraalVM Enterprise Edition: 20.3.12, 21.3.8 and 22.3.4. Difficult to exploit vulnerability all
debian
CVE-2024-20921P4MEDIUMCVSS 5.9fixed in openjdk-11 11.0.22+7-1~deb11u1 (bullseye)2024
CVE-2024-20921 [MEDIUM] CVE-2024-20921: openjdk-11 - Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Ente... Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot). Supported versions that are affected are Oracle Java SE: 8u391, 8u391-perf, 11.0.21, 17.0.9, 21.0.1; Oracle GraalVM for JDK: 17.0.9, 21.0.1; Oracle GraalVM Enterprise Edition: 20.3.12, 21.3.8 and 22.3.4. Difficult to exp
debian
CVE-2024-20919P4MEDIUMCVSS 5.9fixed in openjdk-11 11.0.22+7-1~deb11u1 (bullseye)2024
CVE-2024-20919 [MEDIUM] CVE-2024-20919: openjdk-11 - Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Ente... Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot). Supported versions that are affected are Oracle Java SE: 8u391, 8u391-perf, 11.0.21, 17.0.9, 21.0.1; Oracle GraalVM for JDK: 17.0.9, 21.0.1; Oracle GraalVM Enterprise Edition: 20.3.12, 21.3.8 and 22.3.4. Difficult to exp
debian
CVE-2025-30698P4MEDIUMCVSS 5.6fixed in openjdk-11 11.0.27+6-1~deb11u1 (bullseye)2025
CVE-2025-30698 [MEDIUM] CVE-2025-30698: openjdk-11 - Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Ente... Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: 2D). Supported versions that are affected are Oracle Java SE: 8u441, 8u441-perf, 11.0.26, 17.0.14, 21.0.6, 24; Oracle GraalVM for JDK: 17.0.14, 21.0.6, 24; Oracle GraalVM Enterprise Edition: 20.3.17 and 21.3.13. Difficult to explo
debian
CVE-2020-2781P4MEDIUMCVSS 5.3fixed in openjdk-11 11.0.7+10-1 (bullseye)2020
CVE-2020-2781 [MEDIUM] CVE-2020-2781: openjdk-11 - Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (compon... Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: JSSE). Supported versions that are affected are Java SE: 7u251, 8u241, 11.0.6 and 14; Java SE Embedded: 8u241. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTPS to compromise Java SE, Java SE Embedded. Successful attacks of this vulner
debian
CVE-2020-2830P4MEDIUMCVSS 5.3fixed in openjdk-11 11.0.7+10-1 (bullseye)2020
CVE-2020-2830 [MEDIUM] CVE-2020-2830: openjdk-11 - Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (compon... Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Concurrency). Supported versions that are affected are Java SE: 7u251, 8u241, 11.0.6 and 14; Java SE Embedded: 8u241. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded. Successful at
debian
CVE-2018-2629P4MEDIUMCVSS 5.3fixed in openjdk-8 8u162-b12-1 (sid)2018
CVE-2018-2629 [MEDIUM] CVE-2018-2629: openjdk-8 - Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java... Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: JGSS). Supported versions that are affected are Java SE: 6u171, 7u161, 8u152 and 9.0.1; Java SE Embedded: 8u151; JRockit: R28.3.16. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Ja
debian
CVE-2017-3526P4MEDIUMCVSS 5.9fixed in openjdk-8 8u131-b11-1 (sid)2017
CVE-2017-3526 [MEDIUM] CVE-2017-3526: openjdk-8 - Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java... Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: JAXP). Supported versions that are affected are Java SE: 6u141, 7u131 and 8u121; Java SE Embedded: 8u121; JRockit: R28.3.13. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE E
debian
CVE-2022-21283P4MEDIUMCVSS 5.3fixed in openjdk-11 11.0.14+9-1~deb11u1 (bullseye)2022
CVE-2022-21283 [MEDIUM] CVE-2022-21283: openjdk-11 - Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product o... Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Libraries). Supported versions that are affected are Oracle Java SE: 11.0.13, 17.0.1; Oracle GraalVM Enterprise Edition: 20.3.4 and 21.3.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to com
debian
CVE-2022-21341P4MEDIUMCVSS 5.3fixed in openjdk-11 11.0.14+9-1~deb11u1 (bullseye)2022
CVE-2022-21341 [MEDIUM] CVE-2022-21341: openjdk-11 - Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product o... Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Serialization). Supported versions that are affected are Oracle Java SE: 7u321, 8u311, 11.0.13, 17.0.1; Oracle GraalVM Enterprise Edition: 20.3.4 and 21.3.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via multipl
debian
CVE-2021-2163P4MEDIUMCVSS 5.3fixed in openjdk-11 11.0.11+9-1 (bullseye)2021
CVE-2021-2163 [MEDIUM] CVE-2021-2163: openjdk-11 - Vulnerability in the Java SE, Java SE Embedded, Oracle GraalVM Enterprise Editio... Vulnerability in the Java SE, Java SE Embedded, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Libraries). Supported versions that are affected are Java SE: 7u291, 8u281, 11.0.10, 16; Java SE Embedded: 8u281; Oracle GraalVM Enterprise Edition: 19.3.5, 20.3.1.2 and 21.0.0.2. Difficult to exploit vulnerability allows unauthenticated attacke
debian
CVE-2022-21282P4MEDIUMCVSS 5.3fixed in openjdk-11 11.0.14+9-1~deb11u1 (bullseye)2022
CVE-2022-21282 [MEDIUM] CVE-2022-21282: openjdk-11 - Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product o... Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JAXP). Supported versions that are affected are Oracle Java SE: 7u321, 8u311, 11.0.13, 17.0.1; Oracle GraalVM Enterprise Edition: 20.3.4 and 21.3.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protoco
debian
CVE-2022-21296P4MEDIUMCVSS 5.3fixed in openjdk-11 11.0.14+9-1~deb11u1 (bullseye)2022
CVE-2022-21296 [MEDIUM] CVE-2022-21296: openjdk-11 - Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product o... Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JAXP). Supported versions that are affected are Oracle Java SE: 7u321, 8u311, 11.0.13, 17.0.1; Oracle GraalVM Enterprise Edition: 20.3.4 and 21.3.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protoco
debian
Debian Openjdk-8 vulnerabilities | cvebase