Oracle Jre vulnerabilities

790 known vulnerabilities affecting oracle/jre.

Total CVEs
790
CISA KEV
14
actively exploited
Public exploits
32
Exploited in wild
16
Severity breakdown
CRITICAL205HIGH119MEDIUM346LOW118

Vulnerabilities

Page 29 of 40
CVE-2013-5805CRITICALCVSS 9.3≤ 1.7.0v1.7.02013-10-16
CVE-2013-5805 [CRITICAL] CVE-2013-5805: Unspecified vulnerability in Oracle Java SE 7u40 and earlier and Java SE Embedded 7u40 and earlier a Unspecified vulnerability in Oracle Java SE 7u40 and earlier and Java SE Embedded 7u40 and earlier allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Swing, a different vulnerability than CVE-2013-5806.
nvd
CVE-2013-5810CRITICALCVSS 9.3≤ 1.7.0v1.7.02013-10-16
CVE-2013-5810 [CRITICAL] CVE-2013-5810: Unspecified vulnerability in Oracle Java SE 7u40 and earlier and JavaFX 2.2.40 and earlier allows re Unspecified vulnerability in Oracle Java SE 7u40 and earlier and JavaFX 2.2.40 and earlier allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors.
nvd
CVE-2013-5788CRITICALCVSS 10.0fixed in 1.7.0v1.7.02013-10-16
CVE-2013-5788 [CRITICAL] CVE-2013-5788: Unspecified vulnerability in Oracle Java SE 7u40 and earlier and Java SE Embedded 7u40 and earlier a Unspecified vulnerability in Oracle Java SE 7u40 and earlier and Java SE Embedded 7u40 and earlier allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Deployment.
nvd
CVE-2013-5777CRITICALCVSS 9.3≤ 1.7.0v1.7.02013-10-16
CVE-2013-5777 [CRITICAL] CVE-2013-5777: Unspecified vulnerability in the Java SE and JavaFX components in Oracle Java SE 7u40 and earlier an Unspecified vulnerability in the Java SE and JavaFX components in Oracle Java SE 7u40 and earlier and JavaFX 2.2.40 and earlier allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors, a different vulnerability than CVE-2013-5775.
nvd
CVE-2013-5775HIGHCVSS 7.5≤ 1.7.0v1.7.02013-10-16
CVE-2013-5775 [HIGH] CVE-2013-5775: Unspecified vulnerability in the Java SE and JavaFX components in Oracle Java SE 7u40 and earlier an Unspecified vulnerability in the Java SE and JavaFX components in Oracle Java SE 7u40 and earlier and JavaFX 2.2.40 and earlier allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors, a different vulnerability than CVE-2013-5777.
nvd
CVE-2013-5852HIGHCVSS 7.6≤ 1.7.0v1.7.0+2 more2013-10-16
CVE-2013-5852 [HIGH] CVE-2013-5852: Unspecified vulnerability in Oracle Java SE 7u40 and earlier, Java SE 6u60 and earlier, and Java SE Unspecified vulnerability in Oracle Java SE 7u40 and earlier, Java SE 6u60 and earlier, and Java SE Embedded 7u40 and earlier allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Deployment, a different vulnerability than CVE-2013-5787, CVE-2013-5789, CVE-2013-5824, and CVE-2013-5832.
nvd
CVE-2013-5802HIGHCVSS 7.5≤ 1.5.0v1.5.0+4 more2013-10-16
CVE-2013-5802 [HIGH] CVE-2013-5802: Unspecified vulnerability in Oracle Java SE 7u40 and earlier, Java SE 6u60 and earlier, Java SE 5.0u Unspecified vulnerability in Oracle Java SE 7u40 and earlier, Java SE 6u60 and earlier, Java SE 5.0u51 and earlier, JRockit R28.2.8 and earlier, JRockit R27.7.6 and earlier, and Java SE Embedded 7u40 and earlier allows remote attackers to affect confidentiality, integrity, and availability via vectors related to JAXP.
nvd
CVE-2013-5790MEDIUMCVSS 4.3≤ 1.5.0v1.5.0+4 more2013-10-16
CVE-2013-5790 [MEDIUM] CVE-2013-5790: Unspecified vulnerability in Oracle Java SE 7u40 and earlier, Java SE 6u60 and earlier, Java SE 5.0u Unspecified vulnerability in Oracle Java SE 7u40 and earlier, Java SE 6u60 and earlier, Java SE 5.0u51 and earlier, and Java SE Embedded 7u40 and earlier allows remote attackers to affect confidentiality via vectors related to BEANS.
nvd
CVE-2013-5776MEDIUMCVSS 5.0≤ 1.7.0v1.7.0+2 more2013-10-16
CVE-2013-5776 [MEDIUM] CVE-2013-5776: Unspecified vulnerability in the Java SE and Java SE Embedded components in Oracle Java SE Java SE 7 Unspecified vulnerability in the Java SE and Java SE Embedded components in Oracle Java SE Java SE 7u40 and earlier, Java SE 6u60 and earlier, and Java SE Embedded 7u40 and earlier allows remote attackers to affect integrity via unknown vectors related to Deployment.
nvd
CVE-2013-5784MEDIUMCVSS 4.3≤ 1.7.0v1.7.0+2 more2013-10-16
CVE-2013-5784 [MEDIUM] CVE-2013-5784: Unspecified vulnerability in Oracle Java SE 7u40 and earlier, Java SE 6u60 and earlier, and Java SE Unspecified vulnerability in Oracle Java SE 7u40 and earlier, Java SE 6u60 and earlier, and Java SE Embedded 7u40 and earlier allows remote attackers to affect integrity via vectors related to SCRIPTING.
nvd
CVE-2013-5783MEDIUMCVSS 6.4≤ 1.6.0v1.6.0+4 more2013-10-16
CVE-2013-5783 [MEDIUM] CVE-2013-5783: Unspecified vulnerability in Oracle Java SE 7u40 and earlier, Java SE 6u60 and earlier, Java SE 5.0u Unspecified vulnerability in Oracle Java SE 7u40 and earlier, Java SE 6u60 and earlier, Java SE 5.0u51 and earlier, and Java SE Embedded 7u40 and earlier allows remote attackers to affect confidentiality and integrity via unknown vectors related to Swing.
nvd
CVE-2013-5774MEDIUMCVSS 5.0≤ 1.5.0v1.5.0+4 more2013-10-16
CVE-2013-5774 [MEDIUM] CVE-2013-5774: Unspecified vulnerability in Oracle Java SE 7u40 and earlier, 6u60 and earlier, 5.0u51 and earlier, Unspecified vulnerability in Oracle Java SE 7u40 and earlier, 6u60 and earlier, 5.0u51 and earlier, and Embedded 7u40 and earlier allows remote attackers to affect integrity via unknown vectors related to Libraries.
nvd
CVE-2013-5818MEDIUMCVSS 5.0≤ 1.7.0v1.7.0+2 more2013-10-16
CVE-2013-5818 [MEDIUM] CVE-2013-5818: Unspecified vulnerability in Oracle Java SE 7u40 and earlier, Java SE 6u60 and earlier, and Java SE Unspecified vulnerability in Oracle Java SE 7u40 and earlier, Java SE 6u60 and earlier, and Java SE Embedded 7u40 and earlier allows remote attackers to affect integrity via unknown vectors related to Deployment, a different vulnerability than CVE-2013-5819 and CVE-2013-5831.
nvd
CVE-2013-5831MEDIUMCVSS 5.0≤ 1.6.0v1.6.0+2 more2013-10-16
CVE-2013-5831 [MEDIUM] CVE-2013-5831: Unspecified vulnerability in Oracle Java SE 7u40 and earlier, Java SE 6u60 and earlier, and Java SE Unspecified vulnerability in Oracle Java SE 7u40 and earlier, Java SE 6u60 and earlier, and Java SE Embedded 7u40 and earlier allows remote attackers to affect integrity via unknown vectors related to Deployment, a different vulnerability than CVE-2013-5818 and CVE-2013-5819.
nvd
CVE-2013-3829MEDIUMCVSS 6.4≤ 1.7.0v1.7.0+4 more2013-10-16
CVE-2013-3829 [MEDIUM] CVE-2013-3829: Unspecified vulnerability in the Java SE, Java SE Embedded component in Oracle Java SE Java SE 7u40 Unspecified vulnerability in the Java SE, Java SE Embedded component in Oracle Java SE Java SE 7u40 and earlier, Java SE 6u60 and earlier, Java SE 5.0u51 and earlier, and Java SE Embedded 7u40 and earlier allows remote attackers to affect confidentiality and integrity via unknown vectors related to Libraries.
nvd
CVE-2013-5800MEDIUMCVSS 4.3≤ 1.7.0v1.7.02013-10-16
CVE-2013-5800 [MEDIUM] CVE-2013-5800: Unspecified vulnerability in Oracle Java SE 7u40 and earlier and Java SE Embedded 7u40 and earlier a Unspecified vulnerability in Oracle Java SE 7u40 and earlier and Java SE Embedded 7u40 and earlier allows remote attackers to affect confidentiality via vectors related to JGSS.
nvd
CVE-2013-5849MEDIUMCVSS 4.3≤ 1.7.0v1.7.0+4 more2013-10-16
CVE-2013-5849 [MEDIUM] CVE-2013-5849: Unspecified vulnerability in Oracle Java SE 7u40 and earlier, Java SE 6u60 and earlier, Java SE 5.0u Unspecified vulnerability in Oracle Java SE 7u40 and earlier, Java SE 6u60 and earlier, Java SE 5.0u51 and earlier, and Java SE Embedded 7u40 and earlier allows remote attackers to affect confidentiality via vectors related to AWT.
nvd
CVE-2013-5812MEDIUMCVSS 6.4≤ 1.6.0v1.6.0+2 more2013-10-16
CVE-2013-5812 [MEDIUM] CVE-2013-5812: Unspecified vulnerability in Oracle Java SE 7u40 and earlier, Java SE 6u60 and earlier, and Java SE Unspecified vulnerability in Oracle Java SE 7u40 and earlier, Java SE 6u60 and earlier, and Java SE Embedded 7u40 and earlier allows remote attackers to affect confidentiality and availability via unknown vectors related to Deployment.
nvd
CVE-2013-5778MEDIUMCVSS 5.0≤ 1.6.0v1.6.0+4 more2013-10-16
CVE-2013-5778 [MEDIUM] CVE-2013-5778: Unspecified vulnerability in Oracle Java SE 7u40 and earlier, 6u60 and earlier, 5.0u51 and earlier, Unspecified vulnerability in Oracle Java SE 7u40 and earlier, 6u60 and earlier, 5.0u51 and earlier, and Embedded 7u40 and earlier allows remote attackers to affect confidentiality via unknown vectors related to 2D.
nvd
CVE-2013-5848MEDIUMCVSS 5.0≤ 1.7.0v1.7.02013-10-16
CVE-2013-5848 [MEDIUM] CVE-2013-5848: Unspecified vulnerability in Oracle Java SE 7u40 and earlier, Java SE 6u60 and earlier, and JavaFX 2 Unspecified vulnerability in Oracle Java SE 7u40 and earlier, Java SE 6u60 and earlier, and JavaFX 2.2.40 and earlier allows remote attackers to affect integrity via unknown vectors related to Deployment.
nvd