Oracle Java SE 8u311

CPE Details

Oracle Java SE 8u311
8u311
2022-02-09
15h08 +00:00
2022-05-23
12h47 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:oracle:java_se:8u311:*:*:*:*:*:*:*

Informations

Vendor

oracle

Product

java_se

Version

8u311

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2021-21349 2021-03-22 22h45 +00:00 XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulnerability which may allow a remote attacker to request data from internal resources that are not publicly available only by manipulating the processed input stream. No user is affected, who followed the recommendation to setup XStream's security framework with a whitelist limited to the minimal required types. If you rely on XStream's default blacklist of the Security Framework, you will have to use at least version 1.4.16.
8.6
High
CVE-2019-10219 2019-11-08 13h46 +00:00 A vulnerability was found in Hibernate-Validator. The SafeHtml validator annotation fails to properly sanitize payloads consisting of potentially malicious code in HTML comments and instructions. This vulnerability can result in an XSS attack.
6.1
Medium