CNNVD-202507-1979 Information

CNNVD ID

CNNVD-202507-1979

CVE-2025-30754

  • CNNVD Published: 2025-07-15

Description (Chinese)

Oracle Java SE是美国甲骨文(Oracle)公司的一款用于开发和部署桌面、服务器以及嵌入设备和实时环境中的Java应用程序。 Oracle Java SE的Oracle Java SE、Oracle GraalVM for JDK和Oracle GraalVM Enterprise Edition存在安全漏洞,该漏洞源于攻击者可通过TLS网络访问进行攻击,可能导致数据未授权访问和修改。

Description (English)

Oracle Java SE is a section of Oracle, United States, for the development and deployment of desktops, servers and Java applications embedded in equipment and real-time environments. Oracle Java SE, Oracle GraalVM for JDK and Oracle GraalVM Enterprise Edition has a security loophole, which stems from attacks by attackers via the TLS network, which may lead to unauthorized data access and modification.

Hazard Level

High

Vulnerability Type

访问控制错误

Affected Vendor

OrangeHRM

Published

2025-07-15

Last Modified

2026-02-24

References

https://www.oracle.com/security-alerts/cpujul2025.html https://nvd.nist.gov/vuln/detail/CVE-2025-30754 https://access.redhat.com/security/cve/cve-2025-30754

Patch

https://www.oracle.com/security-alerts/cpujul2025.html

Share on: