All 15 CVE vulnerabilities found in GraalVM Enterprise Edition, with AI-generated Chinese analysis, references, and POCs.
GraalVM Enterprise Edition is a comprehensive enterprise-grade virtual machine and programming language runtime platform developed by Oracle, which is subject to various software vulnerability classifications. This page aggregates known security weaknesses affecting GraalVM Enterprise Edition, encompassing a wide range of Common Weakness Enumerations (CWEs) such as code injection, buffer overflows, and improper access control issues. The collected data spans historical records from initial releases up to the most recent updates, providing a longitudinal view of the product's security landscape as it evolved through different versions and patch cycles. Readers can utilize this resource to track vendor advisories and security bulletins issued by Oracle regarding specific flaws in the runtime environment. Additionally, users can gain a deeper understanding of specific weakness classes by examining how they manifest within the complex architecture of GraalVM components, including the JDK implementation and Truffle framework. The page also facilitates looking up a product's vulnerability history, allowing security teams to assess the frequency and severity of past incidents to inform their risk management strategies. By consolidating these details, the aggregation serves as a centralized reference point for analyzing the security posture of GraalVM Enterprise Edition over time, supporting informed decision-making for deployment and maintenance activities without relying on scattered or unstructured data sources.
Vendor: Oracle Corporation
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2024-20955 | Oracle部分产品安全漏洞 | 3.7 | Low | 2024-01-16 |
| CVE-2023-22091 | Oracle Java SE 安全漏洞 | 4.8 | Medium | 2023-10-17 |
| CVE-2023-22051 | Oracle Java SE 安全漏洞 | 3.7 | Low | 2023-07-18 |
| CVE-2023-21986 | Oracle Java SE 安全漏洞 | 5.7 | Medium | 2023-04-18 |
| CVE-2022-21597 | Oracle GraalVM 安全漏洞 | 5.3 | Medium | 2022-10-18 |
| CVE-2022-21634 | Oracle Java SE和Oracle GraalVM 安全漏洞 | 7.5 | High | 2022-10-18 |
| CVE-2020-14718 | Oracle GraalVM Enterprise Edition JVMCI组件安全漏洞 | 7.2 | High | 2020-07-15 |
| CVE-2020-2900 | Oracle GraalVM Enterprise Edition 安全漏洞 | 4.6 | - | 2020-04-15 |
| CVE-2020-2799 | Oracle GraalVM Enterprise Edition 安全漏洞 | 6.3 | - | 2020-04-15 |
| CVE-2020-2802 | Oracle GraalVM Enterprise Edition 安全漏洞 | 7.7 | - | 2020-04-15 |
| CVE-2020-2595 | Oracle GraalVM 安全漏洞 | 5.8 | - | 2020-01-15 |
| CVE-2020-2581 | Oracle GraalVM 安全漏洞 | 4.0 | - | 2020-01-15 |
| CVE-2019-2986 | Oracle GraalVM GraalVM Enterprise Edition组件安全漏洞 | 8.5 | - | 2019-10-16 |
| CVE-2019-2862 | Oracle GraalVM 访问控制错误漏洞 | 5.3 | - | 2019-07-23 |
| CVE-2019-2813 | Oracle GraalVM Enterprise Edition 访问控制错误漏洞 | 8.5 | - | 2019-07-23 |
All 15 known CVE vulnerabilities affecting GraalVM Enterprise Edition with full Chinese analysis, references, and POCs where available.