Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-15478
HistoryJan 24, 2022 - 12:00 a.m.

Oracle GraalVM Input Validation Error Vulnerability

2022-01-2400:00:00
China National Vulnerability Database
www.cnvd.org.cn
11

0.001 Low

EPSS

Percentile

50.0%

Oracle GraalVM is a set of on-the-fly compilers written in the Java language from Oracle Corporation (USA).GraalVM Enterprise Edition is the enterprise version of GraalVM.An input validation error vulnerability exists in Oracle GraalVM due to an Oracle GraalVM Enterprise Edition has incorrect input validation in the serialization component. A remote, unauthenticated attacker could exploit this vulnerability to manipulate data.