Search CVE reports


Toggle filters

1 – 10 of 16 results


CVE-2026-34282

Medium priority

Some fixes available 36 of 37

Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Networking). Supported versions that are affected are Oracle Java SE: 8u481-perf, 11.0.30,...

13 affected packages

openjdk-8, openjdk-9, openjdk-lts, openjdk-13, openjdk-16...

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
openjdk-8 Fixed Fixed Fixed Fixed Fixed
openjdk-9 Not in release Not in release Not in release
openjdk-lts Fixed Fixed Fixed Fixed Fixed
openjdk-13 Not in release Not in release Not in release Ignored
openjdk-16 Not in release Not in release Not in release Ignored
openjdk-17 Fixed Fixed Fixed Fixed Fixed
openjdk-17-crac Fixed Not in release Not in release
openjdk-18 Not in release Not in release Ignored
openjdk-21 Fixed Fixed Fixed Fixed
openjdk-21-crac Fixed Not in release Not in release
openjdk-25 Fixed Fixed Fixed
openjdk-25-crac Fixed Not in release Not in release
openjdk-26 Fixed Not in release Not in release
Show all 13 packages Show less packages

CVE-2026-34268

Medium priority

Some fixes available 36 of 37

Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Security). Supported versions that are affected are Oracle Java SE: 8u481, 8u481-b50, 8u481-perf,...

13 affected packages

openjdk-8, openjdk-9, openjdk-lts, openjdk-13, openjdk-16...

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
openjdk-8 Fixed Fixed Fixed Fixed Fixed
openjdk-9 Not in release Not in release Not in release
openjdk-lts Fixed Fixed Fixed Fixed Fixed
openjdk-13 Not in release Not in release Not in release Ignored
openjdk-16 Not in release Not in release Not in release Ignored
openjdk-17 Fixed Fixed Fixed Fixed Fixed
openjdk-17-crac Fixed Not in release Not in release
openjdk-18 Not in release Not in release Ignored
openjdk-21 Fixed Fixed Fixed Fixed
openjdk-21-crac Fixed Not in release Not in release
openjdk-25 Fixed Fixed Fixed
openjdk-25-crac Fixed Not in release Not in release
openjdk-26 Fixed Not in release Not in release
Show all 13 packages Show less packages

CVE-2026-22021

Medium priority

Some fixes available 36 of 37

Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JSSE). Supported versions that are affected are Oracle Java SE: 8u481, 8u481-b50, 8u481-perf,...

13 affected packages

openjdk-8, openjdk-9, openjdk-lts, openjdk-13, openjdk-16...

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
openjdk-8 Fixed Fixed Fixed Fixed Fixed
openjdk-9 Not in release Not in release Not in release
openjdk-lts Fixed Fixed Fixed Fixed Fixed
openjdk-13 Not in release Not in release Not in release Ignored
openjdk-16 Not in release Not in release Not in release Ignored
openjdk-17 Fixed Fixed Fixed Fixed Fixed
openjdk-17-crac Fixed Not in release Not in release
openjdk-18 Not in release Not in release Ignored
openjdk-21 Fixed Fixed Fixed Fixed
openjdk-21-crac Fixed Not in release Not in release
openjdk-25 Fixed Fixed Fixed
openjdk-25-crac Fixed Not in release Not in release
openjdk-26 Fixed Not in release Not in release
Show all 13 packages Show less packages

CVE-2026-22018

Medium priority

Some fixes available 36 of 37

Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Libraries). Supported versions that are affected are Oracle Java SE: 8u481,...

13 affected packages

openjdk-8, openjdk-9, openjdk-lts, openjdk-13, openjdk-16...

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
openjdk-8 Fixed Fixed Fixed Fixed Fixed
openjdk-9 Not in release Not in release Not in release
openjdk-lts Fixed Fixed Fixed Fixed Fixed
openjdk-13 Not in release Not in release Not in release Ignored
openjdk-16 Not in release Not in release Not in release Ignored
openjdk-17 Fixed Fixed Fixed Fixed Fixed
openjdk-17-crac Fixed Not in release Not in release
openjdk-18 Not in release Not in release Ignored
openjdk-21 Fixed Fixed Fixed Fixed
openjdk-21-crac Fixed Not in release Not in release
openjdk-25 Fixed Fixed Fixed
openjdk-25-crac Fixed Not in release Not in release
openjdk-26 Fixed Not in release Not in release
Show all 13 packages Show less packages

CVE-2026-22016

Medium priority

Some fixes available 36 of 37

Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JAXP). Supported versions that are affected are Oracle Java SE: 8u481, 8u481-b50, 8u481-perf,...

13 affected packages

openjdk-8, openjdk-9, openjdk-lts, openjdk-13, openjdk-16...

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
openjdk-8 Fixed Fixed Fixed Fixed Fixed
openjdk-9 Not in release Not in release Not in release
openjdk-lts Fixed Fixed Fixed Fixed Fixed
openjdk-13 Not in release Not in release Not in release Ignored
openjdk-16 Not in release Not in release Not in release Ignored
openjdk-17 Fixed Fixed Fixed Fixed Fixed
openjdk-17-crac Fixed Not in release Not in release
openjdk-18 Not in release Not in release Ignored
openjdk-21 Fixed Fixed Fixed Fixed
openjdk-21-crac Fixed Not in release Not in release
openjdk-25 Fixed Fixed Fixed
openjdk-25-crac Fixed Not in release Not in release
openjdk-26 Fixed Not in release Not in release
Show all 13 packages Show less packages

CVE-2026-22013

Medium priority

Some fixes available 36 of 37

Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JGSS). Supported versions that are affected are Oracle Java SE: 8u481, 8u481-b50, 8u481-perf,...

13 affected packages

openjdk-8, openjdk-9, openjdk-lts, openjdk-13, openjdk-16...

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
openjdk-8 Fixed Fixed Fixed Fixed Fixed
openjdk-9 Not in release Not in release Not in release
openjdk-lts Fixed Fixed Fixed Fixed Fixed
openjdk-13 Not in release Not in release Not in release Ignored
openjdk-16 Not in release Not in release Not in release Ignored
openjdk-17 Fixed Fixed Fixed Fixed Fixed
openjdk-17-crac Fixed Not in release Not in release
openjdk-18 Not in release Not in release Ignored
openjdk-21 Fixed Fixed Fixed Fixed
openjdk-21-crac Fixed Not in release Not in release
openjdk-25 Fixed Fixed Fixed
openjdk-25-crac Fixed Not in release Not in release
openjdk-26 Fixed Not in release Not in release
Show all 13 packages Show less packages

CVE-2026-22008

Medium priority

Some fixes available 8 of 37

Vulnerability in Oracle Java SE (component: Libraries). The supported version that is affected is Oracle Java SE: 25.0.1. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple...

13 affected packages

openjdk-8, openjdk-9, openjdk-lts, openjdk-13, openjdk-16...

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
openjdk-8 Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
openjdk-9 Not in release Not in release Not in release
openjdk-lts Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
openjdk-13 Not in release Not in release Not in release Ignored
openjdk-16 Not in release Not in release Not in release Ignored
openjdk-17 Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
openjdk-17-crac Needs evaluation Not in release Not in release
openjdk-18 Not in release Not in release Ignored
openjdk-21 Needs evaluation Needs evaluation Needs evaluation Needs evaluation
openjdk-21-crac Needs evaluation Not in release Not in release
openjdk-25 Fixed Fixed Fixed
openjdk-25-crac Fixed Not in release Not in release
openjdk-26 Fixed Not in release Not in release
Show all 13 packages Show less packages

CVE-2026-22007

Medium priority

Some fixes available 36 of 37

Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Security). Supported versions that are affected are Oracle Java SE: 8u481, 8u481-b50, 8u481-perf,...

13 affected packages

openjdk-8, openjdk-9, openjdk-lts, openjdk-13, openjdk-16...

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
openjdk-8 Fixed Fixed Fixed Fixed Fixed
openjdk-9 Not in release Not in release Not in release
openjdk-lts Fixed Fixed Fixed Fixed Fixed
openjdk-13 Not in release Not in release Not in release Ignored
openjdk-16 Not in release Not in release Not in release Ignored
openjdk-17 Fixed Fixed Fixed Fixed Fixed
openjdk-17-crac Fixed Not in release Not in release
openjdk-18 Not in release Not in release Ignored
openjdk-21 Fixed Fixed Fixed Fixed
openjdk-21-crac Fixed Not in release Not in release
openjdk-25 Fixed Fixed Fixed
openjdk-25-crac Fixed Not in release Not in release
openjdk-26 Fixed Not in release Not in release
Show all 13 packages Show less packages

CVE-2026-23865

Medium priority

Some fixes available 38 of 39

An integer overflow in the tt_var_load_item_variation_store function of the Freetype library in versions 2.13.2 and 2.13.3 may allow for an out of bounds read operation when parsing HVAR/VVAR/MVAR tables in OpenType variable...

14 affected packages

freetype, openjdk-17, openjdk-17-crac, openjdk-21, openjdk-21-crac...

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
freetype Not affected Fixed Not affected Not affected Not affected
openjdk-17 Fixed Fixed Fixed Fixed Fixed
openjdk-17-crac Fixed Not in release Not in release
openjdk-21 Fixed Fixed Fixed Fixed
openjdk-21-crac Fixed Not in release Not in release
openjdk-25 Fixed Fixed Fixed
openjdk-8 Fixed Fixed Fixed Fixed Fixed
openjdk-lts Fixed Fixed Fixed Fixed Fixed
openjdk-25-crac Fixed Not in release Not in release
openjdk-26 Fixed Not in release Not in release
openjdk-9 Not in release Not in release Not in release
openjdk-13 Not in release Not in release Not in release Ignored
openjdk-16 Not in release Not in release Not in release Ignored
openjdk-18 Not in release Not in release Ignored
Show all 14 packages Show less packages

CVE-2026-21945

Medium priority

Some fixes available 33 of 35

Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Security). Supported versions that are affected are Oracle Java SE: 8u471, 8u471-b50, 8u471-perf,...

12 affected packages

openjdk-8, openjdk-9, openjdk-lts, openjdk-13, openjdk-16...

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
openjdk-8 Fixed Fixed Fixed Fixed Fixed
openjdk-9 Not in release Not in release Not in release
openjdk-lts Fixed Fixed Fixed Fixed Fixed
openjdk-13 Not in release Not in release Not in release Ignored
openjdk-16 Not in release Not in release Not in release Ignored
openjdk-17 Fixed Fixed Fixed Fixed Fixed
openjdk-17-crac Fixed Not in release Not in release
openjdk-18 Not in release Not in release Ignored
openjdk-21 Vulnerable Fixed Fixed Fixed
openjdk-21-crac Fixed Not in release Not in release
openjdk-25 Fixed Fixed Fixed
openjdk-25-crac Fixed Not in release Not in release
Show all 12 packages Show less packages