Skip to content
Noroxi

jython project records

2 published records for vendor jython project.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
1
With a fix record
100%
Median publish → KEV
No record has entered KEV

Records by year

  1. 17

Bar: total · dark part: CISA KEV.

Recurring classes

The weakness classes this vendor ships most often: where to look.

CWE

All records

2 records
  • Jython before 2.7.1rc1 allows attackers to execute arbitrary code via a crafted serialized PyFunction object.

    CriticalCVSS 9.8No exploitEPSS 6%

    jython project · jythonJul 6, 2017

  • CVE-2013-2027
    18Monitor

    Jython 2.2.1 uses the current umask to set the privileges of the class cache files, which allows local users to bypass intended access restr

    MediumCVSS 4.6No exploitEPSS 0%

    opensuse · opensuseFeb 13, 2015