jython project records
2 published records for vendor jython project.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 1
- With a fix record
- 100%
- Median publish → KEV
- No record has entered KEV
All records
2 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
41Plan | CVE-2016-4000No exploit | Jython before 2.7.1rc1 allows attackers to execute arbitrary code via a crafted serialized PyFunction object.jython project · jython · CWE-502 | Critical9.8 | — | 6.2% | Jul 6, 2017 |
18Monitor | CVE-2013-2027No exploit | Jython 2.2.1 uses the current umask to set the privileges of the class cache files, which allows local users to bypass intended access restropensuse · opensuse · CWE-264 | Medium4.6 | — | 0.4% | Feb 13, 2015 |
- CVE-2016-400041Plan
Jython before 2.7.1rc1 allows attackers to execute arbitrary code via a crafted serialized PyFunction object.
CriticalCVSS 9.8No exploitEPSS 6%jython project · jythonJul 6, 2017
- CVE-2013-202718Monitor
Jython 2.2.1 uses the current umask to set the privileges of the class cache files, which allows local users to bypass intended access restr
MediumCVSS 4.6No exploitEPSS 0%opensuse · opensuseFeb 13, 2015