From andrew.gross at oracle.com Tue Jul 15 17:58:56 2025 From: andrew.gross at oracle.com (Andrew H. Gross) Date: Tue, 15 Jul 2025 10:58:56 -0700 Subject: OpenJDK Vulnerability Advisory: 2025/07/15 Message-ID: <5b96c782-f8a0-4ce2-9ca2-2dca8bcd47c6@oracle.com> OpenJDK Vulnerability Advisory: 2025/07/15 vuln-report at openjdk.org https://openjdk.org/groups/vulnerability/advisories Releases affected: 8, 11, 17, 21, and 24 OpenJDK CVEs: ??? CVE-2025-30749? CVE-2025-30754? CVE-2025-30761? CVE-2025-50059 ??? CVE-2025-50106 OpenJFX CVEs: ??? CVE-2025-24855? CVE-2025-27113 Please note that defense-in-depth issues are not assigned CVEs. These issues have been addressed, as applicable, in the following releases: ? 8u462, 11.0.28, 17.0.16, 21.0.8, and 24.0.2 We recommend that you upgrade to these new releases as soon as possible. For more detail about this advisory, please see: ? https://openjdk.org/groups/vulnerability/advisories/2025-07-15 -------------- next part -------------- A non-text attachment was scrubbed... Name: OpenPGP_0x27F209491C0FE9C1.asc Type: application/pgp-keys Size: 4134 bytes Desc: OpenPGP public key URL: -------------- next part -------------- A non-text attachment was scrubbed... Name: OpenPGP_signature.asc Type: application/pgp-signature Size: 840 bytes Desc: OpenPGP digital signature URL: