Loading...
Loading...
Unspecified vulnerability in Oracle Java SE 5.0u55, 6u65, and 7u45; Java SE Embedded 7u45; and OpenJDK 7 allows remote attackers to affect integrity via vectors related to JAXP. NOTE: the previous information is from the January 2014 CPU. Oracle has not commented on third-party claims that the issue is related to an improper check for "code permissions when creating document builder factories."
January 15, 2014
April 29, 2026
See which npm, PyPI, Go, and Maven packages are affected by CVE-2014-0376
EchelonGraph automatically scans your cloud infrastructure and maps CVE exposure using blast radius analysis.