PT-2026-62246 · Openjfx+1 · Openjfx+1

CVE-2026-60164

·

Published

2026-07-21

·

Updated

2026-08-17

CVSS v3.1

3.1

Low

VectorAV:N/AC:H/PR:N/UI:R/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions Oracle Java SE version 8u491 openjfx versions prior to 17.0.20.0-1.1
Description An issue in the JavaFX component allows an unauthenticated attacker with network access to compromise the system. Successful exploitation requires human interaction and can result in unauthorized read access to a subset of accessible data. This affects deployments that load and run untrusted code, such as sandboxed Java Web Start applications or sandboxed Java applets, which rely on the Java sandbox for security. The Java sandbox is a security mechanism that limits the resources and operations a Java application can perform to prevent malicious code from damaging the host system.
Recommendations Update Oracle Java SE to a version newer than 8u491. Update openjfx to version 17.0.20.0-1.1.

Fix

DoS

Protection Mechanism Failure

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BIT-JAVA-2026-60164
BIT-JAVA-MIN-2026-60164
BIT-JRE-2026-60164
CVE-2026-60164
OPENSUSE-SU-2026:11368-1

Affected Products

Java Se
Openjfx