PT-2026-62248 · Oracle · Java Se

CVE-2026-60166

·

Published

2026-07-21

·

Updated

2026-08-17

CVSS v3.1

3.1

Low

VectorAV:N/AC:H/PR:N/UI:R/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions Oracle Java SE version 8u491
Description An issue in the JavaFX component allows an unauthenticated attacker with network access via multiple protocols to compromise the system. Successful exploitation requires human interaction and can result in unauthorized read access to a subset of accessible data. This issue specifically affects Java deployments that load and run untrusted code, such as sandboxed Java Web Start applications or sandboxed Java applets, which rely on the Java sandbox for security.
Recommendations Update Oracle Java SE version 8u491 to a patched version.

Fix

DoS

Protection Mechanism Failure

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BIT-JAVA-2026-60166
BIT-JAVA-MIN-2026-60166
BIT-JRE-2026-60166
CVE-2026-60166
OPENSUSE-SU-2026:11368-1

Affected Products

Java Se