CVE-2022-21624
Published Oct 18, 2022
·Updated
An unspecified vulnerability in Java SE related to the Security component could allow an unauthenticated attacker to update, insert or delete data resulting in a low integrity impact using unknown attack vectors.
Affected Software
35 affected componentsFixes available
Oracle GraalVM=20.3.7
Oracle GraalVM=21.3.3
Oracle GraalVM=22.2.0
Oracle JDK=1.8.0-update341
Oracle JDK=1.8.0-update345
Oracle JDK=11.0.16.1
Oracle JDK=17.0.4.1
Oracle JDK=19
Oracle JRE=1.8.0-update341
Oracle JRE=1.8.0-update345
Oracle JRE=11.0.16.1
Oracle JRE=17.0.4.1
Oracle JRE=19
Fedoraproject Fedora=35
Fedoraproject Fedora=36
NetApp 7-Mode Transition Tool
NetApp Cloud Insights Acquisition Unit
NetApp Cloud Secure Agent
NetApp E-Series SANtricity OS Controller>=11.0<=11.70.2
NetApp E-series Santricity Storage Manager
NetApp E-series Santricity Unified Manager
NetApp OnCommand Insight
NetApp OnCommand Workflow Automation
NetApp Santricity Storage Plugin Vcenter
NetApp SANtricity Web Services Proxy
Azul Zulu=6.49
Azul Zulu=7.56
Azul Zulu=8.64
Azul Zulu=11.58
Azul Zulu=13.50
Azul Zulu=15.42
Azul Zulu=17.36
Azul Zulu=19.28
Microsoft cm1 openjdk8 1.8.0.332-2
IBM DB2 Recovery Expert for LUW<=5.5 IF 2
Remediation
Patch Available
Event History
Oct 18, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionSeverityWeakness
Oct 1, 2025
Data Sourced
via Microsoft·11:11 PM
DescriptionSeverityWeakness
Data Sourced
via Microsoft·11:11 PM
Affected Software
Updated
via Microsoft·11:11 PM
DescriptionSeverity
Feb 5, 2026
Data Sourced
via IBM·12:00 AM
DescriptionAffected Software
Frequently Asked Questions
1
What is CVE-2022-21624?
CVE-2022-21624 is an unspecified vulnerability in Java SE related to the Security component.
2
Which products are affected by CVE-2022-21624?
Oracle Java SE versions 8u341, 8u345-perf, 11.0.16.1, 17.0.4.1, and 19 are affected. Oracle GraalVM Enterprise Edition versions 20.3.7, 21.3.3, and 22.2.0 are also affected.
3
How severe is CVE-2022-21624?
CVE-2022-21624 has a severity rating of 3.7 (low).
4
Is CVE-2022-21624 difficult to exploit?
Yes, CVE-2022-21624 is difficult to exploit.
5
Where can I find more information about CVE-2022-21624?
You can find more information about CVE-2022-21624 in the references section of the vulnerability report.