CVE-2025-30736

CVSS 3.1 Score 7.4 of 10 (high)

Details

Published Apr 15, 2025
Updated: Apr 21, 2025
CWE ID 284

Summary

CVE-2025-30736 is a vulnerability affecting the Java VM component in Oracle Database Server. Affected versions include 19.3-19.26, 21.3-21.17, and 23.4-23.7. This issue allows unauthenticated attackers with network access to potentially compromise the Java VM through multiple protocols. Successful exploitation could grant attackers unauthorized access to critical data or complete access to all Java VM accessible data, leading to data manipulation or unauthorized creation and deletion. The vulnerability has a CVSS Base Score of 7.4, indicating high severity for both confidentiality and integrity impacts.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share