CVE-2013-0437: Oracle Javafx

High severity, CVSS 10.0. EPSS: 5.9% chance of exploitation in the next 30 days.

Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 through Update 11 and JavaFX 2.2.4 and earlier allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to 2D.

Affected products

  • Oracle Javafx: up to and including 2.2.4; version 2.0 only; version 2.0.2 only; version 2.0.3 only; version 2.1 only; version 2.2 only; …
  • Oracle JDK: version 1.7.0 only
  • Oracle JRE: version 1.7.0 only

Published 2013-02-02. Last modified 2026-06-16.