CVE-2013-2434: Oracle Javafx

High severity, CVSS 10.0. EPSS: 5.1% chance of exploitation in the next 30 days.

Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 17 and earlier and JavaFX 2.2.7 and earlier allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to 2D.

Affected products

  • Oracle Javafx: up to and including 2.2.7; version 2.0 only; version 2.0.2 only; version 2.0.3 only; version 2.1 only; version 2.2 only; …
  • Oracle JDK: up to and including 1.7.0; version 1.7.0 only
  • Oracle JRE: up to and including 1.7.0; version 1.7.0 only

Published 2013-04-17. Last modified 2026-06-16.