CVE-2013-5838: Oracle JDK

High severity, CVSS 9.3. EPSS: 4.7% chance of exploitation in the next 30 days.

Unspecified vulnerability in Oracle Java SE 7u25 and earlier, and Java SE Embedded 7u25 and earlier, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Libraries.

Affected products

  • Oracle JDK: up to and including 1.7.0; version 1.7.0 only
  • Oracle JRE: up to and including 1.7.0; version 1.7.0 only

Published 2013-10-16. Last modified 2026-06-16.