CVE-2013-5844: Oracle Javafx

High severity, CVSS 9.3. EPSS: 3.6% chance of exploitation in the next 30 days.

Unspecified vulnerability in Oracle Java SE 7u40 and earlier and JavaFX 2.2.40 and earlier allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to JavaFX.

Affected products

  • Oracle Javafx: up to and including 2.2.40; version 2.0 only; version 2.0.2 only; version 2.0.3 only; version 2.1 only; version 2.2 only; …
  • Oracle JDK: up to and including 1.7.0; version 1.7.0 only
  • Oracle JRE: up to and including 1.7.0; version 1.7.0 only

Published 2013-10-16. Last modified 2026-06-16.