CVE-2014-0387: Oracle JDK

High severity, CVSS 7.6. EPSS: 5.4% chance of exploitation in the next 30 days.

Unspecified vulnerability in Oracle Java SE 6u65 and Java SE 7u45, when running on Firefox, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Deployment.

Affected products

  • Oracle JDK: version 1.6.0 only
  • Oracle JRE: version 1.6.0 only; version 1.7.0 only

Published 2014-01-15. Last modified 2026-06-17.