CVE-2018-1417: IBM Java SDK

High severity, CVSS 8.1. EPSS: 2.1% chance of exploitation in the next 30 days.

Under certain circumstances, a flaw in the J9 JVM (IBM SDK, Java Technology Edition 7.1 and 8.0) allows untrusted code running under a security manager to elevate its privileges. IBM X-Force ID: 138823.

Affected products

  • IBM Java SDK: version 6.0.0.0 only; version 6.1.0.0 only; version 7.0.0.0 only; version 7.1.0.0 only; version 8.0.0.0 only

Published 2018-02-22. Last modified 2026-06-17.