[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"repo-stars":3,"vuln-RHSA-2025:3990":6},{"stargazers_count":4,"fetched_at":5},7,"2026-06-05T14:55:33.319Z",{"id":7,"descriptions":8,"cisa":9,"weaknesses":10,"exploits":11,"aliases":12,"duplicate_of":9,"upstream":13,"downstream":18,"duplicates":19,"related":20,"reserved_at":9,"published_at":21,"modified_at":22,"state":9,"summary":23,"references_raw":25,"kevs":158,"epss":9,"epss_history":159,"metrics":160,"affected":167},"RHSA-2025:3990","Red Hat Security Advisory: Red Hat JBoss Enterprise Application Platform 8.0.7 security update",null,[],[],[],[14,16],{"_key":15},"CVE-2024-12369",{"_key":17},"CVE-2025-23367",[],[],[],"2025-12-06T10:04:52Z","2026-05-01T10:36:14.374359Z",{"cisa_kev":24,"cisa_ransomware":24,"cisa_vendor":9,"epss_severity":9,"epss_score":9,"severity":9,"severity_score":9,"severity_version":9,"severity_source":9,"severity_vector":9,"severity_status":9},false,[26,32,37,41,45,50,54,58,62,66,70,74,78,82,86,90,94,98,102,106,110,114,118,122,126,130,134,138,142,146,150,154],{"url":27,"sources":28,"tags":30},"https://access.redhat.com/errata/RHSA-2025:3990",[29],"osv_red_hat",[31],"Advisory",{"url":33,"sources":34,"tags":35},"https://access.redhat.com/security/updates/classification/#moderate",[29],[36],"ARTICLE",{"url":38,"sources":39,"tags":40},"https://docs.redhat.com/en/documentation/red_hat_jboss_enterprise_application_platform/8.0",[29],[36],{"url":42,"sources":43,"tags":44},"https://access.redhat.com/articles/7114917",[29],[36],{"url":46,"sources":47,"tags":48},"https://bugzilla.redhat.com/show_bug.cgi?id=2331178",[29],[49],"REPORT",{"url":51,"sources":52,"tags":53},"https://bugzilla.redhat.com/show_bug.cgi?id=2337620",[29],[49],{"url":55,"sources":56,"tags":57},"https://issues.redhat.com/browse/JBEAP-28383",[29],[36],{"url":59,"sources":60,"tags":61},"https://issues.redhat.com/browse/JBEAP-28663",[29],[36],{"url":63,"sources":64,"tags":65},"https://issues.redhat.com/browse/JBEAP-28842",[29],[36],{"url":67,"sources":68,"tags":69},"https://issues.redhat.com/browse/JBEAP-28846",[29],[36],{"url":71,"sources":72,"tags":73},"https://issues.redhat.com/browse/JBEAP-28847",[29],[36],{"url":75,"sources":76,"tags":77},"https://issues.redhat.com/browse/JBEAP-28900",[29],[36],{"url":79,"sources":80,"tags":81},"https://issues.redhat.com/browse/JBEAP-28902",[29],[36],{"url":83,"sources":84,"tags":85},"https://issues.redhat.com/browse/JBEAP-28961",[29],[36],{"url":87,"sources":88,"tags":89},"https://issues.redhat.com/browse/JBEAP-28990",[29],[36],{"url":91,"sources":92,"tags":93},"https://issues.redhat.com/browse/JBEAP-29232",[29],[36],{"url":95,"sources":96,"tags":97},"https://issues.redhat.com/browse/JBEAP-29439",[29],[36],{"url":99,"sources":100,"tags":101},"https://issues.redhat.com/browse/JBEAP-29445",[29],[36],{"url":103,"sources":104,"tags":105},"https://issues.redhat.com/browse/JBEAP-29483",[29],[36],{"url":107,"sources":108,"tags":109},"https://issues.redhat.com/browse/JBEAP-29555",[29],[36],{"url":111,"sources":112,"tags":113},"https://security.access.redhat.com/data/csaf/v2/advisories/2025/rhsa-2025_3990.json",[29],[31],{"url":115,"sources":116,"tags":117},"https://access.redhat.com/security/cve/CVE-2024-12369",[29],[49],{"url":119,"sources":120,"tags":121},"https://www.cve.org/CVERecord?id=CVE-2024-12369",[29],[31],{"url":123,"sources":124,"tags":125},"https://nvd.nist.gov/vuln/detail/CVE-2024-12369",[29],[31],{"url":127,"sources":128,"tags":129},"https://github.com/wildfly-security/wildfly-elytron/commit/5ac5e6bbcba58883b3cebb2ddbcec4de140c5ceb",[29],[36],{"url":131,"sources":132,"tags":133},"https://github.com/wildfly-security/wildfly-elytron/commit/d7754f5a6a91ceb0f4dbbbfe301991f6a55404cb",[29],[36],{"url":135,"sources":136,"tags":137},"https://github.com/wildfly-security/wildfly-elytron/pull/2253",[29],[36],{"url":139,"sources":140,"tags":141},"https://github.com/wildfly-security/wildfly-elytron/pull/2261",[29],[36],{"url":143,"sources":144,"tags":145},"https://access.redhat.com/security/cve/CVE-2025-23367",[29],[49],{"url":147,"sources":148,"tags":149},"https://www.cve.org/CVERecord?id=CVE-2025-23367",[29],[31],{"url":151,"sources":152,"tags":153},"https://nvd.nist.gov/vuln/detail/CVE-2025-23367",[29],[31],{"url":155,"sources":156,"tags":157},"https://github.com/advisories/GHSA-qr6x-62gq-4ccp",[29],[31],[],[],[161],{"source":29,"cvss_v2_0":9,"cvss_v3_0":9,"cvss_v3_1":162,"cvss_v4_0":9},{"baseScore":163,"baseSeverity":9,"vectorString":164,"impactScore":165,"exploitabilityScore":166},6.5,"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H",6,7.2,[168,180,186,190,194,198,202,206,212,216,222,226,230,236,240,244,248,252,256,260,264,268,274,280,286,292,298,302,306,310,314,318,322,328,334,338,342,346,350],{"ecosystem":169,"name":170,"vendor":171,"product":170,"cpe_part":9,"purl_type":172,"purl_namespace":171,"purl_name":170,"source":9,"versions":173},"Red Hat","eap8-apache-commons-io","redhat","rpm",[174],{"version":175,"is_range":176,"range_type":177,"version_start":9,"version_start_type":9,"version_end":178,"version_end_type":179,"fixed_in":9},"lt0:2_16_1_1_redhat_00001_1_el9eap",true,"ecosystem","0:2.16.1-1.redhat_00001.1.el9eap","excluding",{"ecosystem":169,"name":181,"vendor":171,"product":181,"cpe_part":9,"purl_type":172,"purl_namespace":171,"purl_name":181,"source":9,"versions":182},"eap8-bouncycastle",[183],{"version":184,"is_range":176,"range_type":177,"version_start":9,"version_start_type":9,"version_end":185,"version_end_type":179,"fixed_in":9},"lt0:1_80_0_1_redhat_00001_1_el9eap","0:1.80.0-1.redhat_00001.1.el9eap",{"ecosystem":169,"name":187,"vendor":171,"product":187,"cpe_part":9,"purl_type":172,"purl_namespace":171,"purl_name":187,"source":9,"versions":188},"eap8-bouncycastle-jmail",[189],{"version":184,"is_range":176,"range_type":177,"version_start":9,"version_start_type":9,"version_end":185,"version_end_type":179,"fixed_in":9},{"ecosystem":169,"name":191,"vendor":171,"product":191,"cpe_part":9,"purl_type":172,"purl_namespace":171,"purl_name":191,"source":9,"versions":192},"eap8-bouncycastle-pg",[193],{"version":184,"is_range":176,"range_type":177,"version_start":9,"version_start_type":9,"version_end":185,"version_end_type":179,"fixed_in":9},{"ecosystem":169,"name":195,"vendor":171,"product":195,"cpe_part":9,"purl_type":172,"purl_namespace":171,"purl_name":195,"source":9,"versions":196},"eap8-bouncycastle-pkix",[197],{"version":184,"is_range":176,"range_type":177,"version_start":9,"version_start_type":9,"version_end":185,"version_end_type":179,"fixed_in":9},{"ecosystem":169,"name":199,"vendor":171,"product":199,"cpe_part":9,"purl_type":172,"purl_namespace":171,"purl_name":199,"source":9,"versions":200},"eap8-bouncycastle-prov",[201],{"version":184,"is_range":176,"range_type":177,"version_start":9,"version_start_type":9,"version_end":185,"version_end_type":179,"fixed_in":9},{"ecosystem":169,"name":203,"vendor":171,"product":203,"cpe_part":9,"purl_type":172,"purl_namespace":171,"purl_name":203,"source":9,"versions":204},"eap8-bouncycastle-util",[205],{"version":184,"is_range":176,"range_type":177,"version_start":9,"version_start_type":9,"version_end":185,"version_end_type":179,"fixed_in":9},{"ecosystem":169,"name":207,"vendor":171,"product":207,"cpe_part":9,"purl_type":172,"purl_namespace":171,"purl_name":207,"source":9,"versions":208},"eap8-eap-product-conf-parent",[209],{"version":210,"is_range":176,"range_type":177,"version_start":9,"version_start_type":9,"version_end":211,"version_end_type":179,"fixed_in":9},"lt0:800_7_0_2_GA_redhat_00002_1_el9eap","0:800.7.0-2.GA_redhat_00002.1.el9eap",{"ecosystem":169,"name":213,"vendor":171,"product":213,"cpe_part":9,"purl_type":172,"purl_namespace":171,"purl_name":213,"source":9,"versions":214},"eap8-eap-product-conf-wildfly-ee-feature-pack",[215],{"version":210,"is_range":176,"range_type":177,"version_start":9,"version_start_type":9,"version_end":211,"version_end_type":179,"fixed_in":9},{"ecosystem":169,"name":217,"vendor":171,"product":217,"cpe_part":9,"purl_type":172,"purl_namespace":171,"purl_name":217,"source":9,"versions":218},"eap8-hibernate",[219],{"version":220,"is_range":176,"range_type":177,"version_start":9,"version_start_type":9,"version_end":221,"version_end_type":179,"fixed_in":9},"lt0:6_2_35_1_Final_redhat_00001_1_el9eap","0:6.2.35-1.Final_redhat_00001.1.el9eap",{"ecosystem":169,"name":223,"vendor":171,"product":223,"cpe_part":9,"purl_type":172,"purl_namespace":171,"purl_name":223,"source":9,"versions":224},"eap8-hibernate-core",[225],{"version":220,"is_range":176,"range_type":177,"version_start":9,"version_start_type":9,"version_end":221,"version_end_type":179,"fixed_in":9},{"ecosystem":169,"name":227,"vendor":171,"product":227,"cpe_part":9,"purl_type":172,"purl_namespace":171,"purl_name":227,"source":9,"versions":228},"eap8-hibernate-envers",[229],{"version":220,"is_range":176,"range_type":177,"version_start":9,"version_start_type":9,"version_end":221,"version_end_type":179,"fixed_in":9},{"ecosystem":169,"name":231,"vendor":171,"product":231,"cpe_part":9,"purl_type":172,"purl_namespace":171,"purl_name":231,"source":9,"versions":232},"eap8-ironjacamar",[233],{"version":234,"is_range":176,"range_type":177,"version_start":9,"version_start_type":9,"version_end":235,"version_end_type":179,"fixed_in":9},"lt0:3_0_13_1_Final_redhat_00001_1_el9eap","0:3.0.13-1.Final_redhat_00001.1.el9eap",{"ecosystem":169,"name":237,"vendor":171,"product":237,"cpe_part":9,"purl_type":172,"purl_namespace":171,"purl_name":237,"source":9,"versions":238},"eap8-ironjacamar-common-api",[239],{"version":234,"is_range":176,"range_type":177,"version_start":9,"version_start_type":9,"version_end":235,"version_end_type":179,"fixed_in":9},{"ecosystem":169,"name":241,"vendor":171,"product":241,"cpe_part":9,"purl_type":172,"purl_namespace":171,"purl_name":241,"source":9,"versions":242},"eap8-ironjacamar-common-impl",[243],{"version":234,"is_range":176,"range_type":177,"version_start":9,"version_start_type":9,"version_end":235,"version_end_type":179,"fixed_in":9},{"ecosystem":169,"name":245,"vendor":171,"product":245,"cpe_part":9,"purl_type":172,"purl_namespace":171,"purl_name":245,"source":9,"versions":246},"eap8-ironjacamar-common-spi",[247],{"version":234,"is_range":176,"range_type":177,"version_start":9,"version_start_type":9,"version_end":235,"version_end_type":179,"fixed_in":9},{"ecosystem":169,"name":249,"vendor":171,"product":249,"cpe_part":9,"purl_type":172,"purl_namespace":171,"purl_name":249,"source":9,"versions":250},"eap8-ironjacamar-core-api",[251],{"version":234,"is_range":176,"range_type":177,"version_start":9,"version_start_type":9,"version_end":235,"version_end_type":179,"fixed_in":9},{"ecosystem":169,"name":253,"vendor":171,"product":253,"cpe_part":9,"purl_type":172,"purl_namespace":171,"purl_name":253,"source":9,"versions":254},"eap8-ironjacamar-core-impl",[255],{"version":234,"is_range":176,"range_type":177,"version_start":9,"version_start_type":9,"version_end":235,"version_end_type":179,"fixed_in":9},{"ecosystem":169,"name":257,"vendor":171,"product":257,"cpe_part":9,"purl_type":172,"purl_namespace":171,"purl_name":257,"source":9,"versions":258},"eap8-ironjacamar-deployers-common",[259],{"version":234,"is_range":176,"range_type":177,"version_start":9,"version_start_type":9,"version_end":235,"version_end_type":179,"fixed_in":9},{"ecosystem":169,"name":261,"vendor":171,"product":261,"cpe_part":9,"purl_type":172,"purl_namespace":171,"purl_name":261,"source":9,"versions":262},"eap8-ironjacamar-jdbc",[263],{"version":234,"is_range":176,"range_type":177,"version_start":9,"version_start_type":9,"version_end":235,"version_end_type":179,"fixed_in":9},{"ecosystem":169,"name":265,"vendor":171,"product":265,"cpe_part":9,"purl_type":172,"purl_namespace":171,"purl_name":265,"source":9,"versions":266},"eap8-ironjacamar-validator",[267],{"version":234,"is_range":176,"range_type":177,"version_start":9,"version_start_type":9,"version_end":235,"version_end_type":179,"fixed_in":9},{"ecosystem":169,"name":269,"vendor":171,"product":269,"cpe_part":9,"purl_type":172,"purl_namespace":171,"purl_name":269,"source":9,"versions":270},"eap8-jakarta-enterprise-concurrent",[271],{"version":272,"is_range":176,"range_type":177,"version_start":9,"version_start_type":9,"version_end":273,"version_end_type":179,"fixed_in":9},"lt0:3_0_1_1_redhat_00001_1_el9eap","0:3.0.1-1.redhat_00001.1.el9eap",{"ecosystem":169,"name":275,"vendor":171,"product":275,"cpe_part":9,"purl_type":172,"purl_namespace":171,"purl_name":275,"source":9,"versions":276},"eap8-jsf-impl",[277],{"version":278,"is_range":176,"range_type":177,"version_start":9,"version_start_type":9,"version_end":279,"version_end_type":179,"fixed_in":9},"lt0:4_0_11_1_redhat_00001_1_el9eap","0:4.0.11-1.redhat_00001.1.el9eap",{"ecosystem":169,"name":281,"vendor":171,"product":281,"cpe_part":9,"purl_type":172,"purl_namespace":171,"purl_name":281,"source":9,"versions":282},"eap8-reactive-streams",[283],{"version":284,"is_range":176,"range_type":177,"version_start":9,"version_start_type":9,"version_end":285,"version_end_type":179,"fixed_in":9},"lt0:1_0_4_3_redhat_00004_1_el9eap","0:1.0.4-3.redhat_00004.1.el9eap",{"ecosystem":169,"name":287,"vendor":171,"product":287,"cpe_part":9,"purl_type":172,"purl_namespace":171,"purl_name":287,"source":9,"versions":288},"eap8-reactivex-rxjava",[289],{"version":290,"is_range":176,"range_type":177,"version_start":9,"version_start_type":9,"version_end":291,"version_end_type":179,"fixed_in":9},"lt0:3_1_10_1_redhat_00001_1_el9eap","0:3.1.10-1.redhat_00001.1.el9eap",{"ecosystem":169,"name":293,"vendor":171,"product":293,"cpe_part":9,"purl_type":172,"purl_namespace":171,"purl_name":293,"source":9,"versions":294},"eap8-weld-core",[295],{"version":296,"is_range":176,"range_type":177,"version_start":9,"version_start_type":9,"version_end":297,"version_end_type":179,"fixed_in":9},"lt0:5_1_5_1_Final_redhat_00001_1_el9eap","0:5.1.5-1.Final_redhat_00001.1.el9eap",{"ecosystem":169,"name":299,"vendor":171,"product":299,"cpe_part":9,"purl_type":172,"purl_namespace":171,"purl_name":299,"source":9,"versions":300},"eap8-weld-core-impl",[301],{"version":296,"is_range":176,"range_type":177,"version_start":9,"version_start_type":9,"version_end":297,"version_end_type":179,"fixed_in":9},{"ecosystem":169,"name":303,"vendor":171,"product":303,"cpe_part":9,"purl_type":172,"purl_namespace":171,"purl_name":303,"source":9,"versions":304},"eap8-weld-core-jsf",[305],{"version":296,"is_range":176,"range_type":177,"version_start":9,"version_start_type":9,"version_end":297,"version_end_type":179,"fixed_in":9},{"ecosystem":169,"name":307,"vendor":171,"product":307,"cpe_part":9,"purl_type":172,"purl_namespace":171,"purl_name":307,"source":9,"versions":308},"eap8-weld-ejb",[309],{"version":296,"is_range":176,"range_type":177,"version_start":9,"version_start_type":9,"version_end":297,"version_end_type":179,"fixed_in":9},{"ecosystem":169,"name":311,"vendor":171,"product":311,"cpe_part":9,"purl_type":172,"purl_namespace":171,"purl_name":311,"source":9,"versions":312},"eap8-weld-jta",[313],{"version":296,"is_range":176,"range_type":177,"version_start":9,"version_start_type":9,"version_end":297,"version_end_type":179,"fixed_in":9},{"ecosystem":169,"name":315,"vendor":171,"product":315,"cpe_part":9,"purl_type":172,"purl_namespace":171,"purl_name":315,"source":9,"versions":316},"eap8-weld-lite-extension-translator",[317],{"version":296,"is_range":176,"range_type":177,"version_start":9,"version_start_type":9,"version_end":297,"version_end_type":179,"fixed_in":9},{"ecosystem":169,"name":319,"vendor":171,"product":319,"cpe_part":9,"purl_type":172,"purl_namespace":171,"purl_name":319,"source":9,"versions":320},"eap8-weld-web",[321],{"version":296,"is_range":176,"range_type":177,"version_start":9,"version_start_type":9,"version_end":297,"version_end_type":179,"fixed_in":9},{"ecosystem":169,"name":323,"vendor":171,"product":323,"cpe_part":9,"purl_type":172,"purl_namespace":171,"purl_name":323,"source":9,"versions":324},"eap8-wildfly",[325],{"version":326,"is_range":176,"range_type":177,"version_start":9,"version_start_type":9,"version_end":327,"version_end_type":179,"fixed_in":9},"lt0:8_0_7_3_GA_redhat_00004_1_el9eap","0:8.0.7-3.GA_redhat_00004.1.el9eap",{"ecosystem":169,"name":329,"vendor":171,"product":329,"cpe_part":9,"purl_type":172,"purl_namespace":171,"purl_name":329,"source":9,"versions":330},"eap8-wildfly-elytron",[331],{"version":332,"is_range":176,"range_type":177,"version_start":9,"version_start_type":9,"version_end":333,"version_end_type":179,"fixed_in":9},"lt0:2_2_9_1_Final_redhat_00001_1_el9eap","0:2.2.9-1.Final_redhat_00001.1.el9eap",{"ecosystem":169,"name":335,"vendor":171,"product":335,"cpe_part":9,"purl_type":172,"purl_namespace":171,"purl_name":335,"source":9,"versions":336},"eap8-wildfly-elytron-tool",[337],{"version":332,"is_range":176,"range_type":177,"version_start":9,"version_start_type":9,"version_end":333,"version_end_type":179,"fixed_in":9},{"ecosystem":169,"name":339,"vendor":171,"product":339,"cpe_part":9,"purl_type":172,"purl_namespace":171,"purl_name":339,"source":9,"versions":340},"eap8-wildfly-java-jdk11",[341],{"version":326,"is_range":176,"range_type":177,"version_start":9,"version_start_type":9,"version_end":327,"version_end_type":179,"fixed_in":9},{"ecosystem":169,"name":343,"vendor":171,"product":343,"cpe_part":9,"purl_type":172,"purl_namespace":171,"purl_name":343,"source":9,"versions":344},"eap8-wildfly-java-jdk17",[345],{"version":326,"is_range":176,"range_type":177,"version_start":9,"version_start_type":9,"version_end":327,"version_end_type":179,"fixed_in":9},{"ecosystem":169,"name":347,"vendor":171,"product":347,"cpe_part":9,"purl_type":172,"purl_namespace":171,"purl_name":347,"source":9,"versions":348},"eap8-wildfly-java-jdk21",[349],{"version":326,"is_range":176,"range_type":177,"version_start":9,"version_start_type":9,"version_end":327,"version_end_type":179,"fixed_in":9},{"ecosystem":169,"name":351,"vendor":171,"product":351,"cpe_part":9,"purl_type":172,"purl_namespace":171,"purl_name":351,"source":9,"versions":352},"eap8-wildfly-modules",[353],{"version":326,"is_range":176,"range_type":177,"version_start":9,"version_start_type":9,"version_end":327,"version_end_type":179,"fixed_in":9}]