CVE-2025-21502:
Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition...
4.8
CVSS ScoreBasic Information
CVE ID
GHSA ID
EPSS Score
-
CWE
Published
1/21/2025
Updated
2/7/2025
KEV Status
No
Technology
-
Technical Details
CVSS Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:N
Vulnerability Intelligence
Miggo AI
Root Cause Analysis
The provided information and fetched URL contents describe a vulnerability (CVE-2025-21502) in the 'Hotspot' component of Oracle Java SE, Oracle GraalVM for JDK, and Oracle GraalVM Enterprise Edition. The description states that the vulnerability can be exploited by 'using APIs in the specified Component'. However, no specific code patches, commit details, or names of the vulnerable APIs within the Hotspot component are available. Without this information, it is not possible to identify the exact function names that would appear in a runtime profile during exploitation. The available details are too high-level to pinpoint specific vulnerable functions with confidence.