Tag
high
advisory
Jolokia JSR-160 Proxy JNDI Injection Vulnerability
2 TTPs 2 CVEsJolokia JSR-160 proxy contains an insufficient validation flaw, identified as CVE-2026-84218, which allows attackers to bypass denylists and trigger JNDI lookups leading to SSRF or remote code execution.
Jolokia
vulnerability
java
jmx
jndi
ssrf
2t
2c
high
advisory
Unauthenticated Remote Code Execution in Red Hat JBoss EAP via openjdk-orb
5 TTPs 4 CVEsCVE-2026-15560 allows unauthenticated remote code execution in Red Hat JBoss EAP environments configured with the -secmgr flag due to insecure object unmarshalling.
JBoss Enterprise Application Platform
remote-code-execution
vulnerability
jboss
denial-of-service
web-server
enterprise-application
java
jndi
5t
4c
updated
high
threat
Potential JAVA/JNDI Exploitation Attempt
2 rules 5 TTPs 1 CVEThis rule detects a potential JAVA/JNDI exploitation attempt by identifying outbound network connections by JAVA to LDAP, RMI, or DNS standard ports followed by suspicious JAVA child processes such as shell interpreters and scripting languages, which may indicate a Java Naming and Directory Interface (JNDI) injection vulnerability exploitation attempt.
exploited
jndi
java
log4shell
rce
exploitation
2r
5t
1c