Researcher Releases PoC for Recent Java Cryptographic Vulnerability

A proof-of-concept (PoC) code demonstrating a newly disclosed digital signature bypass vulnerability in Java has been shared online. Thehigh-severity flawin question,CVE-2022-21449(CVSS score: 7.5), impacts the following version of Java SE and Oracle GraalVM Enterprise Edition -

Oracle Java SE: 7u331, 8u321, 11.0.14, 17.0.2, 18 Oracle GraalVM Enterprise Edition: 20.3.5, 21.3.1,