Eclipse Omr
8 CVEs tracked. None of them is in CISA KEV.
This hub aggregates every CVE we track for Eclipse Omr, a product in the oss libraries space. Use it to gauge the current risk picture and drill into individual advisories.
Eclipse Omr CVEs per month
| Month | CVEs |
|---|---|
| 2024-10 | 0 |
| 2024-11 | 0 |
| 2024-12 | 0 |
| 2025-01 | 0 |
| 2025-02 | 2 |
| 2025-03 | 0 |
| 2025-04 | 0 |
| 2025-05 | 0 |
| 2025-06 | 0 |
| 2025-07 | 0 |
| 2025-08 | 0 |
| 2025-09 | 0 |
| 2025-10 | 0 |
| 2025-11 | 0 |
| 2025-12 | 1 |
| 2026-01 | 1 |
| 2026-02 | 0 |
| 2026-03 | 0 |
| 2026-04 | 0 |
| 2026-05 | 0 |
| 2026-06 | 0 |
| 2026-07 | 1 |
| 2026-08 | 0 |
| 2026-09 | 0 |
Severity
How the 8 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.
- Critical2
- High5
- Medium1
Latest CVEs
The 8 most recently published vulnerabilities affecting Eclipse Omr.
- CVE-2026-16243Eclipse OMR : arraycmp SIMD implementation does not check if the number of bytes to compare is zero7.5
- CVE-2026-1188In the Eclipse OMR port library component since release 0.2.0, an API function to return the textual names of all supported processor features was not accounting for the separator inserted between ...9.8
- CVE-2025-14549OMR on Z processors Exposing a possible buffer over-read problem8.1
- CVE-2025-1471Eclipse OMR: Buffer overflow vulnerability7.8
- CVE-2025-1470Eclipse OMR: Null pointer dereference vulnerability5.5
- CVE-2021-41035In Eclipse Openj9 before version 0.29.0, the JVM does not throw IllegalAccessError for MethodHandles that invoke inaccessible interface methods.9.8
- CVE-2019-11773Prior to 0.1, AIX builds of Eclipse OMR contain unused RPATHs which may facilitate code injection and privilege elevation by local users.7.8
- CVE-2019-11774Prior to 0.1, all builds of Eclipse OMR contain a bug where the loop versioner may fail to privatize a value that is pulled out of the loop by versioning - for example if there is a condition that ...7.4
Product grouping is registry-driven, with AI assist and human review. How it works