Security Advisory

CVE-2024-9342

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2025-07-16 10:14:28
Last updated 2026-06-18 13:59:24
Assigner eclipse
CVSS score 6.3
State PUBLISHED

Description

In Eclipse GlassFish versions before 8.0.3 it is possible to perform Login Brute Force attacks as there is no limitation in the number of failed login attempts. GlassFish 8.0.3 adds automatic attack protection documented in https://glassfish.org/docs/latest/security-guide.html#brute-force-attack-protection .