USN-8795-1: OpenJDK 17 vulnerabilities
Microsoft retires its Microsoft 365 companion apps in December 2026, requiring admins to remove them from managed devices.
Microsoft announced the retirement of its Microsoft 365 companion apps (Calendar, People, Files) on December 16, 2026, requiring admins to remove them from managed devices.
- Microsoft will retire Microsoft 365 companion apps in December 2026
- Apps are taskbar-integrated and include Copilot AI assistance
- Admins urged to remove apps from managed devices
Vulnerabilities mentionedAll →
- CVE-2026-613086.8<1%Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (componentpublished +2 related
| CVE | Vulnerability | CVSS | EPSS | Flags | Affected | Exposure | Published |
|---|---|---|---|---|---|---|---|
CVE-2026-61308+2 related CVEs |
Kai Aizen discovered that the Networking component of OpenJDK 17 did not correctly handle user authentication. A remote attacker could possibly use this issue to leak sensitive information. (CVE-2026-61308) It was discovered that the JSSE component of OpenJDK 17 did not correctly handle user authentication. A remote attacker could possibly use this issue to cause a denial of service. (CVE-2026-70907) It was discovered that the Security component of OpenJDK 17 did not correctly handle user authentication. A remote attacker could possibly use this issue to leak sensitive information. (CVE-2026-60589)
This source does not provide full text. Read it at ubuntu.com.