AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2019-3834

HIGH · CVSS 7.3 EPSS 1.01% Public Exploit

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2019-10-03 · Last synced 2026-08-04

CyberRota Analysis

This is a high severity vulnerability with a CVSS score of 7.3. Public exploit code or proof-of-concept references have been detected in its references.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

Detected Signals
exploit

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2019-3834
Severity
HIGH
CVSS
7.3
EPSS
1.01%

Original NVD Description

It was found that the fix for CVE-2014-0114 had been reverted in JBoss Operations Network 3 (JON). This flaw allows attackers to manipulate ClassLoader properties on a vulnerable server. Exploits that have been published rely on ClassLoader properties that are exposed such as those in JON 3. Additional information can be found in the Red Hat Knowledgebase article: https://access.redhat.com/site/solutions/869353. Note that while multiple products released patches for the original CVE-2014-0114 flaw, the reversion described by this CVE-2019-3834 flaw only occurred in JON 3.

Related CVEs

Other vulnerabilities affecting the same vendor(s)