> USN-8642-1: c3p0 vulnerabilities
[DATE: 18/08/2026 13:02]
[LANGUAGE: EN]
It was discovered that c3p0 was vulnerable to remote code execution via maliciously
crafted serialized objects and JNDI references. An attacker could use this to
execute arbitrary code, bypass security restrictions, or cause a denial of service.