IBM and Red Hat said they have identified and remediated more than 400 previously unknown vulnerabilities across popular Java libraries, crediting Red Hat’s Lightwell open source software supply chain initiative and its specialized AI agents with accelerating discovery. The milestone was announced alongside the general availability of the Lightwell Clearinghouse, an enterprise service where customers submit open source software dependencies for priority review and remediation. The companies framed the work as addressing a growing business risk, since autonomous AI agents are becoming capable of chaining several lower-risk software weaknesses into a more serious attack, and the first embargoed figures cited by Phoronix had grown from 300-plus to 400-plus vulnerabilities within days.
IBM & Red Hat Find More Than 400 New Vulnerabilities In Popular Java Code
IBM and Red Hat said they have identified and remediated more than 400 previously unknown vulnerabilities across popular Java libraries, crediting Red Hat's Lightwell open source software supply chain initiative and its specialized AI agents with accelerating discovery. The milestone was announced alongside the general availability of the Lightwell Clearinghouse, an enterprise service where customers submit open source software dependencies for priority review and remediation. The companies framed the work as addressing a growing business risk, since autonomous AI agents are becoming capable of chaining several lower-risk software weaknesses into a more serious attack, and the first embargoed figures cited by Phoronix had grown from 300-plus to 400-plus vulnerabilities within days.
Source: Phoronix