IBM and Red Hat’s Lightwell uncovers 400+ hidden Java vulnerabilities as AI agents raise the stakes for Open Source security
More than 400 previously unknown vulnerabilities in widely used Java libraries have been found and fixed by IBM and Red Hat, in a result that underscores how even mature, battle-tested code remains exposed in the age of autonomous AI.
The vulnerabilities were identified and remediated through Lightwell, the companies’ joint initiative focused on securing open source software. Alongside the announcement, IBM and Red Hat made Lightwell Clearinghouse generally available, letting enterprise customers submit specific open source dependencies for priority review and remediation.
A new kind of threat: small cracks, chained together
The timing reflects a shift in how attacks work. Autonomous AI agents can now combine several lower-risk weaknesses, each of which might once have been dismissed, into a single serious exploit. That changes the math for security teams: a flaw’s individual severity matters less when it can be linked to others at machine speed.
“AI agents shifted the threat...
Copyright of this story solely belongs to www.expresscomputer.in. To see the full text click HERE