http://www.developer.com/java/other/article.php/3704726/Sun-Releases-Information-on-J2SE-Vulnerabilities.htm
The Sun Security Community blog has released information on 11 areas of vulnerabilities against Java 2 Platform, Standard Edition. Some of the vulnerabilities can be considered quite important. In each area a workaround has been created.
On October 3rd Sun Alert 103071 Java Runtime Environment (JRE) May Allow Untrusted Applets or Applications to Display An Oversized Window so that the Warning Banner is Not Visible to User
Sun Alert 103072 An Untrusted Java Web Start Application or Java Applet May Move or Copy Arbitrary Files by Requesting the User to Drag and Drop a File from Application or Applet Window to a Desktop Application
Details of the alerts and their workarounds are available at http://blogs.sun.com/security/date/20071003 On October 9th Details of the alerts and their workarounds are available at
http://blogs.sun.com/security/date/20071009
Sun Releases Information on J2SE Vulnerabilities
October 11, 2007