A new security hole has been found which effects any computer with Java 1.7 or higher installed. The security hole affects all web browsers and all operating systems as far as we are aware. The exploit enables attackers to create their own web pages which force systems to download and run any software they choose e.g. malware, phishing, spyware, virus, screen grabbers etc.
If Oracle stick to their normal Java patch release cycle then a fix for this bug could be released as late as mid October.