Security Box Score — July 21, 2026 — page 2
Edition of July 21, 2026, continued — page 2 of 3. Back to page 1 · page 3
| CVE | CVSS | EPSS %ile | Vendor | Product | CWE | Title |
|---|---|---|---|---|---|---|
| CVE-2026-60464 | 8.8 | 35.8 | Oracle Corporation | WebCenter Content: Imaging | CWE-287 | Vulnerability in the WebCenter Content: Imaging product of Oracle Fusion Midd… |
| CVE-2026-60465 | 8.8 | 35.8 | Oracle Corporation | WebCenter Content: Imaging | CWE-284 | Vulnerability in the WebCenter Content: Imaging product of Oracle Fusion Midd… |
| CVE-2026-60472 | 8.8 | 35.8 | Oracle Corporation | WebCenter Content: Imaging | CWE-284 | Vulnerability in the WebCenter Content: Imaging product of Oracle Fusion Midd… |
| CVE-2026-60489 | 8.8 | 35.8 | Oracle Corporation | JD Edwards EnterpriseOne CRM Foundation | CWE-306 | Vulnerability in the JD Edwards EnterpriseOne CRM Foundation product of Oracl… |
| CVE-2026-60490 | 8.8 | 35.8 | Oracle Corporation | JD Edwards EnterpriseOne CRM Foundation | CWE-284 | Vulnerability in the JD Edwards EnterpriseOne CRM Foundation product of Oracl… |
| CVE-2026-60493 | 8.8 | 35.8 | Oracle Corporation | JD Edwards EnterpriseOne Human Resources Management | CWE-306 | Vulnerability in the JD Edwards EnterpriseOne Human Resources Management prod… |
| CVE-2026-60499 | 8.8 | 35.7 | Oracle Corporation | JD Edwards EnterpriseOne Solution Advisor | CWE-306 | Vulnerability in the JD Edwards EnterpriseOne Solution Advisor product of Ora… |
| CVE-2026-60503 | 8.8 | 35.7 | Oracle Corporation | WebCenter Content: Imaging | CWE-284 | Vulnerability in the WebCenter Content: Imaging product of Oracle Fusion Midd… |
| CVE-2026-60539 | 8.8 | 35.8 | Oracle Corporation | Oracle SOA Suite | CWE-306 | Vulnerability in the Oracle SOA Suite product of Oracle Fusion Middleware (co… |
| CVE-2026-60545 | 8.8 | 35.8 | Oracle Corporation | Oracle Managed File Transfer | CWE-306 | Vulnerability in the Oracle Managed File Transfer product of Oracle Fusion Mi… |
| CVE-2026-60549 | 8.8 | 35.8 | Oracle Corporation | Oracle Managed File Transfer | CWE-306 | Vulnerability in the Oracle Managed File Transfer product of Oracle Fusion Mi… |
| CVE-2026-60563 | 8.8 | 35.8 | Oracle Corporation | Oracle WebCenter Portal | CWE-284 | Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion Middlew… |
| CVE-2026-60583 | 8.8 | 35.8 | Oracle Corporation | Oracle Transportation Management | CWE-269 | Vulnerability in the Oracle Transportation Management product of Oracle Suppl… |
| CVE-2026-60594 | 8.8 | 35.8 | Oracle Corporation | PeopleSoft Enterprise CS Campus Community | CWE-284 | Vulnerability in the PeopleSoft Enterprise CS Campus Community product of Ora… |
| CVE-2026-60602 | 8.8 | 35.8 | Oracle Corporation | PeopleSoft Enterprise CS Student Financials | CWE-306 | Vulnerability in the PeopleSoft Enterprise CS Student Financials product of O… |
| CVE-2026-60603 | 8.8 | 35.8 | Oracle Corporation | PeopleSoft Enterprise CS Student Records | CWE-20 | Vulnerability in the PeopleSoft Enterprise CS Student Records product of Orac… |
| CVE-2026-60618 | 8.8 | 35.8 | Oracle Corporation | JD Edwards EnterpriseOne Procurement and Subcontract Management | CWE-306 | Vulnerability in the JD Edwards EnterpriseOne Procurement and Subcontract Man… |
| CVE-2026-60654 | 8.8 | 35.8 | Oracle Corporation | Oracle WebCenter Content | CWE-269 | Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middle… |
| CVE-2026-60655 | 8.8 | 35.8 | Oracle Corporation | Oracle WebCenter Content | CWE-284 | Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middle… |
| CVE-2026-60656 | 8.8 | 35.8 | Oracle Corporation | Oracle WebCenter Content | CWE-284 | Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middle… |
| CVE-2026-60675 | 8.8 | 35.8 | Oracle Corporation | Oracle Applications Framework | CWE-284 | Vulnerability in the Oracle Applications Framework product of Oracle E-Busine… |
| CVE-2026-60676 | 8.8 | 35.8 | Oracle Corporation | Oracle Applications Framework | CWE-284 | Vulnerability in the Oracle Applications Framework product of Oracle E-Busine… |
| CVE-2026-60678 | 8.8 | 35.8 | Oracle Corporation | Oracle General Ledger | CWE-269 | Vulnerability in the Oracle General Ledger product of Oracle E-Business Suite… |
| CVE-2026-60681 | 8.8 | 35.8 | Oracle Corporation | Oracle Process Manufacturing Regulatory Management | CWE-284 | Vulnerability in the Oracle Process Manufacturing Regulatory Management produ… |
| CVE-2026-60692 | 8.8 | 35.8 | Oracle Corporation | Oracle Enterprise Asset Management | CWE-284 | Vulnerability in the Oracle Enterprise Asset Management product of Oracle E-B… |
| CVE-2026-60738 | 8.8 | 35.8 | Oracle Corporation | Oracle Installed Base | CWE-284 | Vulnerability in the Oracle Installed Base product of Oracle E-Business Suite… |
| CVE-2026-60783 | 8.8 | 35.8 | Oracle Corporation | Oracle iReceivables | CWE-284 | Vulnerability in the Oracle iReceivables product of Oracle E-Business Suite (… |
| CVE-2026-60789 | 8.8 | 35.7 | Oracle Corporation | Oracle Sales Offline | CWE-284 | Vulnerability in the Oracle Sales Offline product of Oracle E-Business Suite … |
| CVE-2026-60829 | 8.8 | 35.8 | Oracle Corporation | Oracle Advanced Outbound Telephony | CWE-284 | Vulnerability in the Oracle Advanced Outbound Telephony product of Oracle E-B… |
| CVE-2026-60863 | 8.8 | 35.8 | Oracle Corporation | Oracle Advanced Pricing | CWE-269 | Vulnerability in the Oracle Advanced Pricing product of Oracle E-Business Sui… |
| CVE-2026-60872 | 8.8 | 35.8 | Oracle Corporation | Oracle Order Management | CWE-269 | Vulnerability in the Oracle Order Management product of Oracle E-Business Sui… |
| CVE-2026-60890 | 8.8 | 35.8 | Oracle Corporation | Oracle Payroll | CWE-269 | Vulnerability in the Oracle Payroll product of Oracle E-Business Suite (compo… |
| CVE-2026-60897 | 8.8 | 35.8 | Oracle Corporation | Oracle Payroll | CWE-269 | Vulnerability in the Oracle Payroll product of Oracle E-Business Suite (compo… |
| CVE-2026-60898 | 8.8 | 35.8 | Oracle Corporation | Oracle Warehouse Management | CWE-269 | Vulnerability in the Oracle Warehouse Management product of Oracle E-Business… |
| CVE-2026-60901 | 8.8 | 35.8 | Oracle Corporation | Oracle Project Intelligence | CWE-269 | Vulnerability in the Oracle Project Intelligence product of Oracle E-Business… |
| CVE-2026-60920 | 8.8 | 35.8 | Oracle Corporation | Oracle Customer Care | CWE-269 | Vulnerability in the Oracle Customer Care product of Oracle E-Business Suite … |
| CVE-2026-60924 | 8.8 | 35.8 | Oracle Corporation | Oracle Public Sector Payroll | CWE-269 | Vulnerability in the Oracle Public Sector Payroll product of Oracle E-Busines… |
| CVE-2026-60932 | 8.8 | 35.8 | Oracle Corporation | Oracle Labor Distribution | CWE-269 | Vulnerability in the Oracle Labor Distribution product of Oracle E-Business S… |
| CVE-2026-60952 | 8.8 | 35.8 | Oracle Corporation | Oracle Transportation Execution | CWE-269 | Vulnerability in the Oracle Transportation Execution product of Oracle E-Busi… |
| CVE-2026-60989 | 8.8 | 35.8 | Oracle Corporation | Oracle Advanced Collections | CWE-306 | Vulnerability in the Oracle Advanced Collections product of Oracle E-Business… |
| CVE-2026-61010 | 8.8 | 35.8 | Oracle Corporation | Oracle Process Manufacturing Systems | CWE-269 | Vulnerability in the Oracle Process Manufacturing Systems product of Oracle E… |
| CVE-2026-61098 | 8.8 | 35.8 | Oracle Corporation | Oracle WebCenter Enterprise Capture | CWE-269 | Vulnerability in the Oracle WebCenter Enterprise Capture product of Oracle Fu… |
| CVE-2026-61099 | 8.8 | 35.8 | Oracle Corporation | Oracle WebCenter Enterprise Capture | CWE-269 | Vulnerability in the Oracle WebCenter Enterprise Capture product of Oracle Fu… |
| CVE-2026-61110 | 8.8 | 35.8 | Oracle Corporation | Oracle Applications DBA | CWE-269 | Vulnerability in the Oracle Applications DBA product of Oracle E-Business Sui… |
| CVE-2026-61121 | 8.8 | 35.8 | Oracle Corporation | Oracle HRMS (UK) | CWE-269 | Vulnerability in the Oracle HRMS (UK) product of Oracle E-Business Suite (com… |
| CVE-2026-61127 | 8.8 | 35.8 | Oracle Corporation | Oracle Communications Service Catalog and Design | CWE-269 | Vulnerability in the Oracle Communications Service Catalog and Design product… |
| CVE-2026-61148 | 8.8 | 35.8 | Oracle Corporation | Oracle Commerce Guided Search / Oracle Commerce Experience Manager | CWE-284 | Vulnerability in the Oracle Commerce Guided Search / Oracle Commerce Experien… |
| CVE-2026-61149 | 8.8 | 35.7 | Oracle Corporation | Oracle Commerce Guided Search / Oracle Commerce Experience Manager | CWE-269 | Vulnerability in the Oracle Commerce Guided Search / Oracle Commerce Experien… |
| CVE-2026-61166 | 8.8 | 35.8 | Oracle Corporation | Oracle Agile PLM | CWE-284 | Vulnerability in the Oracle Agile PLM product of Oracle Supply Chain (compone… |
| CVE-2026-61168 | 8.8 | 35.8 | Oracle Corporation | Oracle Agile PLM | CWE-269 | Vulnerability in the Oracle Agile PLM product of Oracle Supply Chain (compone… |
| CVE-2026-61179 | 8.8 | 35.7 | Oracle Corporation | Oracle Agile Product Lifecycle Management for Process | CWE-269 | Vulnerability in the Oracle Agile Product Lifecycle Management for Process pr… |
| CVE-2026-61180 | 8.8 | 35.8 | Oracle Corporation | Oracle Agile Product Lifecycle Management for Process | CWE-269 | Vulnerability in the Oracle Agile Product Lifecycle Management for Process pr… |
| CVE-2026-61243 | 8.8 | 35.8 | Oracle Corporation | PeopleSoft Enterprise FIN Common Objects Argentina | CWE-269 | Vulnerability in the PeopleSoft Enterprise FIN Common Objects Argentina produ… |
| CVE-2026-61289 | 8.8 | 35.8 | Oracle Corporation | Oracle Process Manufacturing Product Development | CWE-284 | Vulnerability in the Oracle Process Manufacturing Product Development product… |
| CVE-2026-61311 | 8.8 | 35.8 | Oracle Corporation | Oracle Product Hub | CWE-306 | Vulnerability in the Oracle Product Hub product of Oracle E-Business Suite (c… |
| CVE-2026-61320 | 8.8 | 35.8 | Oracle Corporation | Oracle Payables | CWE-269 | Vulnerability in the Oracle Payables product of Oracle E-Business Suite (comp… |
| CVE-2026-61322 | 8.8 | 35.8 | Oracle Corporation | TeleSales | CWE-269 | Vulnerability in the TeleSales product of Oracle E-Business Suite (component:… |
| CVE-2026-62447 | 8.8 | 35.8 | Oracle Corporation | Oracle Trade Management | CWE-306 | Vulnerability in the Oracle Trade Management product of Oracle E-Business Sui… |
| CVE-2026-62464 | 8.8 | 35.8 | Oracle Corporation | Oracle Payroll | CWE-269 | Vulnerability in the Oracle Payroll product of Oracle E-Business Suite (compo… |
| CVE-2026-62476 | 8.8 | 35.8 | Oracle Corporation | Oracle Public Sector Payroll | CWE-269 | Vulnerability in the Oracle Public Sector Payroll product of Oracle E-Busines… |
| CVE-2026-62478 | 8.8 | 35.8 | Oracle Corporation | Oracle Public Sector Financials | CWE-269 | Vulnerability in the Oracle Public Sector Financials product of Oracle E-Busi… |
| CVE-2026-62496 | 8.8 | 35.8 | Oracle Corporation | Oracle Yard Management | CWE-269 | Vulnerability in the Oracle Yard Management product of Oracle E-Business Suit… |
| CVE-2026-62498 | 8.8 | 35.8 | Oracle Corporation | Oracle Flow Manufacturing | CWE-269 | Vulnerability in the Oracle Flow Manufacturing product of Oracle E-Business S… |
| CVE-2026-62534 | 8.8 | 35.7 | Oracle Corporation | Oracle Applications Framework | CWE-269 | Vulnerability in the Oracle Applications Framework product of Oracle E-Busine… |
| CVE-2026-65055 | 6.9 | 35.6 | Taiga | taiga-back | CWE-862 | Taiga taiga-back Private Project Member Roster Disclosure via Unauthenticated… |
| CVE-2026-16484 | 5.5 | 35.7 | SourceCodester | Class and Exam Timetabling System | CWE-74 | SourceCodester Class and Exam Timetabling System edit_subjecta.php sql injection |
| CVE-2026-8983 | 10.0 | 35.5 | Autel | MaxiCharger Single | CWE-798 | Backdoor Authentication Token |
| CVE-2026-16364 | 9.1 | 35.5 | Mozilla | Firefox | CWE-119 | Incorrect boundary conditions in the Audio/Video: Playback component |
| CVE-2026-65057 | 9.2 | 35.4 | keephq | keep | CWE-918 | Keep Unauthenticated Server-Side Request Forgery via POST /providers/healthcheck |
| CVE-2026-45382 | 6.9 | 35.4 | strukturag | libde265 | CWE-125 | libde265 has a heap-buffer-overflow READ in decode_slice_unit_tiles via unval… |
| CVE-2026-60437 | 8.7 | 35.4 | Oracle Corporation | Oracle Unified Directory | CWE-284 | Vulnerability in the Oracle Unified Directory product of Oracle Fusion Middle… |
| CVE-2026-47667 | 7.5 | 35.3 | GreycLab | CImg | CWE-401 | CImg Library: Uncontrolled Memory Allocation and Memory Leak in `_load_analyz… |
| CVE-2026-45383 | 6.9 | 35.2 | strukturag | libde265 | CWE-125 | libde265 has a heap buffer overflow (OOB read) in decode_slice_unit_WPP() via… |
| CVE-2026-60365 | 10.0 | 35.2 | Oracle Corporation | Oracle HTTP Server | CWE-306 | Vulnerability in the Oracle Weblogic Server Proxy Plug-in product of Oracle F… |
| CVE-2026-60267 | 9.1 | 35.2 | Oracle Corporation | Oracle Coherence | CWE-284 | Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (co… |
| CVE-2026-60326 | 9.1 | 35.2 | Oracle Corporation | Oracle Access Manager | CWE-287 | Vulnerability in the Oracle Access Manager product of Oracle Fusion Middlewar… |
| CVE-2026-60438 | 9.1 | 35.2 | Oracle Corporation | Oracle HTTP Server | CWE-284 | Vulnerability in the Oracle HTTP Server product of Oracle Fusion Middleware (… |
| CVE-2026-60567 | 9.1 | 35.2 | Oracle Corporation | Oracle Identity Manager | CWE-269 | Vulnerability in the Oracle Identity Manager product of Oracle Fusion Middlew… |
| CVE-2026-61059 | 9.1 | 35.2 | Oracle Corporation | PeopleSoft Enterprise SCM Order Management | CWE-284 | Vulnerability in the PeopleSoft Enterprise SCM Order Management product of Or… |
| CVE-2026-61153 | 9.1 | 35.2 | Oracle Corporation | Oracle Commerce Guided Search / Oracle Commerce Experience Manager | CWE-284 | Vulnerability in the Oracle Commerce Guided Search / Oracle Commerce Experien… |
| CVE-2026-61156 | 9.1 | 35.2 | Oracle Corporation | Oracle Commerce Guided Search Platform Services | CWE-284 | Vulnerability in the Oracle Commerce Guided Search Platform Services product … |
| CVE-2026-61171 | 9.1 | 35.2 | Oracle Corporation | Oracle Agile PLM | CWE-284 | Vulnerability in the Oracle Agile PLM product of Oracle Supply Chain (compone… |
| CVE-2026-61184 | 9.1 | 35.2 | Oracle Corporation | Oracle Agile Product Lifecycle Management for Process | CWE-284 | Vulnerability in the Oracle Agile Product Lifecycle Management for Process pr… |
| CVE-2026-61197 | 9.1 | 35.2 | Oracle Corporation | Oracle Identity Manager | CWE-284 | Vulnerability in the Oracle Identity Manager product of Oracle Fusion Middlew… |
| CVE-2026-61238 | 9.1 | 35.2 | Oracle Corporation | PeopleSoft Enterprise FIN Common Objects Argentina | CWE-284 | Vulnerability in the PeopleSoft Enterprise FIN Common Objects Argentina produ… |
| CVE-2026-61244 | 9.1 | 35.2 | Oracle Corporation | PeopleSoft Enterprise FIN Manufacturing Argentina | CWE-284 | Vulnerability in the PeopleSoft Enterprise FIN Manufacturing Argentina produc… |
| CVE-2026-16384 | 7.5 | 35.2 | Mozilla | Firefox | CWE-908 | Information disclosure due to uninitialized memory in the Graphics: WebGPU co… |
| CVE-2026-16385 | 7.5 | 35.2 | Mozilla | Firefox | CWE-908 | Information disclosure due to uninitialized memory in the Graphics: WebGPU co… |
| CVE-2026-16386 | 7.5 | 35.2 | Mozilla | Firefox | CWE-908 | Information disclosure due to uninitialized memory in the Graphics: WebGPU co… |
| CVE-2026-16400 | 7.5 | 35.2 | Mozilla | Firefox | CWE-200 | Information disclosure in the DOM: Security component |
| CVE-2026-64822 | 6.9 | 35.1 | thiagopena | djangoSIGE | CWE-203 | djangoSIGE 1.10 User Enumeration via ForgotPasswordView |
| CVE-2026-16266 | 6.3 | 35.1 | n/a | mongo-object | CWE-1321 | Versions of the package mongo-object before 3.0.3 are vulnerable to Prototype… |
| CVE-2026-60174 | 6.5 | 35.0 | Oracle Corporation | MySQL Server | CWE-400 | Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (com… |
| CVE-2026-60243 | 6.5 | 35.0 | Oracle Corporation | Oracle Coherence | CWE-400 | Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (co… |
| CVE-2026-60311 | 6.5 | 35.0 | Oracle Corporation | MySQL Server | CWE-400 | Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (com… |
| CVE-2026-60324 | 6.5 | 35.0 | Oracle Corporation | MySQL Server | CWE-400 | Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (com… |
| CVE-2026-60399 | 6.5 | 35.0 | Oracle Corporation | Oracle GoldenGate | CWE-400 | Vulnerability in Oracle GoldenGate (component: Receiver Service Executable). … |
| CVE-2026-60403 | 6.5 | 35.0 | Oracle Corporation | TimesTen In-Memory Database | CWE-400 | Vulnerability in the TimesTen In-Memory Database product of Oracle TimesTen I… |
| CVE-2026-60404 | 6.5 | 35.0 | Oracle Corporation | TimesTen In-Memory Database | CWE-400 | Vulnerability in the TimesTen In-Memory Database product of Oracle TimesTen I… |
| CVE-2026-60718 | 6.5 | 35.0 | Oracle Corporation | MySQL Server | CWE-400 | Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (com… |
| CVE-2026-61093 | 6.5 | 35.0 | Oracle Corporation | MySQL Server | CWE-400 | Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (com… |
| CVE-2026-61108 | 6.5 | 35.0 | Oracle Corporation | MySQL Server | CWE-400 | Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (com… |
| CVE-2026-61194 | 6.5 | 35.0 | Oracle Corporation | Oracle Agile Engineering Data Management | CWE-400 | Vulnerability in the Oracle Agile Engineering Data Management product of Orac… |
| CVE-2026-61195 | 6.5 | 35.0 | Oracle Corporation | Oracle Agile Engineering Data Management | CWE-400 | Vulnerability in the Oracle Agile Engineering Data Management product of Orac… |
| CVE-2026-61160 | 8.1 | 34.8 | Oracle Corporation | Oracle Commerce Guided Search / Oracle Commerce Experience Manager | CWE-20 | Vulnerability in the Oracle Commerce Guided Search / Oracle Commerce Experien… |
| CVE-2026-60176 | 7.1 | 34.7 | Oracle Corporation | Oracle Payments | CWE-200 | Vulnerability in the Oracle Payments product of Oracle E-Business Suite (comp… |
| CVE-2026-42397 | 6.5 | 34.8 | Elastic | Kibana | CWE-770 | Allocation of Resources Without Limits or Throttling in Kibana Leading to Den… |
| CVE-2026-15145 | 6.4 | 34.6 | wpdevteam | Essential Addons for Elementor – Popular Elementor Templates & Widgets | CWE-79 | Essential Addons for Elementor <= 6.6.11 - Authenticated (Contributor+) Store… |
| CVE-2026-60211 | 8.8 | 34.6 | Oracle Corporation | Oracle Coherence | CWE-284 | Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (co… |
| CVE-2026-60261 | 8.8 | 34.6 | Oracle Corporation | Oracle Coherence | CWE-284 | Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (co… |
| CVE-2026-60309 | 8.8 | 34.6 | Oracle Corporation | Oracle Coherence | CWE-284 | Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (co… |
| CVE-2026-60580 | 8.8 | 34.6 | Oracle Corporation | Oracle Enterprise Command Center Framework | CWE-306 | Vulnerability in the Oracle Enterprise Command Center Framework product of Or… |
| CVE-2026-16378 | 7.5 | 34.5 | Mozilla | Firefox | CWE-20 | Other issue in the DOM: Copy & Paste and Drag & Drop component |
| CVE-2026-46998 | 8.8 | 34.3 | Oracle Corporation | Oracle Enterprise Manager Base Platform | CWE-601 | Vulnerability in the Oracle Enterprise Manager Base Platform product of Oracl… |
| CVE-2026-60651 | 8.8 | 34.3 | Oracle Corporation | Oracle WebCenter Content | CWE-284 | Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middle… |
| CVE-2026-61109 | 6.5 | 34.4 | Oracle Corporation | MySQL Server | CWE-400 | Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (com… |
| CVE-2026-60194 | 4.9 | 34.4 | Oracle Corporation | MySQL Server | CWE-284 | Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (com… |
| CVE-2026-47407 | 9.4 | 34.1 | MervinPraison | praisonai-platform | CWE-269 | PraisonAI Platform has a cross-workspace IDOR + member-role privilege escalation |
| CVE-2026-61186 | 9.4 | 34.2 | Oracle Corporation | Oracle Agile Engineering Data Management | CWE-284 | Vulnerability in the Oracle Agile Engineering Data Management product of Orac… |
| CVE-2026-60327 | 8.6 | 34.2 | Oracle Corporation | Oracle Access Manager | CWE-287 | Vulnerability in the Oracle Access Manager product of Oracle Fusion Middlewar… |
| CVE-2026-60356 | 8.6 | 34.2 | Oracle Corporation | Oracle Access Manager | CWE-306 | Vulnerability in the Oracle Access Manager product of Oracle Fusion Middlewar… |
| CVE-2026-60359 | 8.6 | 34.2 | Oracle Corporation | Oracle Unified Directory | CWE-306 | Vulnerability in the Oracle Unified Directory product of Oracle Fusion Middle… |
| CVE-2026-60536 | 8.6 | 34.2 | Oracle Corporation | Oracle Identity Manager Connector | CWE-284 | Vulnerability in the Oracle Identity Manager Connector product of Oracle Fusi… |
| CVE-2026-60559 | 8.6 | 34.2 | Oracle Corporation | Oracle Access Manager | CWE-284 | Vulnerability in the Oracle Access Manager product of Oracle Fusion Middlewar… |
| CVE-2026-35287 | 7.5 | 34.2 | Oracle Corporation | Oracle Application Testing Suite | CWE-284 | Vulnerability in Oracle Application Testing Suite. The supported version that… |
| CVE-2026-60170 | 7.5 | 34.2 | Oracle Corporation | Oracle Hospitality Simphony | CWE-284 | Vulnerability in the Oracle Hospitality Simphony product of Oracle Food and B… |
| CVE-2026-60263 | 7.5 | 34.2 | Oracle Corporation | Oracle Coherence | CWE-306 | Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (co… |
| CVE-2026-60320 | 7.5 | 34.2 | Oracle Corporation | Oracle Data Integrator | CWE-863 | Vulnerability in the Oracle Data Integrator product of Oracle Fusion Middlewa… |
| CVE-2026-60605 | 7.5 | 34.2 | Oracle Corporation | PeopleSoft Enterprise CS Student Records | CWE-306 | Vulnerability in the PeopleSoft Enterprise CS Student Records product of Orac… |
| CVE-2026-60622 | 7.5 | 34.2 | Oracle Corporation | Oracle JDeveloper | CWE-284 | Vulnerability in the Oracle JDeveloper product of Oracle Fusion Middleware (c… |
| CVE-2026-60689 | 7.5 | 34.2 | Oracle Corporation | Siebel CRM Cloud Applications | CWE-306 | Vulnerability in the Siebel CRM Cloud Applications product of Oracle Siebel C… |
| CVE-2026-60704 | 7.5 | 34.2 | Oracle Corporation | Siebel CRM Cloud Applications | CWE-306 | Vulnerability in the Siebel CRM Cloud Applications product of Oracle Siebel C… |
| CVE-2026-61026 | 7.5 | 34.2 | Oracle Corporation | Oracle iRecruitment | CWE-284 | Vulnerability in the Oracle iRecruitment product of Oracle E-Business Suite (… |
| CVE-2026-61073 | 7.5 | 34.2 | Oracle Corporation | PeopleSoft Enterprise FIN Common Objects Brazil | CWE-284 | Vulnerability in the PeopleSoft Enterprise FIN Common Objects Brazil product … |
| CVE-2026-61085 | 7.5 | 34.2 | Oracle Corporation | PeopleSoft Enterprise SCM Inventory | CWE-284 | Vulnerability in the PeopleSoft Enterprise SCM Inventory product of Oracle Pe… |
| CVE-2026-61086 | 7.5 | 34.2 | Oracle Corporation | PeopleSoft Enterprise SCM Order Management | CWE-284 | Vulnerability in the PeopleSoft Enterprise SCM Order Management product of Or… |
| CVE-2026-61087 | 7.5 | 34.2 | Oracle Corporation | PeopleSoft Enterprise FIN Payables | CWE-284 | Vulnerability in the PeopleSoft Enterprise FIN Payables product of Oracle Peo… |
| CVE-2026-61088 | 7.5 | 34.2 | Oracle Corporation | PeopleSoft Enterprise SCM Manufacturing | CWE-284 | Vulnerability in the PeopleSoft Enterprise SCM Manufacturing product of Oracl… |
| CVE-2026-61157 | 7.5 | 34.2 | Oracle Corporation | Oracle Commerce Guided Search / Oracle Commerce Experience Manager | CWE-284 | Vulnerability in the Oracle Commerce Guided Search / Oracle Commerce Experien… |
| CVE-2026-61158 | 7.5 | 34.2 | Oracle Corporation | Oracle Commerce Guided Search / Oracle Commerce Experience Manager | CWE-284 | Vulnerability in the Oracle Commerce Guided Search / Oracle Commerce Experien… |
| CVE-2026-61172 | 7.5 | 34.2 | Oracle Corporation | Oracle Agile PLM | CWE-284 | Vulnerability in the Oracle Agile PLM product of Oracle Supply Chain (compone… |
| CVE-2026-61232 | 7.5 | 34.2 | Oracle Corporation | PeopleSoft Enterprise FIN Common Objects Brazil | CWE-284 | Vulnerability in the PeopleSoft Enterprise FIN Common Objects Brazil product … |
| CVE-2026-61236 | 7.5 | 34.2 | Oracle Corporation | PeopleSoft Enterprise FIN Common Objects Brazil | CWE-284 | Vulnerability in the PeopleSoft Enterprise FIN Common Objects Brazil product … |
| CVE-2026-61309 | 7.5 | 34.2 | Oracle Corporation | Oracle In-Memory Cost Management for Discrete Industries | CWE-284 | Vulnerability in the Oracle In-Memory Cost Management for Discrete Industries… |
| CVE-2026-62521 | 7.5 | 34.2 | Oracle Corporation | Oracle HRMS (US) | CWE-284 | Vulnerability in the Oracle HRMS (US) product of Oracle E-Business Suite (com… |
| CVE-2026-8285 | 4.3 | 34.1 | Universal Software Inc. | FlexCity | CWE-307 | OTP Bypass in Universal Sotware's FlexCity |
| CVE-2026-47406 | 8.1 | 34.0 | MervinPraison | praisonai-platform | CWE-639 | praisonai-platform: Dependency endpoints accept any issue_id and dep_id witho… |
| CVE-2026-47418 | 8.1 | 34.0 | MervinPraison | praisonai-platform | CWE-639 | praisonai-platform: Project endpoints accept any project_id without workspace… |
| CVE-2026-47013 | 5.3 | 33.9 | Oracle Corporation | Oracle Java SE | CWE-770 | Vulnerability in Oracle Java SE (component: JavaFX). The supported version th… |
| CVE-2026-61070 | 5.3 | 33.9 | Oracle Corporation | PeopleSoft Enterprise FIN Common Objects Argentina | CWE-400 | Vulnerability in the PeopleSoft Enterprise FIN Common Objects Argentina produ… |
| CVE-2026-47046 | 8.2 | 33.8 | Oracle Corporation | Oracle Database Server | CWE-400 | Vulnerability in the RDBMS component of Oracle Database Server. Supported ver… |
| CVE-2026-60145 | 4.9 | 33.8 | Oracle Corporation | MySQL Server | CWE-284 | Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (com… |
| CVE-2026-65056 | 8.3 | 33.7 | mzxrai | mcp-webresearch | CWE-918 | mcp-webresearch Server-Side Request Forgery in visit_page Due to Missing Inte… |
| CVE-2026-59842 | 5.3 | 33.7 | Red Hat | Red Hat Enterprise Linux 10 | CWE-125 | Libssh: libssh: information disclosure via short gssapi curve25519 public key |
| CVE-2026-60941 | 8.7 | 33.6 | Oracle Corporation | Oracle Service Fulfillment Manager | CWE-269 | Vulnerability in the Oracle Service Fulfillment Manager product of Oracle E-B… |
| CVE-2026-60165 | 6.5 | 33.6 | Oracle Corporation | Oracle Cost Management | CWE-284 | Vulnerability in the Oracle Cost Management product of Oracle E-Business Suit… |
| CVE-2026-60433 | 6.5 | 33.6 | Oracle Corporation | Oracle Transportation Management | CWE-284 | Vulnerability in the Oracle Transportation Management product of Oracle Suppl… |
| CVE-2026-60843 | 6.5 | 33.6 | Oracle Corporation | Oracle Citizen Interaction Center | CWE-284 | Vulnerability in the Oracle Citizen Interaction Center product of Oracle E-Bu… |
| CVE-2026-60978 | 6.5 | 33.6 | Oracle Corporation | Oracle Scripting | CWE-284 | Vulnerability in the Oracle Scripting product of Oracle E-Business Suite (com… |
| CVE-2026-16350 | 9.8 | 33.4 | Mozilla | Firefox | CWE-119 | Incorrect boundary conditions in the Audio/Video: cubeb component |
| CVE-2026-16355 | 9.8 | 33.4 | Mozilla | Firefox | CWE-843 | JIT miscompilation in the JavaScript Engine: JIT component |
| CVE-2026-16357 | 9.8 | 33.4 | Mozilla | Firefox | CWE-119 | Incorrect boundary conditions in the Graphics component |
| CVE-2026-47237 | 8.0 | 33.3 | kubeflow | community-distribution | CWE-266 | Kubeflow Community Distribution: Overly Permissive Istio Permissions Allows K… |
| CVE-2026-13693 | 5.9 | 33.2 | Unknown | Bit Form | CWE-22 | Bit Form < 3.1.0 - Unauthenticated Arbitrary File Read via Path Traversal |
| CVE-2026-60565 | 9.9 | 33.1 | Oracle Corporation | Oracle WebCenter Portal | CWE-284 | Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion Middlew… |
| CVE-2026-60175 | 8.8 | 33.1 | Oracle Corporation | Oracle Database Server | CWE-269 | Vulnerability in the RDBMS component of Oracle Database Server. Supported ver… |
| CVE-2026-63080 | 7.1 | 33.1 | aptabase | aptabase | CWE-89 | Aptabase SQL Injection via ClickHouse query backend |
| CVE-2026-60846 | 6.7 | 33.1 | Oracle Corporation | Oracle Mobile Application Server | CWE-284 | Vulnerability in the Oracle Mobile Application Server product of Oracle E-Bus… |
| CVE-2026-47408 | 6.5 | 33.0 | MervinPraison | praisonai-platform | CWE-639 | praisonai-platform: list_issue_activity returns activity log for any issue re… |
| CVE-2026-13439 | 9.8 | 33.0 | hassantafreshi | Easy Form Builder by WhiteStudio – Drag & Drop Form Builder | CWE-269 | Easy Form Builder by WhiteStudio <= 4.0.11 - Unauthenticated Privilege Escala… |
| CVE-2026-60613 | 6.6 | 32.9 | Oracle Corporation | PeopleSoft Enterprise CS Student Records | CWE-20 | Vulnerability in the PeopleSoft Enterprise CS Student Records product of Orac… |
| CVE-2025-68640 | 5.3 | 32.9 | n/a | n/a | CWE-287 | The Apple Find My backend service through 2025-12-17 allows an attacker in po… |
| CVE-2026-47045 | 6.8 | 32.6 | Oracle Corporation | Oracle Database Server | CWE-601 | Vulnerability in the JDBC component of Oracle Database Server. Supported vers… |
| CVE-2026-47143 | 5.9 | 32.6 | capstone-engine | capstone | CWE-476 | Capstone has a NULL Pointer Dereference with 3DNow! opcodes |
| CVE-2026-65058 | 5.9 | 32.7 | Trezor | Safe 3 | CWE-358 | Trezor Safe improper security check in on-device display |
| CVE-2026-60195 | 4.9 | 32.7 | Oracle Corporation | MySQL Server | CWE-284 | Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (com… |
| CVE-2026-60550 | 8.6 | 32.5 | Oracle Corporation | Oracle WebCenter Sites | CWE-200 | Vulnerability in the Oracle WebCenter Sites product of Oracle Fusion Middlewa… |
| CVE-2026-16461 | 6.5 | 32.5 | Red Hat | Red Hat Enterprise Linux 10 | CWE-121 | Rpcbind: rpcbind: stack buffer overflow in rpcinfo rpcbdump() short-mode vers… |
| CVE-2026-60606 | 9.1 | 32.5 | Oracle Corporation | PeopleSoft Enterprise CC Common Application Objects | CWE-284 | Vulnerability in the PeopleSoft Enterprise CC Common Application Objects prod… |
| CVE-2026-60649 | 9.1 | 32.5 | Oracle Corporation | Oracle WebCenter Content | CWE-284 | Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middle… |
| CVE-2026-60862 | 6.8 | 32.5 | Oracle Corporation | Oracle Order Management | CWE-284 | Vulnerability in the Oracle Order Management product of Oracle E-Business Sui… |
| CVE-2026-62559 | 6.8 | 32.5 | Oracle Corporation | Oracle HRMS (US) | CWE-200 | Vulnerability in the Oracle HRMS (US) product of Oracle E-Business Suite (com… |
| CVE-2026-47049 | 4.9 | 32.5 | Oracle Corporation | PeopleSoft Enterprise PeopleTools | CWE-284 | Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle Peop… |
| CVE-2026-60880 | 9.8 | 32.4 | Oracle Corporation | Oracle Work in Process | CWE-284 | Vulnerability in the Oracle Work in Process product of Oracle E-Business Suit… |
| CVE-2026-16351 | 9.8 | 32.2 | Mozilla | Firefox | CWE-416 | Sandbox escape due to use-after-free in the DOM: Navigation component |
| CVE-2026-16352 | 9.8 | 32.2 | Mozilla | Firefox | CWE-416 | Sandbox escape due to use-after-free in the Disability Access APIs component |
| CVE-2026-16356 | 9.8 | 32.2 | Mozilla | Firefox | CWE-416 | Sandbox escape due to use-after-free in the Disability Access APIs component |
| CVE-2026-60440 | 7.7 | 32.1 | Oracle Corporation | Service Delivery Platform | CWE-200 | Vulnerability in the Service Delivery Platform product of Oracle Fusion Middl… |
| CVE-2026-60548 | 7.7 | 32.1 | Oracle Corporation | Oracle SOA Suite | CWE-200 | Vulnerability in the Oracle SOA Suite product of Oracle Fusion Middleware (co… |
| CVE-2026-60923 | 7.7 | 32.1 | Oracle Corporation | Oracle Capacity | CWE-200 | Vulnerability in the Oracle Capacity product of Oracle E-Business Suite (comp… |
| CVE-2026-61014 | 7.7 | 32.1 | Oracle Corporation | Oracle Inventory Management | CWE-200 | Vulnerability in the Oracle Inventory Management product of Oracle E-Business… |
| CVE-2026-61125 | 7.7 | 32.1 | Oracle Corporation | Oracle Configure to Order | CWE-200 | Vulnerability in the Oracle Configure to Order product of Oracle E-Business S… |
| CVE-2026-47009 | 6.5 | 32.1 | Oracle Corporation | Oracle Agile PLM | CWE-200 | Vulnerability in the Oracle Agile PLM product of Oracle Supply Chain (compone… |
| CVE-2026-60609 | 6.5 | 32.1 | Oracle Corporation | PeopleSoft Enterprise CS Campus Community | CWE-200 | Vulnerability in the PeopleSoft Enterprise CS Campus Community product of Ora… |
| CVE-2026-60673 | 6.5 | 32.1 | Oracle Corporation | Oracle BI Publisher | CWE-200 | Vulnerability in the Oracle BI Publisher product of Oracle Analytics (compone… |
| CVE-2026-60812 | 6.5 | 32.1 | Oracle Corporation | Oracle Supply Chain Trading Connector | CWE-200 | Vulnerability in the Oracle Supply Chain Trading Connector product of Oracle … |
| CVE-2026-60835 | 6.5 | 32.1 | Oracle Corporation | Oracle Price Protection | CWE-200 | Vulnerability in the Oracle Price Protection product of Oracle E-Business Sui… |
| CVE-2026-60899 | 6.5 | 32.1 | Oracle Corporation | Oracle HCM Configuration Workbench | CWE-200 | Vulnerability in the Oracle HCM Configuration Workbench product of Oracle E-B… |
| CVE-2026-61249 | 6.5 | 32.1 | Oracle Corporation | Oracle Learning Management | CWE-200 | Vulnerability in the Oracle Learning Management product of Oracle E-Business … |
| CVE-2026-61251 | 6.5 | 32.1 | Oracle Corporation | HRMS (Australia) | CWE-200 | Vulnerability in the HRMS (Australia) product of Oracle E-Business Suite (com… |
| CVE-2026-62470 | 6.5 | 32.1 | Oracle Corporation | Oracle Self-Service Human Resources | CWE-200 | Vulnerability in the Oracle Self-Service Human Resources product of Oracle E-… |
| CVE-2026-60424 | 9.0 | 32.0 | Oracle Corporation | Oracle Unified Directory | CWE-306 | Vulnerability in the Oracle Unified Directory product of Oracle Fusion Middle… |
| CVE-2026-61201 | 9.0 | 32.0 | Oracle Corporation | PeopleSoft Enterprise CRM Common Objects | CWE-269 | Vulnerability in the PeopleSoft Enterprise CRM Common Objects product of Orac… |
| CVE-2026-61223 | 9.0 | 32.0 | Oracle Corporation | Oracle Communications Converged Application Server | CWE-284 | Vulnerability in the Oracle Communications Converged Application Server produ… |
| CVE-2026-60169 | 8.1 | 32.0 | Oracle Corporation | Oracle Hospitality Simphony | CWE-306 | Vulnerability in the Oracle Hospitality Simphony product of Oracle Food and B… |
| CVE-2026-60201 | 8.1 | 32.0 | Oracle Corporation | Oracle WebLogic Server | CWE-306 | Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middlewa… |
| CVE-2026-60222 | 8.1 | 32.0 | Oracle Corporation | Oracle Coherence | CWE-284 | Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (co… |
| CVE-2026-60273 | 8.1 | 32.0 | Oracle Corporation | Oracle Coherence | CWE-306 | Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (co… |
| CVE-2026-60277 | 8.1 | 32.0 | Oracle Corporation | Oracle Coherence | CWE-306 | Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (co… |
| CVE-2026-60312 | 8.1 | 32.0 | Oracle Corporation | Oracle WebLogic Server | CWE-306 | Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middlewa… |
| CVE-2026-60416 | 8.1 | 32.0 | Oracle Corporation | Oracle Access Manager | CWE-287 | Vulnerability in the Oracle Access Manager product of Oracle Fusion Middlewar… |
| CVE-2026-60417 | 8.1 | 32.0 | Oracle Corporation | Oracle Unified Directory | CWE-306 | Vulnerability in the Oracle Unified Directory product of Oracle Fusion Middle… |
| CVE-2026-60450 | 8.1 | 32.0 | Oracle Corporation | Oracle WebCenter Content | CWE-306 | Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middle… |
| CVE-2026-60462 | 8.1 | 32.0 | Oracle Corporation | Oracle WebCenter Content | CWE-306 | Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middle… |
| CVE-2026-60543 | 8.1 | 32.0 | Oracle Corporation | Oracle SOA Suite | CWE-306 | Vulnerability in the Oracle SOA Suite product of Oracle Fusion Middleware (co… |
| CVE-2026-60558 | 8.1 | 32.0 | Oracle Corporation | Oracle WebCenter Sites | CWE-200 | Vulnerability in the Oracle WebCenter Sites product of Oracle Fusion Middlewa… |
| CVE-2026-60621 | 8.1 | 32.0 | Oracle Corporation | JD Edwards EnterpriseOne Tools | CWE-306 | Vulnerability in the JD Edwards EnterpriseOne Tools product of Oracle JD Edwa… |
| CVE-2026-60670 | 8.1 | 32.0 | Oracle Corporation | Oracle Applications Technology Stack | CWE-284 | Vulnerability in the Oracle Applications Technology Stack product of Oracle E… |
| CVE-2026-60756 | 8.1 | 32.0 | Oracle Corporation | Oracle EDI Gateway | CWE-284 | Vulnerability in the Oracle EDI Gateway product of Oracle E-Business Suite (c… |
| CVE-2026-60780 | 8.1 | 32.0 | Oracle Corporation | Oracle Workflow | CWE-284 | Vulnerability in the Oracle Workflow product of Oracle E-Business Suite (comp… |
| CVE-2026-60785 | 8.1 | 32.0 | Oracle Corporation | Oracle iReceivables | CWE-284 | Vulnerability in the Oracle iReceivables product of Oracle E-Business Suite (… |
| CVE-2026-60979 | 8.1 | 32.0 | Oracle Corporation | Oracle Scripting | CWE-284 | Vulnerability in the Oracle Scripting product of Oracle E-Business Suite (com… |
| CVE-2026-61074 | 8.1 | 32.0 | Oracle Corporation | PeopleSoft Enterprise FIN Common Objects Brazil | CWE-284 | Vulnerability in the PeopleSoft Enterprise FIN Common Objects Brazil product … |
| CVE-2026-61092 | 8.1 | 32.0 | Oracle Corporation | Oracle WebCenter Enterprise Capture | CWE-284 | Vulnerability in the Oracle WebCenter Enterprise Capture product of Oracle Fu… |
| CVE-2026-61106 | 8.1 | 32.0 | Oracle Corporation | Oracle GoldenGate | CWE-284 | Vulnerability in Oracle GoldenGate (component: Config Service Executable). Su… |
| CVE-2026-61137 | 8.1 | 32.0 | Oracle Corporation | Oracle Commerce Platform | CWE-287 | Vulnerability in the Oracle Commerce Platform product of Oracle Commerce (com… |
| CVE-2026-61163 | 8.1 | 32.0 | Oracle Corporation | Oracle Commerce Guided Search / Oracle Commerce Experience Manager | CWE-287 | Vulnerability in the Oracle Commerce Guided Search / Oracle Commerce Experien… |
| CVE-2026-61170 | 8.1 | 32.0 | Oracle Corporation | Oracle Agile PLM | CWE-284 | Vulnerability in the Oracle Agile PLM product of Oracle Supply Chain (compone… |
| CVE-2026-61225 | 8.1 | 32.0 | Oracle Corporation | Oracle Communications Converged Application Server | CWE-269 | Vulnerability in the Oracle Communications Converged Application Server produ… |
| CVE-2026-62547 | 8.1 | 32.0 | Oracle Corporation | Oracle Workflow | CWE-287 | Vulnerability in the Oracle Workflow product of Oracle E-Business Suite (comp… |
| CVE-2026-61165 | 7.1 | 31.9 | Oracle Corporation | Oracle Commerce Guided Search Platform Services | CWE-200 | Vulnerability in the Oracle Commerce Guided Search Platform Services product … |
| CVE-2026-65314 | 5.3 | 31.9 | ElectricSQL | Electric Postgres Sync | CWE-203 | Electric Postgres Sync Excluded-Column Value Inference via Subset Where Clauses |
| CVE-2026-10678 | 8.1 | 31.8 | zephyrproject | zephyr | CWE-476 | NULL-pointer / out-of-bounds write in Zephyr MCTP I2C+GPIO target binding dri… |
| CVE-2026-16368 | 9.8 | 31.6 | Mozilla | Firefox | CWE-119 | Incorrect boundary conditions in the JavaScript: WebAssembly component |
| CVE-2026-47415 | 8.3 | 31.6 | MervinPraison | praisonai-platform | CWE-639 | praisonai-platform: Issue endpoints accept any issue_id without workspace own… |
| CVE-2026-47419 | 8.3 | 31.6 | MervinPraison | praisonai-platform | CWE-639 | praisonai-platform: Agent endpoints accept any agent_id without workspace own… |
| CVE-2026-16318 | 6.9 | 31.6 | Amazon | s2n-tls | CWE-401 | QUIC Transport Parameters Memory Leak During HelloRetryRequest in s2n-tls |
| CVE-2026-60377 | 9.9 | 31.5 | Oracle Corporation | Service Delivery Platform | CWE-284 | Vulnerability in the Service Delivery Platform product of Oracle Fusion Middl… |
| CVE-2026-60422 | 9.9 | 31.5 | Oracle Corporation | Oracle Unified Directory | CWE-284 | Vulnerability in the Oracle Unified Directory product of Oracle Fusion Middle… |
| CVE-2026-60719 | 9.9 | 31.5 | Oracle Corporation | Oracle BI Publisher | CWE-20 | Vulnerability in the Oracle BI Publisher product of Oracle Analytics (compone… |
| CVE-2026-16377 | 9.8 | 31.5 | Mozilla | Firefox | CWE-693 | Mitigation bypass in the PDF Viewer component |
| CVE-2026-16383 | 9.8 | 31.5 | Mozilla | Firefox | CWE-693 | Mitigation bypass in the DOM: Networking component |
| CVE-2026-60788 | 8.3 | 31.5 | Oracle Corporation | Oracle Sales Offline | CWE-284 | Vulnerability in the Oracle Sales Offline product of Oracle E-Business Suite … |
| CVE-2026-62473 | 8.3 | 31.5 | Oracle Corporation | Oracle Installed Base | CWE-200 | Vulnerability in the Oracle Installed Base product of Oracle E-Business Suite… |
| CVE-2026-63764 | 7.7 | 31.5 | InternLM | lmdeploy | CWE-918 | LMDeploy Server-Side Request Forgery via HTTP Redirect Bypass |
| CVE-2026-12548 | 4.2 | 31.4 | Red Hat | Red Hat Enterprise Linux 10 | CWE-125 | Libsoup: heap out-of-bounds read in libsoup due to integer truncation |
| CVE-2026-8982 | 10.0 | 31.2 | Autel | MaxiCharger Single | CWE-798 | Hard-coded / Backdoor Accounts |
| CVE-2026-47414 | 7.6 | 31.2 | MervinPraison | praisonai-platform | CWE-639 | praisonai-platform: Label endpoints accept any label_id and any issue_id with… |
| CVE-2026-60220 | 9.3 | 31.0 | Oracle Corporation | Oracle Coherence | CWE-284 | Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (co… |
| CVE-2026-60700 | 8.1 | 31.0 | Oracle Corporation | Oracle Universal Work Queue | CWE-284 | Vulnerability in the Oracle Universal Work Queue product of Oracle E-Business… |
| CVE-2026-60582 | 8.3 | 30.8 | Oracle Corporation | Oracle Enterprise Command Center Framework | CWE-89 | Vulnerability in the Oracle Enterprise Command Center Framework product of Or… |
| CVE-2026-60255 | 8.2 | 30.7 | Oracle Corporation | Oracle Coherence | CWE-306 | Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (co… |
| CVE-2026-56746 | 6.5 | 30.7 | netty | netty | CWE-284 | Netty has a Security Control Bypass via CORS Short-Circuit Failure |
| CVE-2026-24232 | 4.3 | 30.6 | NVIDIA | Tranformers4Rec | CWE-502 | NVIDIA Tranformers4Rec contains a vulnerability where an attacker could cause… |
| CVE-2026-16382 | 9.8 | 30.5 | Mozilla | Firefox | CWE-693 | Mitigation bypass in the DOM: Service Workers component |
| CVE-2026-60196 | 8.4 | 30.5 | Oracle Corporation | Oracle WebLogic Server | CWE-284 | Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middlewa… |
| CVE-2026-60316 | 7.2 | 30.5 | Oracle Corporation | MySQL Server | CWE-284 | Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (com… |
| CVE-2026-61237 | 9.9 | 30.4 | Oracle Corporation | PeopleSoft Enterprise FIN Common Objects Argentina | CWE-269 | Vulnerability in the PeopleSoft Enterprise FIN Common Objects Argentina produ… |
| CVE-2026-60192 | 8.1 | 30.4 | Oracle Corporation | MySQL Connectors | CWE-284 | Vulnerability in the MySQL Connectors product of Oracle MySQL (component: Con… |
| CVE-2026-15342 | 6.5 | 30.3 | Plane | Plane | CWE-552 | CVE-2026-15342 |
| CVE-2026-46923 | 8.0 | 30.3 | Oracle Corporation | Oracle Public Sector Financials (International) | CWE-284 | Vulnerability in the Oracle Public Sector Financials (International) product … |
| CVE-2026-60790 | 8.0 | 30.3 | Oracle Corporation | Oracle Sales Offline | CWE-284 | Vulnerability in the Oracle Sales Offline product of Oracle E-Business Suite … |
| CVE-2026-61009 | 8.0 | 30.3 | Oracle Corporation | Oracle Process Manufacturing Logistics | CWE-284 | Vulnerability in the Oracle Process Manufacturing Logistics product of Oracle… |
| CVE-2026-61224 | 8.0 | 30.3 | Oracle Corporation | Oracle Communications Converged Application Server | CWE-284 | Vulnerability in the Oracle Communications Converged Application Server produ… |
| CVE-2026-60701 | 6.6 | 30.3 | Oracle Corporation | Oracle Universal Work Queue | CWE-284 | Vulnerability in the Oracle Universal Work Queue product of Oracle E-Business… |
| CVE-2026-60825 | 6.6 | 30.3 | Oracle Corporation | Oracle iSupport | CWE-284 | Vulnerability in the Oracle iSupport product of Oracle E-Business Suite (comp… |
| CVE-2026-60892 | 6.6 | 30.3 | Oracle Corporation | Oracle HRMS (Norway) | CWE-284 | Vulnerability in the Oracle HRMS (Norway) product of Oracle E-Business Suite … |
| CVE-2026-61328 | 6.6 | 30.3 | Oracle Corporation | Oracle Cost Management | CWE-284 | Vulnerability in the Oracle Cost Management product of Oracle E-Business Suit… |
| CVE-2026-60281 | 8.1 | 30.2 | Oracle Corporation | Oracle Coherence | CWE-284 | Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (co… |
| CVE-2026-16450 | 2.1 | 30.1 | zsadmin2025 | ZS-Admin | CWE-285 | zsadmin2025 ZS-Admin MyBatis-Plus Tenant Plugin page getTenantId authorization |
| CVE-2026-16373 | 7.5 | 30.0 | Mozilla | Firefox | CWE-200 | Information disclosure in the Privacy component in Firefox for Android |
| CVE-2026-47026 | 7.4 | 30.0 | Oracle Corporation | PeopleSoft Enterprise PeopleTools | CWE-601 | Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle Peop… |
| CVE-2026-60557 | 6.5 | 30.0 | Oracle Corporation | Oracle WebCenter Sites | CWE-200 | Vulnerability in the Oracle WebCenter Sites product of Oracle Fusion Middlewa… |
| CVE-2026-61239 | 9.9 | 29.8 | Oracle Corporation | PeopleSoft Enterprise FIN Common Objects Argentina | CWE-284 | Vulnerability in the PeopleSoft Enterprise FIN Common Objects Argentina produ… |
| CVE-2026-56817 | 8.3 | 29.8 | netty | netty | CWE-611 | Netty: XML External Entity (XXE) injection via unconfigured XML factory when … |
| CVE-2026-47058 | 7.4 | 29.9 | Oracle Corporation | Oracle Java SE | CWE-502 | Vulnerability in Oracle Java SE (component: Scripting). Supported versions th… |
| CVE-2026-60304 | 6.5 | 29.7 | Oracle Corporation | Oracle Coherence | CWE-284 | Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (co… |
| CVE-2026-60233 | 4.3 | 29.6 | Oracle Corporation | Oracle Coherence | CWE-400 | Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (co… |
| CVE-2026-60303 | 4.3 | 29.6 | Oracle Corporation | Oracle Coherence | CWE-400 | Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (co… |
| CVE-2026-60410 | 4.3 | 29.6 | Oracle Corporation | TimesTen In-Memory Database | CWE-400 | Vulnerability in the TimesTen In-Memory Database product of Oracle TimesTen I… |
| CVE-2026-60411 | 6.5 | 29.4 | Oracle Corporation | TimesTen In-Memory Database | CWE-400 | Vulnerability in the TimesTen In-Memory Database product of Oracle TimesTen I… |
| CVE-2026-65007 | 8.7 | 29.4 | getgrav | grav | CWE-862 | Grav before 1.0.8 Missing Authorization on API Key Generation |
| CVE-2026-60314 | 7.5 | 29.2 | Oracle Corporation | MySQL Router | CWE-400 | Vulnerability in the MySQL Router product of Oracle MySQL (component: Router:… |
| CVE-2026-47657 | 7.1 | 29.1 | humhub | humhub | CWE-862 | HumHub Missing Authorization on Remove All Space Members Action |
| CVE-2026-16243 | 5.7 | 29.1 | Eclipse Foundation | Eclipse OMR | CWE-125 | Eclipse OMR : arraycmp SIMD implementation does not check if the number of by… |
| CVE-2026-47413 | 9.6 | 29.0 | MervinPraison | praisonai-platform | CWE-269 | praisonai-platform: Any workspace member can add arbitrary user as owner via … |
| CVE-2026-47416 | 9.6 | 29.0 | MervinPraison | praisonai-platform | CWE-269 | praisonai-platform: Any workspace member can promote themselves (or any other… |
| CVE-2026-47417 | 8.1 | 29.0 | MervinPraison | praisonai-platform | CWE-639 | praisonai-platform: Comment endpoints accept any issue_id without workspace o… |
| CVE-2026-46994 | 9.8 | 28.9 | Oracle Corporation | Oracle Enterprise Manager Base Platform | CWE-284 | Vulnerability in the Oracle Enterprise Manager Base Platform product of Oracl… |
| CVE-2026-60239 | 9.6 | 28.9 | Oracle Corporation | Oracle Coherence | CWE-284 | Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (co… |
| CVE-2026-16392 | 9.1 | 28.8 | Mozilla | Firefox | CWE-670 | JIT miscompilation in the JavaScript Engine: JIT component |
| CVE-2026-16420 | 8.8 | 28.8 | Chrome | CWE-843 | Type Confusion in WebAudio in Google Chrome prior to 150.0.7871.182 allowed a… | |
| CVE-2026-47014 | 8.1 | 28.9 | Oracle Corporation | Oracle Product Workbench | CWE-284 | Vulnerability in the Oracle Product Workbench product of Oracle E-Business Su… |
| CVE-2026-47019 | 8.1 | 28.9 | Oracle Corporation | Oracle Product Hub | CWE-306 | Vulnerability in the Oracle Product Hub product of Oracle E-Business Suite (c… |
| CVE-2026-47028 | 8.1 | 28.9 | Oracle Corporation | Oracle Document Management and Collaboration | CWE-284 | Vulnerability in the Oracle Document Management and Collaboration product of … |
| CVE-2026-60323 | 8.1 | 28.9 | Oracle Corporation | Oracle Identity Manager | CWE-284 | Vulnerability in the Oracle Identity Manager product of Oracle Fusion Middlew… |
| CVE-2026-60520 | 8.1 | 28.9 | Oracle Corporation | Oracle Unified Directory | CWE-284 | Vulnerability in the Oracle Unified Directory product of Oracle Fusion Middle… |
| CVE-2026-60560 | 8.1 | 28.9 | Oracle Corporation | Oracle Identity Manager | CWE-284 | Vulnerability in the Oracle Identity Manager product of Oracle Fusion Middlew… |
| CVE-2026-60653 | 8.1 | 28.9 | Oracle Corporation | Oracle WebCenter Content | CWE-306 | Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middle… |
| CVE-2026-60691 | 8.1 | 28.9 | Oracle Corporation | Oracle Content Manager | CWE-284 | Vulnerability in the Oracle Content Manager product of Oracle E-Business Suit… |
| CVE-2026-60708 | 8.1 | 28.9 | Oracle Corporation | Oracle Process Manufacturing Financials | CWE-284 | Vulnerability in the Oracle Process Manufacturing Financials product of Oracl… |
| CVE-2026-60710 | 8.1 | 28.9 | Oracle Corporation | Oracle EDI Gateway | CWE-284 | Vulnerability in the Oracle EDI Gateway product of Oracle E-Business Suite (c… |
| CVE-2026-60732 | 8.1 | 28.9 | Oracle Corporation | Oracle iReceivables | CWE-284 | Vulnerability in the Oracle iReceivables product of Oracle E-Business Suite (… |
| CVE-2026-60735 | 8.1 | 28.9 | Oracle Corporation | Oracle Sales Offline | CWE-284 | Vulnerability in the Oracle Sales Offline product of Oracle E-Business Suite … |
| CVE-2026-60736 | 8.1 | 28.9 | Oracle Corporation | Oracle E-Business Intelligence | CWE-284 | Vulnerability in the Oracle E-Business Intelligence product of Oracle E-Busin… |
| CVE-2026-60740 | 8.1 | 28.9 | Oracle Corporation | Oracle Cash Management | CWE-284 | Vulnerability in the Oracle Cash Management product of Oracle E-Business Suit… |
| CVE-2026-60749 | 8.1 | 28.9 | Oracle Corporation | Oracle Assets | CWE-284 | Vulnerability in the Oracle Assets product of Oracle E-Business Suite (compon… |
| CVE-2026-60764 | 8.1 | 28.9 | Oracle Corporation | Oracle Financials Common Modules | CWE-284 | Vulnerability in the Oracle Financials Common Modules product of Oracle E-Bus… |
| CVE-2026-60768 | 8.1 | 28.9 | Oracle Corporation | Oracle Applications Framework | CWE-284 | Vulnerability in the Oracle Applications Framework product of Oracle E-Busine… |
| CVE-2026-60771 | 8.1 | 28.9 | Oracle Corporation | Oracle Complex Maintenance, Repair and Overhaul | CWE-284 | Vulnerability in the Oracle Complex Maintenance, Repair and Overhaul product … |
| CVE-2026-60778 | 8.1 | 28.9 | Oracle Corporation | Oracle Payments | CWE-284 | Vulnerability in the Oracle Payments product of Oracle E-Business Suite (comp… |
| CVE-2026-60784 | 8.1 | 28.9 | Oracle Corporation | Oracle Trading Community | CWE-284 | Vulnerability in the Oracle Trading Community product of Oracle E-Business Su… |
| CVE-2026-60793 | 8.1 | 28.9 | Oracle Corporation | Oracle TeleSales | CWE-284 | Vulnerability in the Oracle TeleSales product of Oracle E-Business Suite (com… |
| CVE-2026-60840 | 8.1 | 28.9 | Oracle Corporation | Oracle Demand Signal Repository | CWE-284 | Vulnerability in the Oracle Demand Signal Repository product of Oracle E-Busi… |
| CVE-2026-60844 | 8.1 | 28.9 | Oracle Corporation | Oracle Customer Support | CWE-200 | Vulnerability in the Oracle Customer Support product of Oracle E-Business Sui… |
| CVE-2026-60848 | 8.1 | 28.9 | Oracle Corporation | Oracle Project Contracts | CWE-284 | Vulnerability in the Oracle Project Contracts product of Oracle E-Business Su… |
| CVE-2026-60852 | 8.1 | 28.9 | Oracle Corporation | Oracle Lease and Finance Management | CWE-284 | Vulnerability in the Oracle Lease and Finance Management product of Oracle E-… |
| CVE-2026-60857 | 8.1 | 28.9 | Oracle Corporation | Oracle Contracts Integration | CWE-284 | Vulnerability in the Oracle Contracts Integration product of Oracle E-Busines… |
| CVE-2026-60871 | 8.1 | 28.9 | Oracle Corporation | Oracle Risk Management | CWE-284 | Vulnerability in the Oracle Risk Management product of Oracle E-Business Suit… |
| CVE-2026-60942 | 8.1 | 28.9 | Oracle Corporation | Oracle Service Fulfillment Manager | CWE-284 | Vulnerability in the Oracle Service Fulfillment Manager product of Oracle E-B… |
| CVE-2026-60948 | 8.1 | 28.9 | Oracle Corporation | Oracle Learning Management | CWE-284 | Vulnerability in the Oracle Learning Management product of Oracle E-Business … |
| CVE-2026-60951 | 8.1 | 28.9 | Oracle Corporation | Oracle Time and Labor | CWE-863 | Vulnerability in the Oracle Time and Labor product of Oracle E-Business Suite… |
| CVE-2026-60953 | 8.1 | 28.9 | Oracle Corporation | Oracle Telecommunications Billing Integrator | CWE-862 | Vulnerability in the Oracle Telecommunications Billing Integrator product of … |
| CVE-2026-60966 | 8.1 | 28.9 | Oracle Corporation | Oracle Public Sector Human Resources | CWE-284 | Vulnerability in the Oracle Public Sector Human Resources product of Oracle E… |
| CVE-2026-60972 | 8.1 | 28.9 | Oracle Corporation | Oracle E-Business Tax | CWE-284 | Vulnerability in the Oracle E-Business Tax product of Oracle E-Business Suite… |
| CVE-2026-60982 | 8.1 | 28.9 | Oracle Corporation | Oracle US Federal Human Resources | CWE-284 | Vulnerability in the Oracle US Federal Human Resources product of Oracle E-Bu… |
| CVE-2026-61004 | 8.1 | 28.9 | Oracle Corporation | Oracle Landed Cost Management | CWE-284 | Vulnerability in the Oracle Landed Cost Management product of Oracle E-Busine… |
| CVE-2026-61019 | 8.1 | 28.9 | Oracle Corporation | Oracle Customers Online | CWE-284 | Vulnerability in the Oracle Customers Online product of Oracle E-Business Sui… |
| CVE-2026-61020 | 8.1 | 28.9 | Oracle Corporation | Oracle Customers Online | CWE-284 | Vulnerability in the Oracle Customers Online product of Oracle E-Business Sui… |
| CVE-2026-61024 | 8.1 | 28.9 | Oracle Corporation | Oracle iRecruitment | CWE-284 | Vulnerability in the Oracle iRecruitment product of Oracle E-Business Suite (… |
| CVE-2026-61030 | 8.1 | 28.9 | Oracle Corporation | Oracle Process Manufacturing Product Development | CWE-284 | Vulnerability in the Oracle Process Manufacturing Product Development product… |
| CVE-2026-61031 | 8.1 | 28.9 | Oracle Corporation | Oracle Financials Common Country | CWE-284 | Vulnerability in the Oracle Financials Common Country product of Oracle E-Bus… |
| CVE-2026-61037 | 8.1 | 28.9 | Oracle Corporation | Oracle Loans | CWE-284 | Vulnerability in the Oracle Loans product of Oracle E-Business Suite (compone… |
| CVE-2026-61102 | 8.1 | 28.9 | Oracle Corporation | Oracle Banking Trade Finance | CWE-284 | Vulnerability in the Oracle Banking Trade Finance product of Oracle Financial… |
| CVE-2026-61105 | 8.1 | 28.9 | Oracle Corporation | Oracle Banking Trade Finance | CWE-284 | Vulnerability in the Oracle Banking Trade Finance product of Oracle Financial… |
| CVE-2026-61122 | 8.1 | 28.9 | Oracle Corporation | Oracle HRMS (UK) | CWE-284 | Vulnerability in the Oracle HRMS (UK) product of Oracle E-Business Suite (com… |
| CVE-2026-61150 | 8.1 | 28.9 | Oracle Corporation | Oracle Commerce Guided Search / Oracle Commerce Experience Manager | CWE-284 | Vulnerability in the Oracle Commerce Guided Search / Oracle Commerce Experien… |
| CVE-2026-61218 | 8.1 | 28.9 | Oracle Corporation | Oracle E-Business Suite Secure Enterprise Search | CWE-284 | Vulnerability in the Oracle E-Business Suite Secure Enterprise Search product… |
| CVE-2026-61287 | 8.1 | 28.9 | Oracle Corporation | Oracle Process Manufacturing Systems | CWE-284 | Vulnerability in the Oracle Process Manufacturing Systems product of Oracle E… |
| CVE-2026-61297 | 8.1 | 28.9 | Oracle Corporation | Oracle Customers Online | CWE-284 | Vulnerability in the Oracle Customers Online product of Oracle E-Business Sui… |
| CVE-2026-61301 | 8.1 | 28.9 | Oracle Corporation | Oracle Process Manufacturing Financials | CWE-284 | Vulnerability in the Oracle Process Manufacturing Financials product of Oracl… |
| CVE-2026-61310 | 8.1 | 28.9 | Oracle Corporation | Oracle Product Hub | CWE-284 | Vulnerability in the Oracle Product Hub product of Oracle E-Business Suite (c… |
| CVE-2026-61327 | 8.1 | 28.9 | Oracle Corporation | Oracle Bills of Material | CWE-284 | Vulnerability in the Oracle Bills of Material product of Oracle E-Business Su… |
| CVE-2026-61329 | 8.1 | 28.9 | Oracle Corporation | Oracle Price Protection | CWE-284 | Vulnerability in the Oracle Price Protection product of Oracle E-Business Sui… |
| CVE-2026-61333 | 8.1 | 28.9 | Oracle Corporation | Oracle Product Workbench | CWE-284 | Vulnerability in the Oracle Product Workbench product of Oracle E-Business Su… |
| CVE-2026-61335 | 8.1 | 28.9 | Oracle Corporation | Oracle Product Workbench | CWE-284 | Vulnerability in the Oracle Product Workbench product of Oracle E-Business Su… |
| CVE-2026-61338 | 8.1 | 28.9 | Oracle Corporation | Oracle Contracts Integration | CWE-284 | Vulnerability in the Oracle Contracts Integration product of Oracle E-Busines… |
| CVE-2026-62445 | 8.1 | 28.9 | Oracle Corporation | Oracle Order Management | CWE-284 | Vulnerability in the Oracle Order Management product of Oracle E-Business Sui… |
| CVE-2026-62451 | 8.1 | 28.9 | Oracle Corporation | Oracle Work in Process | CWE-284 | Vulnerability in the Oracle Work in Process product of Oracle E-Business Suit… |
| CVE-2026-62468 | 8.1 | 28.9 | Oracle Corporation | Oracle Human Resources | CWE-284 | Vulnerability in the Oracle Human Resources product of Oracle E-Business Suit… |
| CVE-2026-62472 | 8.1 | 28.9 | Oracle Corporation | Oracle Installed Base | CWE-284 | Vulnerability in the Oracle Installed Base product of Oracle E-Business Suite… |
| CVE-2026-62494 | 8.1 | 28.9 | Oracle Corporation | Oracle Time and Labor | CWE-284 | Vulnerability in the Oracle Time and Labor product of Oracle E-Business Suite… |
| CVE-2026-62497 | 8.1 | 28.9 | Oracle Corporation | Oracle Flow Manufacturing | CWE-284 | Vulnerability in the Oracle Flow Manufacturing product of Oracle E-Business S… |
| CVE-2026-62504 | 8.1 | 28.9 | Oracle Corporation | Oracle Time and Labor | CWE-284 | Vulnerability in the Oracle Time and Labor product of Oracle E-Business Suite… |
| CVE-2026-62514 | 8.1 | 28.9 | Oracle Corporation | Oracle Process Manufacturing Regulatory Management | CWE-284 | Vulnerability in the Oracle Process Manufacturing Regulatory Management produ… |
| CVE-2026-62530 | 8.1 | 28.9 | Oracle Corporation | Oracle HRMS (France) | CWE-284 | Vulnerability in the Oracle HRMS (France) product of Oracle E-Business Suite … |
| CVE-2026-60854 | 8.2 | 28.7 | Oracle Corporation | Oracle Quality | CWE-269 | Vulnerability in the Oracle Quality product of Oracle E-Business Suite (compo… |
| CVE-2026-60647 | 7.1 | 28.7 | Oracle Corporation | Oracle WebCenter Content | CWE-200 | Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middle… |
| CVE-2026-60178 | 6.6 | 28.7 | Oracle Corporation | MySQL Server | CWE-284 | Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (com… |
| CVE-2026-60585 | 6.6 | 28.7 | Oracle Corporation | MySQL Server | CWE-284 | Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (com… |
| CVE-2026-60325 | 8.0 | 28.2 | Oracle Corporation | Oracle Access Manager | CWE-284 | Vulnerability in the Oracle Access Manager product of Oracle Fusion Middlewar… |
| CVE-2026-61067 | 8.0 | 28.2 | Oracle Corporation | Oracle Access Manager | CWE-287 | Vulnerability in the Oracle Access Manager product of Oracle Fusion Middlewar… |
| CVE-2026-16454 | 4.3 | 28.3 | Eclipse Foundation | eclipse-hawkbit/hawkbit | CWE-284 | Privilege Escalation in Eclipse hawkBit DDI allows Tenant-Isolated Firmware E… |
| CVE-2026-16403 | 6.5 | 28.1 | Mozilla | Firefox | CWE-451 | Spoofing issue in the Address Bar component |
| CVE-2026-46556 | 6.5 | 28.0 | flaskbb | flaskbb | CWE-918 | FlaskBB: SSRF in get_image_info() via unrestricted avatar URL |
| CVE-2026-1372 | 4.3 | 28.0 | themeum | Tutor LMS Elementor Addons | CWE-862 | Tutor LMS Elementor Addons <= 4.0.0 - Missing Authorization to Authenticated … |
| CVE-2026-61207 | 9.3 | 27.9 | Oracle Corporation | PeopleSoft Enterprise SCM eProcurement | CWE-284 | Vulnerability in the PeopleSoft Enterprise SCM eProcurement product of Oracle… |
| CVE-2026-60284 | 8.2 | 27.9 | Oracle Corporation | Oracle Coherence | CWE-284 | Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (co… |
| CVE-2026-60428 | 8.2 | 27.9 | Oracle Corporation | Oracle Unified Directory | CWE-284 | Vulnerability in the Oracle Unified Directory product of Oracle Fusion Middle… |
| CVE-2026-60674 | 8.2 | 27.9 | Oracle Corporation | Oracle Business Intelligence Enterprise Edition | CWE-284 | Vulnerability in the Oracle Business Intelligence Enterprise Edition product … |
| CVE-2026-60810 | 8.2 | 27.9 | Oracle Corporation | Oracle Supply Chain Trading Connector | CWE-306 | Vulnerability in the Oracle Supply Chain Trading Connector product of Oracle … |
| CVE-2026-60652 | 8.0 | 28.0 | Oracle Corporation | Oracle WebCenter Content | CWE-306 | Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middle… |
| CVE-2026-60807 | 8.0 | 28.0 | Oracle Corporation | Oracle Bills of Material | CWE-284 | Vulnerability in the Oracle Bills of Material product of Oracle E-Business Su… |
| CVE-2026-47012 | 4.4 | 27.9 | Oracle Corporation | MySQL Server | CWE-400 | Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (com… |
| CVE-2026-60177 | 4.4 | 27.9 | Oracle Corporation | MySQL Server | CWE-400 | Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (com… |
| CVE-2026-60182 | 4.4 | 27.9 | Oracle Corporation | MySQL Server | CWE-400 | Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (com… |
| CVE-2026-60184 | 4.4 | 27.9 | Oracle Corporation | MySQL Server | CWE-400 | Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (com… |
| CVE-2026-60185 | 4.4 | 27.9 | Oracle Corporation | MySQL Server | CWE-400 | Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (com… |
| CVE-2026-60186 | 4.4 | 27.9 | Oracle Corporation | MySQL Server | CWE-400 | Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (com… |
| CVE-2026-60187 | 4.4 | 27.9 | Oracle Corporation | MySQL Server | CWE-400 | Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (com… |
| CVE-2026-46987 | 7.7 | 27.8 | Oracle Corporation | Oracle Enterprise Manager Base Platform | CWE-284 | Vulnerability in the Oracle Enterprise Manager Base Platform product of Oracl… |
| CVE-2026-60683 | 7.7 | 27.8 | Oracle Corporation | Oracle Process Manufacturing Regulatory Management | CWE-284 | Vulnerability in the Oracle Process Manufacturing Regulatory Management produ… |
| CVE-2026-60690 | 7.7 | 27.8 | Oracle Corporation | Siebel CRM Cloud Applications | CWE-284 | Vulnerability in the Siebel CRM Cloud Applications product of Oracle Siebel C… |
| CVE-2026-60750 | 7.7 | 27.8 | Oracle Corporation | Oracle Payroll | CWE-284 | Vulnerability in the Oracle Payroll product of Oracle E-Business Suite (compo… |
| CVE-2026-60824 | 7.7 | 27.8 | Oracle Corporation | Oracle iSupport | CWE-284 | Vulnerability in the Oracle iSupport product of Oracle E-Business Suite (comp… |
| CVE-2026-61142 | 7.7 | 27.8 | Oracle Corporation | Oracle Payroll | CWE-284 | Vulnerability in the Oracle Payroll product of Oracle E-Business Suite (compo… |
| CVE-2026-62560 | 7.7 | 27.8 | Oracle Corporation | Oracle HRMS (Norway) | CWE-200 | Vulnerability in the Oracle HRMS (Norway) product of Oracle E-Business Suite … |
| CVE-2026-62567 | 7.7 | 27.8 | Oracle Corporation | Oracle HRMS (UK) | CWE-200 | Vulnerability in the Oracle HRMS (UK) product of Oracle E-Business Suite (com… |
| CVE-2026-61112 | 6.5 | 27.8 | Oracle Corporation | Oracle Order Management | CWE-200 | Vulnerability in the Oracle Order Management product of Oracle E-Business Sui… |
| CVE-2026-61250 | 6.5 | 27.8 | Oracle Corporation | Oracle Payroll | CWE-284 | Vulnerability in the Oracle Payroll product of Oracle E-Business Suite (compo… |
| CVE-2026-61323 | 6.5 | 27.8 | Oracle Corporation | Oracle Advanced Benefits | CWE-284 | Vulnerability in the Oracle Advanced Benefits product of Oracle E-Business Su… |
| CVE-2026-62480 | 6.5 | 27.8 | Oracle Corporation | Oracle Public Sector Financials | CWE-284 | Vulnerability in the Oracle Public Sector Financials product of Oracle E-Busi… |
| CVE-2026-62556 | 6.5 | 27.8 | Oracle Corporation | Oracle HRMS (US) | CWE-200 | Vulnerability in the Oracle HRMS (US) product of Oracle E-Business Suite (com… |
| CVE-2026-62562 | 6.5 | 27.8 | Oracle Corporation | Oracle HRMS (US) | CWE-284 | Vulnerability in the Oracle HRMS (US) product of Oracle E-Business Suite (com… |
| CVE-2026-60632 | 9.3 | 27.7 | Oracle Corporation | Oracle WebCenter Content | CWE-284 | Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middle… |
| CVE-2026-60624 | 6.5 | 27.7 | Oracle Corporation | MySQL Connectors | CWE-404 | Vulnerability in the MySQL Connectors product of Oracle MySQL (component: Con… |
| CVE-2026-60826 | 6.6 | 27.6 | Oracle Corporation | Oracle iSupport | CWE-284 | Vulnerability in the Oracle iSupport product of Oracle E-Business Suite (comp… |
| CVE-2026-15156 | 6.4 | 27.5 | wpdevteam | Essential Addons for Elementor – Popular Elementor Templates & Widgets | CWE-79 | Essential Addons for Elementor <= 6.6.11 - Authenticated (Contributor+) Store… |
| CVE-2026-60266 | 5.9 | 27.5 | Oracle Corporation | Oracle Coherence | CWE-200 | Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (co… |
| CVE-2026-60610 | 5.9 | 27.5 | Oracle Corporation | PeopleSoft Enterprise CS Campus Community | CWE-200 | Vulnerability in the PeopleSoft Enterprise CS Campus Community product of Ora… |
| CVE-2026-60773 | 9.6 | 27.3 | Oracle Corporation | Oracle Application Object Library | CWE-284 | Vulnerability in the Oracle Application Object Library product of Oracle E-Bu… |
| CVE-2026-60586 | 7.7 | 27.3 | Oracle Corporation | MySQL Connectors | CWE-306 | Vulnerability in the MySQL Connectors product of Oracle MySQL (component: Con… |
| CVE-2026-16451 | 2.1 | 27.3 | zsadmin2025 | ZS-Admin | CWE-284 | zsadmin2025 ZS-Admin com.zs.file.controller.SysFileController upload unrestri… |
| CVE-2026-60235 | 8.6 | 26.9 | Oracle Corporation | Oracle Coherence | CWE-306 | Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (co… |
| CVE-2026-60671 | 8.6 | 26.9 | Oracle Corporation | Oracle Business Intelligence Enterprise Edition | CWE-284 | Vulnerability in the Oracle Business Intelligence Enterprise Edition product … |
| CVE-2026-60492 | 7.1 | 26.8 | Oracle Corporation | JD Edwards EnterpriseOne HCM Foundation | CWE-269 | Vulnerability in the JD Edwards EnterpriseOne HCM Foundation product of Oracl… |
| CVE-2026-13694 | 6.5 | 26.8 | Unknown | Bit Form | CWE-862 | Bit Form < 3.1.0 - Unauthenticated Workflow Trigger via Authentication Bypass |
| CVE-2026-16354 | 7.5 | 26.6 | Mozilla | Firefox | CWE-200 | Information disclosure in the Graphics: ImageLib component |
| CVE-2026-61185 | 7.4 | 26.6 | Oracle Corporation | Oracle Agile Product Lifecycle Management for Process | CWE-200 | Vulnerability in the Oracle Agile Product Lifecycle Management for Process pr… |
| CVE-2026-60427 | 8.7 | 26.5 | Oracle Corporation | Oracle Unified Directory | CWE-284 | Vulnerability in the Oracle Unified Directory product of Oracle Fusion Middle… |
| CVE-2026-60448 | 8.7 | 26.5 | Oracle Corporation | Oracle WebCenter Content | CWE-284 | Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middle… |
| CVE-2026-60553 | 8.7 | 26.5 | Oracle Corporation | Oracle WebCenter Sites | CWE-200 | Vulnerability in the Oracle WebCenter Sites product of Oracle Fusion Middlewa… |
| CVE-2026-46943 | 7.4 | 26.5 | Oracle Corporation | Oracle Retail EFTLink | CWE-284 | Vulnerability in the Oracle Retail EFTLink product of Oracle Retail Applicati… |
| CVE-2026-60823 | 7.4 | 26.5 | Oracle Corporation | Oracle iSupport | CWE-284 | Vulnerability in the Oracle iSupport product of Oracle E-Business Suite (comp… |
| CVE-2026-61113 | 7.4 | 26.5 | Oracle Corporation | Oracle Application Object Library | CWE-284 | Vulnerability in the Oracle Application Object Library product of Oracle E-Bu… |
| CVE-2026-61135 | 7.4 | 26.5 | Oracle Corporation | Oracle Commerce Platform | CWE-284 | Vulnerability in the Oracle Commerce Platform product of Oracle Commerce (com… |
| CVE-2026-61164 | 7.4 | 26.5 | Oracle Corporation | Oracle Commerce Guided Search / Oracle Commerce Experience Manager | CWE-284 | Vulnerability in the Oracle Commerce Guided Search / Oracle Commerce Experien… |
| CVE-2026-61173 | 7.4 | 26.5 | Oracle Corporation | Oracle Agile PLM | CWE-284 | Vulnerability in the Oracle Agile PLM product of Oracle Supply Chain (compone… |
| CVE-2026-61210 | 7.4 | 26.5 | Oracle Corporation | PeopleSoft Enterprise SCM Manufacturing | CWE-284 | Vulnerability in the PeopleSoft Enterprise SCM Manufacturing product of Oracl… |
| CVE-2026-61234 | 7.4 | 26.5 | Oracle Corporation | PeopleSoft Enterprise FIN Common Objects Brazil | CWE-284 | Vulnerability in the PeopleSoft Enterprise FIN Common Objects Brazil product … |
| CVE-2026-60985 | 7.1 | 26.5 | Oracle Corporation | Oracle Project Portfolio Analysis | CWE-284 | Vulnerability in the Oracle Project Portfolio Analysis product of Oracle E-Bu… |
| CVE-2026-61012 | 7.1 | 26.5 | Oracle Corporation | Oracle Time and Labor | CWE-863 | Vulnerability in the Oracle Time and Labor product of Oracle E-Business Suite… |
| CVE-2026-61119 | 7.1 | 26.5 | Oracle Corporation | Oracle HRMS (UK) | CWE-284 | Vulnerability in the Oracle HRMS (UK) product of Oracle E-Business Suite (com… |
| CVE-2026-47121 | 6.1 | 26.4 | sparkle-project | Sparkle | CWE-22 | Sparkle: Binary delta apply intermediate-symlink traversal in malicious .delta |
| CVE-2026-60615 | 8.2 | 26.2 | Oracle Corporation | PeopleSoft Enterprise CS Campus Community | CWE-287 | Vulnerability in the PeopleSoft Enterprise CS Campus Community product of Ora… |
| CVE-2026-60668 | 8.2 | 26.2 | Oracle Corporation | PeopleSoft Enterprise HCM Human Resources | CWE-284 | Vulnerability in the PeopleSoft Enterprise HCM Human Resources product of Ora… |
| CVE-2026-61089 | 8.2 | 26.2 | Oracle Corporation | PeopleSoft Enterprise SCM Inventory | CWE-284 | Vulnerability in the PeopleSoft Enterprise SCM Inventory product of Oracle Pe… |
| CVE-2026-60686 | 8.1 | 26.2 | Oracle Corporation | Oracle U.S. Federal Financials | CWE-284 | Vulnerability in the Oracle U.S. Federal Financials product of Oracle E-Busin… |
| CVE-2026-60741 | 8.1 | 26.2 | Oracle Corporation | Oracle Cost Management | CWE-284 | Vulnerability in the Oracle Cost Management product of Oracle E-Business Suit… |
| CVE-2026-60867 | 8.1 | 26.2 | Oracle Corporation | Oracle Advanced Pricing | CWE-284 | Vulnerability in the Oracle Advanced Pricing product of Oracle E-Business Sui… |
| CVE-2026-60875 | 8.1 | 26.2 | Oracle Corporation | Oracle Trade Management | CWE-284 | Vulnerability in the Oracle Trade Management product of Oracle E-Business Sui… |
| CVE-2026-60963 | 8.1 | 26.2 | Oracle Corporation | Oracle Treasury | CWE-284 | Vulnerability in the Oracle Treasury product of Oracle E-Business Suite (comp… |
| CVE-2026-60997 | 8.1 | 26.2 | Oracle Corporation | Oracle Universal Work Queue | CWE-284 | Vulnerability in the Oracle Universal Work Queue product of Oracle E-Business… |
| CVE-2026-61000 | 8.1 | 26.2 | Oracle Corporation | Oracle Process Manufacturing Systems | CWE-284 | Vulnerability in the Oracle Process Manufacturing Systems product of Oracle E… |
| CVE-2026-61005 | 8.1 | 26.2 | Oracle Corporation | Oracle Process Manufacturing Logistics | CWE-284 | Vulnerability in the Oracle Process Manufacturing Logistics product of Oracle… |
| CVE-2026-60540 | 9.6 | 26.2 | Oracle Corporation | Oracle SOA Suite | CWE-284 | Vulnerability in the Oracle SOA Suite product of Oracle Fusion Middleware (co… |
| CVE-2026-60564 | 9.6 | 26.2 | Oracle Corporation | Oracle WebCenter Portal | CWE-284 | Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion Middlew… |
| CVE-2026-60599 | 8.1 | 26.2 | Oracle Corporation | PeopleSoft Enterprise CS Student Records | CWE-287 | Vulnerability in the PeopleSoft Enterprise CS Student Records product of Orac… |
| CVE-2026-60706 | 8.1 | 26.2 | Oracle Corporation | Oracle Process Manufacturing Inventory | CWE-284 | Vulnerability in the Oracle Process Manufacturing Inventory product of Oracle… |
| CVE-2026-60714 | 8.1 | 26.2 | Oracle Corporation | Oracle Price Protection | CWE-284 | Vulnerability in the Oracle Price Protection product of Oracle E-Business Sui… |
| CVE-2026-60817 | 8.1 | 26.2 | Oracle Corporation | Oracle iStore | CWE-284 | Vulnerability in the Oracle iStore product of Oracle E-Business Suite (compon… |
| CVE-2026-60877 | 8.1 | 26.2 | Oracle Corporation | Oracle Trade Management | CWE-284 | Vulnerability in the Oracle Trade Management product of Oracle E-Business Sui… |
| CVE-2026-60904 | 8.1 | 26.2 | Oracle Corporation | Oracle Installed Base | CWE-284 | Vulnerability in the Oracle Installed Base product of Oracle E-Business Suite… |
| CVE-2026-60917 | 8.1 | 26.2 | Oracle Corporation | Oracle Inventory Management | CWE-284 | Vulnerability in the Oracle Inventory Management product of Oracle E-Business… |
| CVE-2026-60959 | 8.1 | 26.2 | Oracle Corporation | Oracle SDP Number Portability | CWE-284 | Vulnerability in the Oracle SDP Number Portability product of Oracle E-Busine… |
| CVE-2026-60965 | 8.1 | 26.2 | Oracle Corporation | Oracle HRMS (France) | CWE-284 | Vulnerability in the Oracle HRMS (France) product of Oracle E-Business Suite … |
| CVE-2026-60974 | 8.1 | 26.2 | Oracle Corporation | Oracle E-Business Tax | CWE-284 | Vulnerability in the Oracle E-Business Tax product of Oracle E-Business Suite… |
| CVE-2026-60986 | 8.1 | 26.2 | Oracle Corporation | Oracle Project Portfolio Analysis | CWE-284 | Vulnerability in the Oracle Project Portfolio Analysis product of Oracle E-Bu… |
| CVE-2026-60578 | 7.6 | 26.2 | Oracle Corporation | Oracle Enterprise Command Center Framework | CWE-287 | Vulnerability in the Oracle Enterprise Command Center Framework product of Or… |
| CVE-2026-61325 | 7.6 | 26.2 | Oracle Corporation | Oracle Advanced Benefits | CWE-284 | Vulnerability in the Oracle Advanced Benefits product of Oracle E-Business Su… |
| CVE-2026-62515 | 7.6 | 26.2 | Oracle Corporation | Oracle Advanced Planning Command Center | CWE-269 | Vulnerability in the Oracle Advanced Planning Command Center product of Oracl… |
| CVE-2026-60270 | 5.5 | 26.2 | Oracle Corporation | Oracle Coherence | CWE-284 | Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (co… |
| CVE-2026-60237 | 5.3 | 26.1 | Oracle Corporation | Oracle Coherence | CWE-200 | Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (co… |
| CVE-2026-60260 | 5.3 | 26.1 | Oracle Corporation | Oracle Coherence | CWE-200 | Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (co… |
| CVE-2026-60283 | 5.3 | 26.1 | Oracle Corporation | Oracle Coherence | CWE-200 | Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (co… |
| CVE-2026-60394 | 5.3 | 26.1 | Oracle Corporation | Oracle GoldenGate | CWE-200 | Vulnerability in Oracle GoldenGate (component: Admin Server Executable). Supp… |
| CVE-2026-60611 | 5.3 | 26.1 | Oracle Corporation | PeopleSoft Enterprise CS Campus Community | CWE-200 | Vulnerability in the PeopleSoft Enterprise CS Campus Community product of Ora… |
| CVE-2026-61192 | 5.3 | 26.1 | Oracle Corporation | Oracle Agile Engineering Data Management | CWE-400 | Vulnerability in the Oracle Agile Engineering Data Management product of Orac… |
| CVE-2026-16402 | 9.8 | 26.0 | Mozilla | Firefox | CWE-190 | Integer overflow in the Graphics: ImageLib component |
| CVE-2026-60249 | 9.0 | 26.0 | Oracle Corporation | Oracle Coherence | CWE-284 | Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (co… |
| CVE-2026-60805 | 6.2 | 26.0 | Oracle Corporation | Oracle Cost Management | CWE-284 | Vulnerability in the Oracle Cost Management product of Oracle E-Business Suit… |
| CVE-2026-47411 | 6.5 | 25.9 | MervinPraison | praisonai-platform | CWE-269 | praisonai-platform: Any workspace member can rewrite workspace name, descript… |
| CVE-2026-16418 | 8.8 | 25.8 | Chrome | CWE-121 | Stack buffer overflow in V8 in Google Chrome prior to 150.0.7871.182 allowed … | |
| CVE-2026-47033 | 8.5 | 25.8 | Oracle Corporation | Oracle Contracts Integration | CWE-284 | Vulnerability in the Oracle Contracts Integration product of Oracle E-Busines… |
| CVE-2026-60295 | 8.5 | 25.8 | Oracle Corporation | Oracle Coherence | CWE-284 | Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (co… |
| CVE-2026-61312 | 8.5 | 25.8 | Oracle Corporation | Oracle Product Hub | CWE-284 | Vulnerability in the Oracle Product Hub product of Oracle E-Business Suite (c… |
| CVE-2026-46941 | 7.5 | 25.8 | Oracle Corporation | Oracle Cost Management | CWE-284 | Vulnerability in the Oracle Cost Management product of Oracle E-Business Suit… |
| CVE-2026-60495 | 7.5 | 25.8 | Oracle Corporation | JD Edwards EnterpriseOne Requirements Planning | CWE-306 | Vulnerability in the JD Edwards EnterpriseOne Requirements Planning product o… |
| CVE-2026-60496 | 7.5 | 25.8 | Oracle Corporation | JD Edwards EnterpriseOne Advanced Pricing - Procurement | CWE-306 | Vulnerability in the JD Edwards EnterpriseOne Advanced Pricing - Procurement … |
| CVE-2026-60497 | 7.5 | 25.8 | Oracle Corporation | JD Edwards EnterpriseOne CRM Foundation | CWE-306 | Vulnerability in the JD Edwards EnterpriseOne CRM Foundation product of Oracl… |
| CVE-2026-60498 | 7.5 | 25.8 | Oracle Corporation | JD Edwards EnterpriseOne Human Resources Management | CWE-306 | Vulnerability in the JD Edwards EnterpriseOne Human Resources Management prod… |
| CVE-2026-60598 | 7.5 | 25.8 | Oracle Corporation | PeopleSoft Enterprise CS Student Records | CWE-287 | Vulnerability in the PeopleSoft Enterprise CS Student Records product of Orac… |
| CVE-2026-60604 | 7.5 | 25.8 | Oracle Corporation | PeopleSoft Enterprise CS Campus Community | CWE-306 | Vulnerability in the PeopleSoft Enterprise CS Campus Community product of Ora… |
| CVE-2026-60619 | 7.5 | 25.8 | Oracle Corporation | JD Edwards EnterpriseOne HCM Foundation | CWE-269 | Vulnerability in the JD Edwards EnterpriseOne HCM Foundation product of Oracl… |
| CVE-2026-60770 | 7.5 | 25.8 | Oracle Corporation | Oracle Application Object Library | CWE-284 | Vulnerability in the Oracle Application Object Library product of Oracle E-Bu… |
| CVE-2026-60806 | 7.5 | 25.8 | Oracle Corporation | Oracle Cost Management | CWE-284 | Vulnerability in the Oracle Cost Management product of Oracle E-Business Suit… |
| CVE-2026-60855 | 7.5 | 25.8 | Oracle Corporation | Oracle Quality | CWE-269 | Vulnerability in the Oracle Quality product of Oracle E-Business Suite (compo… |
| CVE-2026-60859 | 7.5 | 25.8 | Oracle Corporation | Oracle Quoting | CWE-269 | Vulnerability in the Oracle Quoting product of Oracle E-Business Suite (compo… |
| CVE-2026-60894 | 7.5 | 25.8 | Oracle Corporation | Oracle Payroll | CWE-269 | Vulnerability in the Oracle Payroll product of Oracle E-Business Suite (compo… |
| CVE-2026-60927 | 7.5 | 25.8 | Oracle Corporation | Oracle Public Sector Financials | CWE-269 | Vulnerability in the Oracle Public Sector Financials product of Oracle E-Busi… |
| CVE-2026-60931 | 7.5 | 25.8 | Oracle Corporation | Oracle Public Sector Financials | CWE-269 | Vulnerability in the Oracle Public Sector Financials product of Oracle E-Busi… |
| CVE-2026-60943 | 7.5 | 25.8 | Oracle Corporation | Oracle Service Fulfillment Manager | CWE-269 | Vulnerability in the Oracle Service Fulfillment Manager product of Oracle E-B… |
| CVE-2026-60988 | 7.5 | 25.8 | Oracle Corporation | Oracle Project Portfolio Analysis | CWE-269 | Vulnerability in the Oracle Project Portfolio Analysis product of Oracle E-Bu… |
| CVE-2026-61114 | 7.5 | 25.8 | Oracle Corporation | Oracle Application Object Library | CWE-269 | Vulnerability in the Oracle Application Object Library product of Oracle E-Bu… |
| CVE-2026-61141 | 7.5 | 25.8 | Oracle Corporation | Oracle Advanced Benefits | CWE-269 | Vulnerability in the Oracle Advanced Benefits product of Oracle E-Business Su… |
| CVE-2026-61188 | 7.5 | 25.8 | Oracle Corporation | Oracle Agile Product Lifecycle Management for Process | CWE-269 | Vulnerability in the Oracle Agile Product Lifecycle Management for Process pr… |
| CVE-2026-61337 | 7.5 | 25.8 | Oracle Corporation | Oracle Lease and Finance Management | CWE-284 | Vulnerability in the Oracle Lease and Finance Management product of Oracle E-… |
| CVE-2026-62493 | 7.5 | 25.8 | Oracle Corporation | Oracle Purchasing | CWE-269 | Vulnerability in the Oracle Purchasing product of Oracle E-Business Suite (co… |
| CVE-2026-62495 | 7.5 | 25.8 | Oracle Corporation | Oracle Process Manufacturing Process Execution | CWE-284 | Vulnerability in the Oracle Process Manufacturing Process Execution product o… |
| CVE-2026-63143 | 4.3 | 25.7 | Elastic | Kibana | CWE-862 | Missing Authorization in Kibana Leading to Unauthorized Information Disclosure |
| CVE-2026-16334 | 2.1 | 25.7 | itsourcecode | Hospital Management System | CWE-74 | itsourcecode Hospital Management System prescriptionorder.php sql injection |
| CVE-2026-16421 | 8.8 | 25.5 | Chrome | CWE-20 | Inappropriate implementation in WebAudio in Google Chrome prior to 150.0.7871… | |
| CVE-2026-60667 | 7.4 | 25.5 | Oracle Corporation | PeopleSoft Enterprise HCM Human Resources | CWE-284 | Vulnerability in the PeopleSoft Enterprise HCM Human Resources product of Ora… |
| CVE-2026-60581 | 7.5 | 25.4 | Oracle Corporation | Oracle Enterprise Command Center Framework | CWE-284 | Vulnerability in the Oracle Enterprise Command Center Framework product of Or… |
| CVE-2026-60687 | 6.8 | 25.4 | Oracle Corporation | Oracle U.S. Federal Financials | CWE-200 | Vulnerability in the Oracle U.S. Federal Financials product of Oracle E-Busin… |
| CVE-2026-47003 | 5.9 | 25.4 | Oracle Corporation | Oracle Enterprise Manager Base Platform | CWE-284 | Vulnerability in the Oracle Enterprise Manager Base Platform product of Oracl… |
| CVE-2026-60348 | 5.9 | 25.4 | Oracle Corporation | Oracle JDeveloper | CWE-284 | Vulnerability in the Oracle JDeveloper product of Oracle Fusion Middleware (c… |
| CVE-2026-60593 | 7.5 | 25.3 | Oracle Corporation | PeopleSoft Enterprise FIN Staffing Front Office | CWE-284 | Vulnerability in the PeopleSoft Enterprise FIN Staffing Front Office product … |
| CVE-2026-56147 | 7.1 | 25.3 | Elastic | Kibana | CWE-639 | Authorization Bypass Through User-Controlled Key in Kibana Leading to Unautho… |
| CVE-2026-60467 | 7.5 | 25.2 | Oracle Corporation | WebCenter Content: Imaging | CWE-601 | Vulnerability in the WebCenter Content: Imaging product of Oracle Fusion Midd… |
| CVE-2026-61205 | 8.2 | 25.1 | Oracle Corporation | PeopleSoft Enterprise SCM Purchasing | CWE-284 | Vulnerability in the PeopleSoft Enterprise SCM Purchasing product of Oracle P… |
| CVE-2026-60397 | 4.3 | 25.1 | Oracle Corporation | Oracle GoldenGate | CWE-404 | Vulnerability in Oracle GoldenGate (component: Admin Server Executable). Supp… |
| CVE-2026-60213 | 6.5 | 25.0 | Oracle Corporation | Oracle Coherence | CWE-400 | Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (co… |
| CVE-2026-60189 | 4.4 | 25.0 | Oracle Corporation | MySQL Server | CWE-284 | Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (com… |
| CVE-2026-47017 | 8.7 | 24.9 | Oracle Corporation | PeopleSoft Enterprise PeopleTools | CWE-284 | Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle Peop… |
| CVE-2026-60443 | 8.7 | 24.9 | Oracle Corporation | Oracle WebCenter Content | CWE-284 | Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middle… |
| CVE-2026-60469 | 8.7 | 24.9 | Oracle Corporation | WebCenter Content: Imaging | CWE-284 | Vulnerability in the WebCenter Content: Imaging product of Oracle Fusion Midd… |
| CVE-2026-60470 | 8.7 | 24.9 | Oracle Corporation | WebCenter Content: Imaging | CWE-284 | Vulnerability in the WebCenter Content: Imaging product of Oracle Fusion Midd… |
| CVE-2026-60523 | 8.7 | 24.9 | Oracle Corporation | Oracle WebCenter Content | CWE-284 | Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middle… |
| CVE-2026-61078 | 8.7 | 24.9 | Oracle Corporation | PeopleSoft Enterprise CC Common Application Objects | CWE-284 | Vulnerability in the PeopleSoft Enterprise CC Common Application Objects prod… |
| CVE-2026-60179 | 7.4 | 24.9 | Oracle Corporation | MySQL Connectors | CWE-284 | Vulnerability in the MySQL Connectors product of Oracle MySQL (component: Con… |
| CVE-2026-60945 | 7.3 | 24.9 | Oracle Corporation | Oracle Learning Management | CWE-284 | Vulnerability in the Oracle Learning Management product of Oracle E-Business … |
| CVE-2026-60534 | 7.7 | 24.8 | Oracle Corporation | Oracle Identity Manager Connector | CWE-284 | Vulnerability in the Oracle Identity Manager Connector product of Oracle Fusi… |
| CVE-2026-60695 | 5.9 | 24.8 | Oracle Corporation | Oracle Enterprise Asset Management | CWE-284 | Vulnerability in the Oracle Enterprise Asset Management product of Oracle E-B… |
| CVE-2026-60349 | 5.9 | 24.7 | Oracle Corporation | Oracle JDeveloper | CWE-200 | Vulnerability in the Oracle JDeveloper product of Oracle Fusion Middleware (c… |
| CVE-2026-47689 | 5.2 | 24.7 | FOGProject | fogproject | CWE-79 | FOGProject has stored XSS via unescaped inventory data in buildRow() rendered… |
| CVE-2026-60156 | 5.3 | 24.6 | Oracle Corporation | Oracle APEX | CWE-200 | Vulnerability in Oracle APEX (component: General). Supported versions that ar… |
| CVE-2026-47023 | 4.9 | 24.5 | Oracle Corporation | MySQL Server | CWE-400 | Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (com… |
| CVE-2026-65054 | 8.2 | 24.5 | MediaCMS | MediaCMS | CWE-863 | MediaCMS Private Media Metadata Disclosure via Playlist Ownership Loophole |
| CVE-2026-21575 | 8.0 | 24.4 | Atlassian | Sourcetree for Mac | CWE-94 | This High severity RCE (Remote Code Execution) vulnerability was introduced i… |
| CVE-2026-16374 | 7.5 | 24.4 | Mozilla | Firefox | CWE-200 | Information disclosure in the Framework component in DevTools |
| CVE-2026-16391 | 7.5 | 24.4 | Mozilla | Firefox | CWE-200 | Information disclosure in the Storage: IndexedDB component |
| CVE-2026-59850 | 7.5 | 24.5 | Red Hat | Red Hat Enterprise Linux 10 | CWE-416 | Libssh: libssh: use-after-free via data callbacks on closed channels |
| CVE-2026-60584 | 7.6 | 24.3 | Oracle Corporation | Oracle Transportation Management | CWE-284 | Vulnerability in the Oracle Transportation Management product of Oracle Suppl… |
| CVE-2026-64877 | 9.4 | 24.1 | Tenable, Inc. | Security Center | CWE-20 | An authenticated non-admin user can exploit a SQL injection flaw in the ticke… |
| CVE-2026-60827 | 7.4 | 24.1 | Oracle Corporation | Oracle iSupport | CWE-284 | Vulnerability in the Oracle iSupport product of Oracle E-Business Suite (comp… |
| CVE-2026-47060 | 6.5 | 24.1 | Oracle Corporation | Oracle Database Server | CWE-284 | Vulnerability in the JDBC component of Oracle Database Server. Supported vers… |
| CVE-2026-46984 | 5.3 | 24.1 | Oracle Corporation | Oracle Enterprise Manager Base Platform | CWE-284 | Vulnerability in the Oracle Enterprise Manager Base Platform product of Oracl… |
| CVE-2026-46985 | 5.3 | 24.1 | Oracle Corporation | Oracle Enterprise Manager Base Platform | CWE-284 | Vulnerability in the Oracle Enterprise Manager Base Platform product of Oracl… |
| CVE-2026-46986 | 5.3 | 24.1 | Oracle Corporation | Oracle Enterprise Manager Base Platform | CWE-284 | Vulnerability in the Oracle Enterprise Manager Base Platform product of Oracl… |
| CVE-2026-60342 | 5.3 | 24.1 | Oracle Corporation | Oracle Access Manager | CWE-269 | Vulnerability in the Oracle Access Manager product of Oracle Fusion Middlewar… |
| CVE-2026-60330 | 8.5 | 24.0 | Oracle Corporation | Oracle Identity Manager | CWE-284 | Vulnerability in the Oracle Identity Manager product of Oracle Fusion Middlew… |
| CVE-2026-60597 | 8.7 | 23.9 | Oracle Corporation | PeopleSoft Enterprise FIN Cash Management | CWE-284 | Vulnerability in the PeopleSoft Enterprise FIN Cash Management product of Ora… |
| CVE-2026-60725 | 7.4 | 23.9 | Oracle Corporation | MySQL Router | CWE-284 | Vulnerability in the MySQL Router product of Oracle MySQL (component: Router:… |
| CVE-2026-16390 | 9.1 | 23.7 | Mozilla | Firefox | CWE-693 | Mitigation bypass in the Enterprise Policies component |
| CVE-2026-61240 | 8.2 | 23.7 | Oracle Corporation | PeopleSoft Enterprise FIN Common Objects Argentina | CWE-200 | Vulnerability in the PeopleSoft Enterprise FIN Common Objects Argentina produ… |
| CVE-2026-16493 | 7.8 | 23.8 | Red Hat | Red Hat Ansible Automation Platform 2 | CWE-88 | Ansible-core: argument injection in ansible-galaxy collection install via git… |
| CVE-2026-62518 | 7.6 | 23.7 | Oracle Corporation | Oracle Production Scheduling | CWE-200 | Vulnerability in the Oracle Production Scheduling product of Oracle E-Busines… |
| CVE-2026-16449 | 2.1 | 23.8 | zsadmin2025 | ZS-Admin | CWE-74 | zsadmin2025 ZS-Admin com.zs.sys.dept.controller.SysDeptController page OrderI… |
| CVE-2026-16361 | 9.8 | 23.7 | Mozilla | Firefox | CWE-119 | Memory safety bugs fixed in Thunderbird ESR 140.13 |
| CVE-2026-64880 | 7.1 | 23.6 | Tenable, Inc. | Security Center | CWE-89 | Blind SQL Injection |
| CVE-2026-60528 | 7.6 | 23.6 | Oracle Corporation | Oracle WebLogic Server | CWE-284 | Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middlewa… |
| CVE-2026-15789 | 6.9 | 23.6 | moby | BuildKit | CWE-22 | Malicious client can bypass destination directory validation on local sources… |
| CVE-2026-61143 | 6.4 | 23.6 | Oracle Corporation | Oracle Communications Convergent Charging Controller | CWE-284 | Vulnerability in the Oracle Communications Convergent Charging Controller pro… |
| CVE-2026-60888 | 5.3 | 23.6 | Oracle Corporation | Oracle Work in Process | CWE-200 | Vulnerability in the Oracle Work in Process product of Oracle E-Business Suit… |
| CVE-2026-61050 | 5.3 | 23.6 | Oracle Corporation | Oracle Production Scheduling | CWE-200 | Vulnerability in the Oracle Production Scheduling product of Oracle E-Busines… |
| CVE-2026-62490 | 5.3 | 23.6 | Oracle Corporation | Oracle Contracts Integration | CWE-200 | Vulnerability in the Oracle Contracts Integration product of Oracle E-Busines… |
| CVE-2026-60471 | 8.3 | 23.4 | Oracle Corporation | WebCenter Content: Imaging | CWE-284 | Vulnerability in the WebCenter Content: Imaging product of Oracle Fusion Midd… |
| CVE-2026-59848 | 5.3 | 23.5 | Red Hat | Red Hat Enterprise Linux 10 | CWE-770 | Libssh: libssh: denial of service via sftp responses with unknown request ids |
| CVE-2026-60346 | 3.7 | 23.2 | Oracle Corporation | JD Edwards EnterpriseOne Tools | CWE-284 | Vulnerability in the JD Edwards EnterpriseOne Tools product of Oracle JD Edwa… |
| CVE-2026-16370 | 9.1 | 23.0 | Mozilla | Firefox | CWE-693 | Mitigation bypass in the DOM: Networking component |
| CVE-2026-47697 | 7.1 | 22.8 | Shelf-nu | shelf.nu | CWE-863 | Shelf has cross-organization IDOR: authenticated users could read/attach anot… |
| CVE-2026-46990 | 7.3 | 22.8 | Oracle Corporation | Oracle Enterprise Manager Base Platform | CWE-284 | Vulnerability in the Oracle Enterprise Manager Base Platform product of Oracl… |
| CVE-2026-60143 | 7.3 | 22.8 | Oracle Corporation | Oracle Workflow | CWE-284 | Vulnerability in the Oracle Workflow product of Oracle E-Business Suite (comp… |
| CVE-2026-61136 | 7.3 | 22.8 | Oracle Corporation | Oracle Commerce Platform | CWE-284 | Vulnerability in the Oracle Commerce Platform product of Oracle Commerce (com… |
| CVE-2026-61267 | 7.3 | 22.8 | Oracle Corporation | Oracle HCM Configuration Workbench | CWE-200 | Vulnerability in the Oracle HCM Configuration Workbench product of Oracle E-B… |
| CVE-2026-61271 | 7.3 | 22.8 | Oracle Corporation | Oracle Document Management and Collaboration | CWE-284 | Vulnerability in the Oracle Document Management and Collaboration product of … |
| CVE-2026-11876 | 5.0 | 22.7 | zenml-io | zenml-io/zenml | CWE-862 | Missing Authorization in get_deployed_stack Endpoint in zenml-io/zenml |
| CVE-2026-65009 | 5.3 | 22.7 | openremote | openremote | CWE-200 | OpenRemote before 1.26.2 Information Disclosure via Syslog REST API |
| CVE-2026-47059 | 3.7 | 22.6 | Oracle Corporation | Oracle Java SE | CWE-284 | Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM E… |
| CVE-2026-47021 | 5.3 | 22.6 | Oracle Corporation | Oracle Java SE | CWE-400 | Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM E… |
| CVE-2026-60801 | 5.9 | 22.4 | Oracle Corporation | Oracle E-Business Intelligence | CWE-284 | Vulnerability in the Oracle E-Business Intelligence product of Oracle E-Busin… |
| CVE-2026-59847 | 7.5 | 22.3 | Red Hat | Red Hat Enterprise Linux 10 | CWE-253 | Libssh: libssh: integrity downgrade via openssl aes-gcm tag verification |
| CVE-2026-60307 | 4.3 | 22.3 | Oracle Corporation | Oracle Coherence | CWE-200 | Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (co… |
| CVE-2026-60395 | 4.3 | 22.3 | Oracle Corporation | Oracle GoldenGate | CWE-200 | Vulnerability in Oracle GoldenGate (component: Admin Server Executable). Supp… |
| CVE-2026-60408 | 4.3 | 22.3 | Oracle Corporation | TimesTen In-Memory Database | CWE-200 | Vulnerability in the TimesTen In-Memory Database product of Oracle TimesTen I… |
| CVE-2026-61292 | 4.3 | 22.3 | Oracle Corporation | Oracle U.S. Federal Financials | CWE-200 | Vulnerability in the Oracle U.S. Federal Financials product of Oracle E-Busin… |
| CVE-2026-61315 | 4.3 | 22.3 | Oracle Corporation | Oracle EDI Gateway | CWE-200 | Vulnerability in the Oracle EDI Gateway product of Oracle E-Business Suite (c… |
| CVE-2026-61316 | 4.3 | 22.3 | Oracle Corporation | Oracle EDI Gateway | CWE-200 | Vulnerability in the Oracle EDI Gateway product of Oracle E-Business Suite (c… |
| CVE-2026-52475 | 6.1 | 22.2 | n/a | n/a | CWE-79 | Cross Site Scripting vulnerability in aiflowy <= 2.1.2 allows a remote attack… |
| CVE-2026-60214 | 8.7 | 22.1 | Oracle Corporation | Oracle Coherence | CWE-284 | Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (co… |
| CVE-2026-61324 | 7.7 | 22.1 | Oracle Corporation | Oracle Advanced Benefits | CWE-284 | Vulnerability in the Oracle Advanced Benefits product of Oracle E-Business Su… |
| CVE-2026-46997 | 6.5 | 22.1 | Oracle Corporation | Oracle Enterprise Manager Base Platform | CWE-306 | Vulnerability in the Oracle Enterprise Manager Base Platform product of Oracl… |
| CVE-2026-47039 | 6.5 | 22.1 | Oracle Corporation | Oracle Database Server | CWE-284 | Vulnerability in the Java VM component of Oracle Database Server. Supported v… |
| CVE-2026-62488 | 6.5 | 22.1 | Oracle Corporation | Oracle Contracts Integration | CWE-284 | Vulnerability in the Oracle Contracts Integration product of Oracle E-Busines… |
| CVE-2026-60420 | 8.5 | 22.0 | Oracle Corporation | Oracle Unified Directory | CWE-284 | Vulnerability in the Oracle Unified Directory product of Oracle Fusion Middle… |
| CVE-2026-60426 | 8.5 | 22.0 | Oracle Corporation | Oracle Unified Directory | CWE-284 | Vulnerability in the Oracle Unified Directory product of Oracle Fusion Middle… |
| CVE-2026-60444 | 8.5 | 22.0 | Oracle Corporation | Oracle WebCenter Content | CWE-284 | Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middle… |
| CVE-2026-60452 | 8.5 | 22.0 | Oracle Corporation | WebCenter Content: Imaging | CWE-284 | Vulnerability in the WebCenter Content: Imaging product of Oracle Fusion Midd… |
| CVE-2026-62513 | 8.5 | 22.0 | Oracle Corporation | Oracle Process Manufacturing Regulatory Management | CWE-284 | Vulnerability in the Oracle Process Manufacturing Regulatory Management produ… |
| CVE-2026-60451 | 7.1 | 22.0 | Oracle Corporation | WebCenter Content: Imaging | CWE-284 | Vulnerability in the WebCenter Content: Imaging product of Oracle Fusion Midd… |
| CVE-2026-60468 | 7.1 | 22.0 | Oracle Corporation | WebCenter Content: Imaging | CWE-284 | Vulnerability in the WebCenter Content: Imaging product of Oracle Fusion Midd… |
| CVE-2026-60739 | 7.1 | 22.0 | Oracle Corporation | Oracle Field Service | CWE-284 | Vulnerability in the Oracle Field Service product of Oracle E-Business Suite … |
| CVE-2026-60799 | 7.1 | 22.0 | Oracle Corporation | Oracle Compensation Workbench | CWE-284 | Vulnerability in the Oracle Compensation Workbench product of Oracle E-Busine… |
| CVE-2026-60800 | 7.1 | 22.0 | Oracle Corporation | Oracle Compensation Workbench | CWE-284 | Vulnerability in the Oracle Compensation Workbench product of Oracle E-Busine… |
| CVE-2026-61095 | 7.1 | 22.0 | Oracle Corporation | Oracle Communications Unified Inventory Management | CWE-284 | Vulnerability in the Oracle Communications Unified Inventory Management produ… |
| CVE-2026-61151 | 7.1 | 22.0 | Oracle Corporation | Oracle Commerce Guided Search / Oracle Commerce Experience Manager | CWE-284 | Vulnerability in the Oracle Commerce Guided Search / Oracle Commerce Experien… |
| CVE-2026-61299 | 7.1 | 22.0 | Oracle Corporation | Oracle Process Manufacturing Logistics | CWE-284 | Vulnerability in the Oracle Process Manufacturing Logistics product of Oracle… |
| CVE-2026-62557 | 7.1 | 22.0 | Oracle Corporation | Oracle HRMS (UK) | CWE-284 | Vulnerability in the Oracle HRMS (UK) product of Oracle E-Business Suite (com… |
| CVE-2026-62565 | 7.1 | 22.0 | Oracle Corporation | Oracle HRMS (US) | CWE-200 | Vulnerability in the Oracle HRMS (US) product of Oracle E-Business Suite (com… |
| CVE-2026-46975 | 5.8 | 22.1 | Oracle Corporation | Oracle Database Server | CWE-284 | Vulnerability in the RDBMS component of Oracle Database Server. Supported ver… |
| CVE-2026-60677 | 8.4 | 21.9 | Oracle Corporation | Oracle Common Application Components | CWE-284 | Vulnerability in the Oracle Common Application Components product of Oracle E… |
| CVE-2026-16397 | 6.5 | 21.9 | Mozilla | Firefox | CWE-1021 | Clickjacking issue in the WebExtensions component in Firefox for Android |
| CVE-2026-61049 | 7.1 | 21.8 | Oracle Corporation | Oracle Production Scheduling | CWE-284 | Vulnerability in the Oracle Production Scheduling product of Oracle E-Busines… |
| CVE-2026-16372 | 8.8 | 21.6 | Mozilla | Firefox | CWE-269 | Privilege escalation in the DOM: Content Processes component |
| CVE-2026-56145 | 6.5 | 21.6 | Elastic | Elasticsearch | CWE-400 | Uncontrolled Resource Consumption in Elasticsearch Leading to Denial of Service |
| CVE-2026-64823 | 2.1 | 21.6 | home-assistant | Home Assistant Core | CWE-79 | Home Assistant Core < 2026.5.4 XSS via Shelly media_player.py thumb URI |
| CVE-2026-59143 | 6.3 | 21.4 | EGOR | Data::RoaringBitmap::Shared | CWE-125 | Data::RoaringBitmap::Shared versions before 0.02 for Perl allow an out-of-bou… |
| CVE-2026-61044 | 4.7 | 21.4 | Oracle Corporation | Oracle Production Scheduling | CWE-284 | Vulnerability in the Oracle Production Scheduling product of Oracle E-Busines… |
| CVE-2026-60936 | 3.1 | 21.4 | Oracle Corporation | Oracle Labor Distribution | CWE-400 | Vulnerability in the Oracle Labor Distribution product of Oracle E-Business S… |