oracle
2,128 known vulnerabilities affecting oracle products.
Products
e-business_suite 161
coherence 99
helidon 99
agile_product_lifecycle_management 88
commerce_guided_search 82
hyperion_financial_management 80
commerce_experience_manager 77
webcenter_content 77
hyperion_infrastructure_technology 68
siebel_crm 60
weblogic_server 52
mysql_cluster 45
mysql_server 41
enterprise_manager_base_platform 41
reports_developer 41
jd_edwards_enterpriseone_tools 39
human_resources_management_system 38
communications_instant_messaging_server 38
vm_virtualbox 38
webcenter_portal 36
hyperion_calculation_manager 36
hyperion_data_relationship_management 35
application_testing_suite 34
communications_evolved_communications_application_server 32
Vulnerabilities by priority
| CVE | Priority | EPSS | CVSS | KEV | What |
|---|---|---|---|---|---|
| CVE-2021-20322 | Medium | 6.8% | 7.4 | A flaw in the processing of received ICMP errors (ICMP fragment needed and ICMP … | |
| CVE-2020-11113 | Medium | 6.3% | 8.8 | FasterXML jackson-databind 2.x before 2.9.10.4 mishandles the interaction betwee… | |
| CVE-2020-36187 | Medium | 5.2% | 8.1 | FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction betwee… | |
| CVE-2020-36186 | Medium | 5.2% | 8.1 | FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction betwee… | |
| CVE-2020-36185 | Medium | 5.2% | 8.1 | FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction betwee… | |
| CVE-2020-36180 | Medium | 5.0% | 8.1 | FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction betwee… | |
| CVE-2020-36182 | Medium | 5.0% | 8.1 | FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction betwee… | |
| CVE-2020-36181 | Medium | 5.0% | 8.1 | FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction betwee… | |
| CVE-2020-36183 | Medium | 4.9% | 8.1 | FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction betwee… | |
| CVE-2020-36189 | Medium | 4.9% | 8.1 | FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction betwee… | |
| CVE-2020-9546 | Medium | 4.6% | 9.8 | FasterXML jackson-databind 2.x before 2.9.10.4 mishandles the interaction betwee… | |
| CVE-2020-14195 | Medium | 4.5% | 8.1 | FasterXML jackson-databind 2.x before 2.9.10.5 mishandles the interaction betwee… | |
| CVE-2020-14061 | Medium | 4.5% | 8.1 | FasterXML jackson-databind 2.x before 2.9.10.5 mishandles the interaction betwee… | |
| CVE-2019-3773 | Medium | 4.1% | 9.8 | Spring Web Services, versions 2.4.3, 3.0.4, and older unsupported versions of al… | |
| CVE-2020-11619 | Medium | 3.7% | 8.1 | FasterXML jackson-databind 2.x before 2.9.10.4 mishandles the interaction betwee… | |
| CVE-2020-11112 | Medium | 3.7% | 8.8 | FasterXML jackson-databind 2.x before 2.9.10.4 mishandles the interaction betwee… | |
| CVE-2020-10968 | Medium | 3.6% | 8.8 | FasterXML jackson-databind 2.x before 2.9.10.4 mishandles the interaction betwee… | |
| CVE-2021-45485 | Medium | 3.6% | 7.5 | In the IPv6 implementation in the Linux kernel before 5.13.3, net/ipv6/output_co… | |
| CVE-2020-11111 | Medium | 3.6% | 8.8 | FasterXML jackson-databind 2.x before 2.9.10.4 mishandles the interaction betwee… | |
| CVE-2020-10969 | Medium | 3.6% | 8.8 | FasterXML jackson-databind 2.x before 2.9.10.4 mishandles the interaction betwee… | |
| CVE-2020-10672 | Medium | 3.1% | 8.8 | FasterXML jackson-databind 2.x before 2.9.10.4 mishandles the interaction betwee… | |
| CVE-2018-1258 | Medium | 2.5% | 8.8 | Spring Framework version 5.0.5 when used in combination with any versions of Spr… | |
| CVE-2021-2351 | Medium | 2.4% | 8.3 | Vulnerability in the Advanced Networking Option component of Oracle Database Ser… | |
| CVE-2021-27365 | Medium | 2.1% | 7.8 | An issue was discovered in the Linux kernel through 5.11.3. Certain iSCSI data s… | |
| CVE-2015-0495 | Medium | 2.0% | 7.5 | Unspecified vulnerability in the Oracle Commerce Guided Search / Oracle Commerce… | |
| CVE-2021-41164 | Medium | 1.3% | 8.2 | CKEditor4 is an open source WYSIWYG HTML editor. In affected versions a vulnerab… | |
| CVE-2022-1011 | Medium | 1.2% | 7.8 | A use-after-free flaw was found in the Linux kernel’s FUSE filesystem in the way… | |
| CVE-2021-2316 | Medium | 1.0% | 8.1 | Vulnerability in the Oracle HRMS (France) product of Oracle E-Business Suite (co… | |
| CVE-2021-27364 | Medium | 1.0% | 7.1 | An issue was discovered in the Linux kernel through 5.11.3. drivers/scsi/scsi_tr… | |
| CVE-2026-46840 | Medium | 0.7% | 10.0 | Vulnerability in Oracle REST Data Services (component: Backend-as-a-Service). S… | |
| CVE-2026-22016 | Medium | 0.7% | 7.5 | Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Ente… | |
| CVE-2026-34282 | Medium | 0.6% | 7.5 | Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Ente… | |
| CVE-2025-30706 | Medium | 0.6% | 7.5 | Vulnerability in the MySQL Connectors product of Oracle MySQL (component: Connec… | |
| CVE-2026-13476 | Medium | 0.6% | 7.3 | IBM Informix Dynamic Server 14.10, 15.0, and 12.10 could allow an unauthenticate… | |
| CVE-2026-60264 | Medium | 0.5% | 9.8 | Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (compo… | |
| CVE-2026-60366 | Medium | 0.5% | 10.0 | Vulnerability in the Oracle Platform Security for Java product of Oracle Fusion … | |
| CVE-2026-60372 | Medium | 0.5% | 9.8 | Vulnerability in the Oracle Platform Security for Java product of Oracle Fusion … | |
| CVE-2026-60367 | Medium | 0.5% | 9.8 | Vulnerability in the Oracle Platform Security for Java product of Oracle Fusion … | |
| CVE-2026-60368 | Medium | 0.5% | 8.8 | Vulnerability in the Oracle Platform Security for Java product of Oracle Fusion … | |
| CVE-2026-60206 | Medium | 0.5% | 9.9 | Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware … | |
| CVE-2026-46924 | Medium | 0.5% | 9.8 | Vulnerability in Oracle Application Testing Suite. The supported version that … | |
| CVE-2026-60375 | Medium | 0.5% | 9.8 | Vulnerability in the Service Delivery Platform product of Oracle Fusion Middlewa… | |
| CVE-2026-60378 | Medium | 0.5% | 9.8 | Vulnerability in the Service Delivery Platform product of Oracle Fusion Middlewa… | |
| CVE-2026-60216 | Medium | 0.5% | 9.8 | Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (compo… | |
| CVE-2026-60286 | Medium | 0.5% | 9.8 | Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (compo… | |
| CVE-2026-60376 | Medium | 0.5% | 9.8 | Vulnerability in the Service Delivery Platform product of Oracle Fusion Middlewa… | |
| CVE-2026-60296 | Medium | 0.5% | 9.8 | Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (compo… | |
| CVE-2026-60212 | Medium | 0.5% | 9.8 | Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (compo… | |
| CVE-2026-47036 | Medium | 0.5% | 9.8 | Vulnerability in the Siebel CRM Development product of Oracle Siebel CRM (compon… | |
| CVE-2026-60532 | Medium | 0.5% | 9.8 | Vulnerability in the Oracle Identity Manager Connector product of Oracle Fusion … |