Vulnerability index

Browse CVEs

5,746 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Access ControlCWE-284 × clear
HIGH 7.2 CVE-2026-46988 Vulnerability in the Oracle Enterprise Manager Base Platform product of Oracle Enterprise Manager (component: Connector Framework). Supported versio… Enterprise Manager Base Platform No fix yet Fix from $1,9502026-07-21 CRITICAL 9.8 CVE-2026-46924 Vulnerability in Oracle Application Testing Suite. The supported version that is affected is 13.3.0.1. Easily exploitable vulnerability allows unau… Application Testing Suite No fix yet Fix from $2,3002026-07-21 HIGH 7.5 CVE-2026-46941 Vulnerability in the Oracle Cost Management product of Oracle E-Business Suite (component: Cost Maintenance). Supported versions that are affected a… Cost Management No fix yet Fix from $1,9502026-07-21 HIGH 7.4 CVE-2026-46943 Vulnerability in the Oracle Retail EFTLink product of Oracle Retail Applications (component: Core/Plugin). Supported versions that are affected are … Retail Eftlink after 25.0.0 Fix from $1,9502026-07-21 HIGH 7.2 CVE-2026-46954 Vulnerability in the Oracle Human Resources product of Oracle E-Business Suite (component: Data Removal Tool). Supported versions that are affected … Human Resources after 12.2.15 Fix from $1,9502026-07-21 MEDIUM 5.9 CVE-2026-46968 Vulnerability in Oracle Java SE (component: JSSE). Supported versions that are affected are Oracle Java SE: 8u491, 8u491-perf, 11.0.31, 17.0.19, 21.… Jre No fix yet Fix from $1,6002026-07-21 MEDIUM 5.8 CVE-2026-46975 Vulnerability in the RDBMS component of Oracle Database Server. Supported versions that are affected are 19.3-19.31, 21.3-21.22 and 23.4.0-23.26.2.… Database Server after 23.26.2 Fix from $1,6002026-07-21 HIGH 7.5 CVE-2026-35287 Vulnerability in Oracle Application Testing Suite. The supported version that is affected is 13.3.0.1. Easily exploitable vulnerability allows unau… Application Testing Suite No fix yet Fix from $1,9502026-07-21 CRITICAL 9.8 CVE-2026-35290 Vulnerability in Oracle Application Testing Suite. The supported version that is affected is 13.3.0.1. Easily exploitable vulnerability allows unau… Application Testing Suite No fix yet Fix from $2,3002026-07-21 HIGH 8.9 CVE-2026-43945 FUXA is a web-based Process Visualization (SCADA/HMI/Dashboard) software. Versions 1.2.11 until 1.3.1 allow an unauthenticated remote attacker to ach… Mitigation only Fix from $1,9502026-07-21 CRITICAL 9.8 CVE-2026-46876 Vulnerability in Oracle Application Testing Suite. The supported version that is affected is 13.3.0.1. Easily exploitable vulnerability allows unau… Application Testing Suite No fix yet Fix from $2,3002026-07-21 MEDIUM 5.3 CVE-2026-46917 Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JSSE). Supporte… Graalvm No fix yet Fix from $1,6002026-07-21 HIGH 8.0 CVE-2026-46923 Vulnerability in the Oracle Public Sector Financials (International) product of Oracle E-Business Suite (component: Authorization). Supported versio… Public Sector Financials after 12.2.15 Fix from $1,9502026-07-21 MEDIUM 6.1 CVE-2026-34316 Vulnerability in the Oracle Commerce Service Center product of Oracle Commerce (component: Commerce Service Center). The supported version that is … Commerce Service Center No fix yet Fix from $1,6002026-07-21 HIGH 8.8 CVE-2026-47405 PraisonAI Platform is the platform layer for the PraisonAI multi-agent teams system. Versions prior to 0.1.4 have a broken workspace authorization ch… Patch available Fix from $1,9502026-07-21 HIGH 8.8 CVE-2026-47399 PraisonAI Platform is the platform layer for the PraisonAI multi-agent teams system. Prior to version 0.1.4, the workspace-scoped REST routes contain… Patch available Fix from $1,9502026-07-21 MEDIUM 6.3 CVE-2026-16451 A security flaw has been discovered in zsadmin2025 ZS-Admin up to b52e14536d59fda11e56e2536a1c32e82a38cead. This impacts an unknown function of the f… No fix yet Fix from $1,6002026-07-21 CRITICAL 9.8 CVE-2026-47396 PraisonAI is a multi-agent teams system. Prior to version 4.6.40, PraisonAI's call server exposes a network-facing agent control API without authenti… Patch available Fix from $2,3002026-07-21 CRITICAL 9.1 CVE-2026-28321 SolarWinds Serv-U is affected by a broken access control vulnerability that could allow arbitrary file read and write, which can then be used to esca… Serv U 2026.3+ Fix from $2,3002026-07-21 CRITICAL 9.1 CVE-2026-28304 SolarWinds Serv-U is affected by a remote code execution vulnerability that, when exploited, can allow the arbitrary execution of code remotely as ro… Serv U 2026.3+ Fix from $2,3002026-07-21 CRITICAL 9.1 CVE-2026-28306 SolarWinds Serv-U is affected by a privilege escalation vulnerability that allows a domain administrator to elevate their privileges to a system admi… Serv U 2026.3+ Fix from $2,3002026-07-21 CRITICAL 9.1 CVE-2026-28307 SolarWinds Serv-U is affected by a privilege escalation vulnerability that allows a domain user group to be elevated into an administrator group. The… Serv U 2026.3+ Fix from $2,3002026-07-21 HIGH 7.3 CVE-2026-16447 A vulnerability has been found in D-Link DNS-320 1.0.2. Impacted is an unknown function of the file /web/jquery/uploader/multi_uploadify.php. The man… No fix yet Fix from $1,9502026-07-21 CRITICAL 9.8 CVE-2025-66390 In Microsoft Azure API Management through 2025-10-17, when self-service signup (username/password Basic Authentication) is enabled in Tenant A, an at… No fix yet Fix from $2,3002026-07-21 CRITICAL 9.8 CVE-2026-16407 Mitigation bypass in the DOM: Service Workers component. This vulnerability was fixed in Firefox 153 and Thunderbird 153. Firefox 153.0 / 153.0.0+ Fix from $2,3002026-07-21 CRITICAL 9.8 CVE-2026-16387 Site isolation issue in the Networking component. This vulnerability was fixed in Firefox 153, Firefox ESR 140.13, Thunderbird 153, and Thunderbird 1… Firefox 140.13.0 / 153.0+ Fix from $2,3002026-07-21 HIGH 8.8 CVE-2026-16365 Privilege escalation in the DOM: Workers component. This vulnerability was fixed in Firefox 153 and Thunderbird 153. Firefox 153.0 / 153.0.0+ Fix from $1,9502026-07-21 HIGH 7.3 CVE-2026-16332 A vulnerability was detected in D-Link DNS-320 1.0.2. This impacts an unknown function of the file /mydlink/multi_uploadify.php. Performing a manipul… No fix yet Fix from $1,9502026-07-21 HIGH 7.3 CVE-2026-16329 A vulnerability was identified in D-Link DNS-320 1.0.2. Impacted is an unknown function of the file /photo_center/php/uploadify.php. The manipulation… No fix yet Fix from $1,9502026-07-21 HIGH 7.3 CVE-2026-16330 A weakness has been identified in D-Link DNS-320 1.0.2. The impacted element is an unknown function of the file /web/jquery/uploader/uploadify.php. T… No fix yet Fix from $1,9502026-07-21