Vulnerability index

Browse CVEs

7,362 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Cross-Site Request Forgery (CSRF)CWE-352 × clear
E Business Suite MEDIUM 5.4
CVE-2026-60957

Vulnerability in the Oracle Transportation Execution product of Oracle E-Business Suite (component: Internal Operations). Supported versions that ar…

Fix: after 12.2.15
Fix from $1,600 2026-07-21
Property Manager MEDIUM 5.4
CVE-2026-60911

Vulnerability in the Oracle Property Manager product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affect…

Fix: after 12.2.15
Fix from $1,600 2026-07-21
Work In Process HIGH 7.6
CVE-2026-60886

Vulnerability in the Oracle Work in Process product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affecte…

Fix: after 12.2.15
Fix from $1,950 2026-07-21
Knowledge Management MEDIUM 6.1
CVE-2026-60842

Vulnerability in the Oracle Knowledge Management product of Oracle E-Business Suite (component: Search). Supported versions that are affected are 12…

Fix: after 12.2.15
Fix from $1,600 2026-07-21
E Business Suite MEDIUM 6.1
CVE-2026-60685

Vulnerability in the Oracle iSupport product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affected are 1…

Fix: after 12.2.15
Fix from $1,600 2026-07-21
Webcenter Content HIGH 8.8
CVE-2026-60664

Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Content Server). Supported versions that are affected …

No fix yet
Fix from $1,950 2026-07-21
Webcenter Content HIGH 7.5
CVE-2026-60658

Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Content Server). Supported versions that are affected …

No fix yet
Fix from $1,950 2026-07-21
Webcenter Content HIGH 8.0
CVE-2026-60643

Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Content Server). Supported versions that are affected …

No fix yet
Fix from $1,950 2026-07-21
Webcenter Content HIGH 8.0
CVE-2026-60646

Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Web Content Management). Supported versions that are a…

No fix yet
Fix from $1,950 2026-07-21
Webcenter Content HIGH 8.0
CVE-2026-60648

Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Web Content Management). Supported versions that are a…

No fix yet
Fix from $1,950 2026-07-21
Webcenter Content HIGH 8.0
CVE-2026-60650

Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Web Content Management). Supported versions that are a…

No fix yet
Fix from $1,950 2026-07-21
Webcenter Content HIGH 8.8
CVE-2026-60634

Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Content Server). Supported versions that are affected …

No fix yet
Fix from $1,950 2026-07-21
Webcenter Content HIGH 8.8
CVE-2026-60635

Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Content Server). Supported versions that are affected …

No fix yet
Fix from $1,950 2026-07-21
Webcenter Content HIGH 8.8
CVE-2026-60636

Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Content Server). Supported versions that are affected …

Mitigation only
Fix from $1,950 2026-07-21
Webcenter Content HIGH 8.8
CVE-2026-60637

Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Content Server). Supported versions that are affected …

No fix yet
Fix from $1,950 2026-07-21
Webcenter Content HIGH 8.8
CVE-2026-60638

Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Content Server). Supported versions that are affected …

No fix yet
Fix from $1,950 2026-07-21
Webcenter Content HIGH 8.8
CVE-2026-60639

Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Content Server). Supported versions that are affected …

No fix yet
Fix from $1,950 2026-07-21
Webcenter Content HIGH 8.3
CVE-2026-60640

Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Content Server). Supported versions that are affected …

Mitigation only
Fix from $1,950 2026-07-21
Webcenter Content HIGH 7.6
CVE-2026-60642

Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Content Server). Supported versions that are affected …

No fix yet
Fix from $1,950 2026-07-21
Webcenter Content CRITICAL 9.3
CVE-2026-60631

Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Content Server). Supported versions that are affected …

No fix yet
Fix from $2,300 2026-07-21
Webcenter Content HIGH 8.8
CVE-2026-60633

Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Content Server). Supported versions that are affected …

No fix yet
Fix from $1,950 2026-07-21
Network Ai MEDIUM 5.9
CVE-2026-58482

Network-AI, a TypeScript/Node.js multi-agent orchestrator, has a shipped, exported, documented feature called `ApprovalInbox` (`lib/approval-inbox.ts…

Fix: 5.12.2+
Fix from $1,600 2026-07-20
Unclassified MEDIUM 5.4
CVE-2026-50743

A CSRF vulnerability exists in the `zone-include.php` script in Revive Adserver 6.0.7. Linking and unlinking banners or campaigns to zones could be t…

No fix yet
Fix from $1,600 2026-07-20
Unclassified MEDIUM 5.4
CVE-2026-13156

The MailerSend WordPress plugin before 1.0.8 does not perform a nonce check on its configuration-delete action (it verifies the manage_options capab…

No fix yet
Fix from $1,600 2026-07-20
Ux MEDIUM 5.4
CVE-2026-49215

Symfony UX is a JavaScript ecosystem for Symfony. From 2.22.0 until 2.36.0 and 3.1.0, Symfony\UX\LiveComponent\EventListener\LiveComponentSubscriber:…

Fix: 2.36.0+
Fix from $1,600 2026-07-17
Unclassified HIGH 8.8
CVE-2026-60025

Joomla Extension - joomdonation.com - User enumeration in Events Booking < 5.8.0 - The Joomla extension Events Booking prior version 5.8.0 had an fro…

No fix yet
Fix from $1,950 2026-07-17
Unclassified MEDIUM 5.4
CVE-2026-62236

grav-plugin-login before 3.8.11 contains a cross-site request forgery (CSRF) vulnerability in the login.regenerate2FASecret frontend task, which rege…

No fix yet
Fix from $1,600 2026-07-17
Dfxanalytics MEDIUM 6.5
CVE-2026-35143

HCL DFXAnalytics is affected by a Missing SameSite Attribute vulnerability. The application fails to set the "SameSite" attribute on session cookies …

Fix: after 3.0
Fix from $1,600 2026-07-16
Unclassified HIGH 8.8
CVE-2026-15005

The Loco Translate plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 2.8.5. This is due to missi…

Mitigation only
Fix from $1,950 2026-07-16
Unclassified MEDIUM 5.4
CVE-2026-11866

The Appointment Booking Plugin WordPress plugin before 5.6.3 does not validate a CSRF nonce on several state-changing actions handled by its central…

No fix yet
Fix from $1,600 2026-07-16