Vulnerability index

Browse CVEs

7,362 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Cross-Site Request Forgery (CSRF)CWE-352 × clear
MEDIUM 5.4 CVE-2026-60957 Vulnerability in the Oracle Transportation Execution product of Oracle E-Business Suite (component: Internal Operations). Supported versions that ar… E Business Suite after 12.2.15 Fix from $1,6002026-07-21 MEDIUM 5.4 CVE-2026-60911 Vulnerability in the Oracle Property Manager product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affect… Property Manager after 12.2.15 Fix from $1,6002026-07-21 HIGH 7.6 CVE-2026-60886 Vulnerability in the Oracle Work in Process product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affecte… Work In Process after 12.2.15 Fix from $1,9502026-07-21 MEDIUM 6.1 CVE-2026-60842 Vulnerability in the Oracle Knowledge Management product of Oracle E-Business Suite (component: Search). Supported versions that are affected are 12… Knowledge Management after 12.2.15 Fix from $1,6002026-07-21 MEDIUM 6.1 CVE-2026-60685 Vulnerability in the Oracle iSupport product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affected are 1… E Business Suite after 12.2.15 Fix from $1,6002026-07-21 HIGH 8.8 CVE-2026-60664 Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Content Server). Supported versions that are affected … Webcenter Content No fix yet Fix from $1,9502026-07-21 HIGH 7.5 CVE-2026-60658 Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Content Server). Supported versions that are affected … Webcenter Content No fix yet Fix from $1,9502026-07-21 HIGH 8.0 CVE-2026-60643 Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Content Server). Supported versions that are affected … Webcenter Content No fix yet Fix from $1,9502026-07-21 HIGH 8.0 CVE-2026-60646 Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Web Content Management). Supported versions that are a… Webcenter Content No fix yet Fix from $1,9502026-07-21 HIGH 8.0 CVE-2026-60648 Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Web Content Management). Supported versions that are a… Webcenter Content No fix yet Fix from $1,9502026-07-21 HIGH 8.0 CVE-2026-60650 Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Web Content Management). Supported versions that are a… Webcenter Content No fix yet Fix from $1,9502026-07-21 HIGH 8.8 CVE-2026-60634 Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Content Server). Supported versions that are affected … Webcenter Content No fix yet Fix from $1,9502026-07-21 HIGH 8.8 CVE-2026-60635 Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Content Server). Supported versions that are affected … Webcenter Content No fix yet Fix from $1,9502026-07-21 HIGH 8.8 CVE-2026-60636 Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Content Server). Supported versions that are affected … Webcenter Content Mitigation only Fix from $1,9502026-07-21 HIGH 8.8 CVE-2026-60637 Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Content Server). Supported versions that are affected … Webcenter Content No fix yet Fix from $1,9502026-07-21 HIGH 8.8 CVE-2026-60638 Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Content Server). Supported versions that are affected … Webcenter Content No fix yet Fix from $1,9502026-07-21 HIGH 8.8 CVE-2026-60639 Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Content Server). Supported versions that are affected … Webcenter Content No fix yet Fix from $1,9502026-07-21 HIGH 8.3 CVE-2026-60640 Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Content Server). Supported versions that are affected … Webcenter Content Mitigation only Fix from $1,9502026-07-21 HIGH 7.6 CVE-2026-60642 Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Content Server). Supported versions that are affected … Webcenter Content No fix yet Fix from $1,9502026-07-21 CRITICAL 9.3 CVE-2026-60631 Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Content Server). Supported versions that are affected … Webcenter Content No fix yet Fix from $2,3002026-07-21 HIGH 8.8 CVE-2026-60633 Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Content Server). Supported versions that are affected … Webcenter Content No fix yet Fix from $1,9502026-07-21 MEDIUM 5.9 CVE-2026-58482 Network-AI, a TypeScript/Node.js multi-agent orchestrator, has a shipped, exported, documented feature called `ApprovalInbox` (`lib/approval-inbox.ts… Network Ai 5.12.2+ Fix from $1,6002026-07-20 MEDIUM 5.4 CVE-2026-50743 A CSRF vulnerability exists in the `zone-include.php` script in Revive Adserver 6.0.7. Linking and unlinking banners or campaigns to zones could be t… No fix yet Fix from $1,6002026-07-20 MEDIUM 5.4 CVE-2026-13156 The MailerSend WordPress plugin before 1.0.8 does not perform a nonce check on its configuration-delete action (it verifies the manage_options capab… No fix yet Fix from $1,6002026-07-20 MEDIUM 5.4 CVE-2026-49215 Symfony UX is a JavaScript ecosystem for Symfony. From 2.22.0 until 2.36.0 and 3.1.0, Symfony\UX\LiveComponent\EventListener\LiveComponentSubscriber:… Ux 2.36.0+ Fix from $1,6002026-07-17 HIGH 8.8 CVE-2026-60025 Joomla Extension - joomdonation.com - User enumeration in Events Booking < 5.8.0 - The Joomla extension Events Booking prior version 5.8.0 had an fro… No fix yet Fix from $1,9502026-07-17 MEDIUM 5.4 CVE-2026-62236 grav-plugin-login before 3.8.11 contains a cross-site request forgery (CSRF) vulnerability in the login.regenerate2FASecret frontend task, which rege… No fix yet Fix from $1,6002026-07-17 MEDIUM 6.5 CVE-2026-35143 HCL DFXAnalytics is affected by a Missing SameSite Attribute vulnerability. The application fails to set the "SameSite" attribute on session cookies … Dfxanalytics after 3.0 Fix from $1,6002026-07-16 HIGH 8.8 CVE-2026-15005 The Loco Translate plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 2.8.5. This is due to missi… Mitigation only Fix from $1,9502026-07-16 MEDIUM 5.4 CVE-2026-11866 The Appointment Booking Plugin WordPress plugin before 5.6.3 does not validate a CSRF nonce on several state-changing actions handled by its central… No fix yet Fix from $1,6002026-07-16