Vulnerability index

Browse CVEs

18 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Deserialization of Untrusted DataCWE-502 × clear
Platform Security For Java CRITICAL 9.9
CVE-2026-60369

Vulnerability in the Oracle Platform Security for Java product of Oracle Fusion Middleware (component: Centralized Thirdparty Jars). Supported versi…

No fix yet
Fix from $2,300 2026-07-22
Platform Security For Java CRITICAL 9.8
CVE-2026-60372

Vulnerability in the Oracle Platform Security for Java product of Oracle Fusion Middleware (component: Centralized Thirdparty Jars). Supported versi…

No fix yet
Fix from $2,300 2026-07-22
Platform Security For Java HIGH 8.8
CVE-2026-60373

Vulnerability in the Oracle Platform Security for Java product of Oracle Fusion Middleware (component: Centralized Thirdparty Jars). Supported versi…

No fix yet
Fix from $1,950 2026-07-22
Platform Security For Java HIGH 8.8
CVE-2026-60439

Vulnerability in the Oracle Platform Security for Java product of Oracle Fusion Middleware (component: Centralized Thirdparty Jars). Supported versi…

Mitigation only
Fix from $1,950 2026-07-22
Platform Security For Java HIGH 8.8
CVE-2026-61246

Vulnerability in the Oracle Platform Security for Java product of Oracle Fusion Middleware (component: Centralized Thirdparty Jars). Supported versi…

No fix yet
Fix from $1,950 2026-07-22
Platform Security For Java CRITICAL 10.0
CVE-2026-60366

Vulnerability in the Oracle Platform Security for Java product of Oracle Fusion Middleware (component: Centralized Thirdparty Jars). Supported versi…

No fix yet
Fix from $2,300 2026-07-22
Platform Security For Java CRITICAL 9.8
CVE-2026-60367

Vulnerability in the Oracle Platform Security for Java product of Oracle Fusion Middleware (component: Centralized Thirdparty Jars). Supported versi…

No fix yet
Fix from $2,300 2026-07-22
Jre HIGH 7.4
CVE-2026-47058

Vulnerability in Oracle Java SE (component: Scripting). Supported versions that are affected are Oracle Java SE: 8u491, 8u491-perf and 11.0.31. Dif…

No fix yet
Fix from $1,950 2026-07-21
Weblogic Server CRITICAL 9.8
CVE-2026-35300

Vulnerability in the WebLogic Server product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 12.2.1.4.0, 14.…

Mitigation only
Fix from $2,300 2026-06-17
Jre HIGH 7.5
CVE-2026-22016

Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JAXP). Supporte…

Mitigation only
Fix from $1,950 2026-04-21
Jre MEDIUM 5.9
CVE-2025-30761

Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Scripting). Supported versions that are…

Mitigation only
Fix from $1,600 2025-07-15
Agile Product Lifecycle Management HIGH 8.8
CVE-2024-20953 KEV

Vulnerability in the Oracle Agile PLM product of Oracle Supply Chain (component: Export). The supported version that is affected is 9.3.6. Easily e…

Mitigation only
Fix from $1,950 2024-02-17
Weblogic Server HIGH 7.5
CVE-2023-21839 KEVEPSS 100%

Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 12.2.1.3…

Patch available
Fix from $1,950 2023-01-18
Application Development Framework CRITICAL 9.8
CVE-2022-21445 KEVEPSS 62%

Vulnerability in the Oracle Application Development Framework (ADF) product of Oracle Fusion Middleware (component: ADF Faces). Supported versions t…

Mitigation only
Fix from $2,300 2022-04-19
Access Manager CRITICAL 9.8
CVE-2020-2555 KEVEPSS 97%

Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Caching,CacheStore,Invocation). Supported versions that are aff…

Fix: after 11.3.2
Fix from $2,300 2020-01-15
Weblogic Server CRITICAL 9.8
CVE-2018-3245EPSS 94%

Vulnerability in the Oracle WebLogic Server component of Oracle Fusion Middleware (subcomponent: WLS Core Components). Supported versions that are af…

Patch available
Fix from $2,300 2018-10-17
Weblogic Server CRITICAL 9.8
CVE-2018-2628 KEVEPSS 99%

Vulnerability in the Oracle WebLogic Server component of Oracle Fusion Middleware (subcomponent: WLS Core Components). Supported versions that are af…

Patch available
Fix from $2,300 2018-04-19
Virtual Desktop Infrastructure CRITICAL 9.8
CVE-2015-4852 KEVEPSS 96%

The WLS Security component in Oracle WebLogic Server 10.3.6.0, 12.1.2.0, 12.1.3.0, and 12.2.1.0 allows remote attackers to execute arbitrary commands…

Fix: after 3.5.2
Fix from $2,300 2015-11-18