VulnSea

Tagged “nvd”

CVEs tagged nvd, newest first.

28987 CVEsRSS

CVE-2026-82998Critical· 9.9
2w ago

Vulnerability in the Service Delivery Platform product of Oracle Fusion Middleware (component: Messaging Enabler)

Vulnerability in the Service Delivery Platform product of Oracle Fusion Middleware (component: Messaging Enabler). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Easily exploitable vulnerability allows low privileg…

▾ MidnightOracle Corporation · Service Delivery PlatformEPSS 0.42%via NVD
CVE-2026-82997Critical· 9.9
2w ago

Vulnerability in the Service Delivery Platform product of Oracle Fusion Middleware (component: Messaging Enabler)

Vulnerability in the Service Delivery Platform product of Oracle Fusion Middleware (component: Messaging Enabler). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Easily exploitable vulnerability allows low privileg…

▾ MidnightOracle Corporation · Service Delivery PlatformEPSS 0.42%via NVD
CVE-2026-82996High· 7.8
2w ago

Vulnerability in the Oracle Platform Security for Java product of Oracle Fusion Middleware (component: Centralized Thirdparty Jars)

Vulnerability in the Oracle Platform Security for Java product of Oracle Fusion Middleware (component: Centralized Thirdparty Jars). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Easily exploitable vulnerability a…

▾ TwilightOracle Corporation · Oracle Platform Security for JavaEPSS 0.14%via NVD
CVE-2026-82995Critical· 9.8
2w ago

Vulnerability in the Oracle Platform Security for Java product of Oracle Fusion Middleware (component: Centralized Thirdparty Jars)

Vulnerability in the Oracle Platform Security for Java product of Oracle Fusion Middleware (component: Centralized Thirdparty Jars). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Easily exploitable vulnerability a…

▾ MidnightOracle Corporation · Oracle Platform Security for JavaEPSS 0.48%via NVD
CVE-2026-82994Critical· 9.8
2w ago

Vulnerability in the Oracle Platform Security for Java product of Oracle Fusion Middleware (component: Centralized Thirdparty Jars)

Vulnerability in the Oracle Platform Security for Java product of Oracle Fusion Middleware (component: Centralized Thirdparty Jars). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Easily exploitable vulnerability a…

▾ MidnightOracle Corporation · Oracle Platform Security for JavaEPSS 0.48%via NVD
CVE-2026-82993High· 8.5
2w ago

Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Business Interlink)

Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Business Interlink). Supported versions that are affected are 8.61-8.63. Easily exploitable vulnerability allows low privileged attacker wit…

▾ TwilightOracle Corporation · PeopleSoft Enterprise PeopleToolsEPSS 0.29%via NVD
CVE-2026-82992High· 7.8
2w ago

Vulnerability in the Siebel CRM Deployment product of Oracle Siebel CRM (component: Installation)

Vulnerability in the Siebel CRM Deployment product of Oracle Siebel CRM (component: Installation). Supported versions that are affected are 17.0-26.7. Easily exploitable vulnerability allows low privileged attacker with logon to the inf…

▾ Twilightoracle · siebel_crmEPSS 0.16%via NVD
CVE-2026-81925Medium· 6.1⚖ disputed
2w ago

Concrete CMS before 9.5.3 improperly neutralized a user-supplied custom date format when rendering conversation messages, resulting in reflected cross-site scripting

Concrete CMS before 9.5.3 improperly neutralized a user-supplied custom date format when rendering conversation messages, resulting in reflected cross-site scripting. An attacker could execute arbitrary JavaScript in the browser of a use…

▾ Sunlitconcretecms · concrete_cmsEPSS 0.27%via NVD
CVE-2026-76820High· 7.7
2w ago

OpenCTI is an open source platform for managing cyber threat intelligence knowledge and observables

OpenCTI is an open source platform for managing cyber threat intelligence knowledge and observables. Prior to 7.260701.0, the synchronizerFetch GraphQL query called fetchRemoteStreams after checking only that a remote stream URL used HTT…

▾ TwilightOpenCTI-Platform · openctiEPSS 0.41%via NVD
CVE-2026-76796Medium· 4.0PoC
2w ago

The LoadImageAsPngBase64 endpoint of the Newell Brands DYMO Connect Desktop local web service accepts a file path parameter without adequate validation, allowing a crafted path to read arbitrary image files from the host filesystem outsi…

The LoadImageAsPngBase64 endpoint of the Newell Brands DYMO Connect Desktop local web service accepts a file path parameter without adequate validation, allowing a crafted path to read arbitrary image files from the host filesystem outsi…

▾ TwilightNewell Brands · DYMO Connect DesktopEPSS 0.18%via NVD
CVE-2026-73966High· 7.2
2w ago

Vulnerability in the Siebel Apps - Marketing product of Oracle Siebel CRM (component: Marketing)

Vulnerability in the Siebel Apps - Marketing product of Oracle Siebel CRM (component: Marketing). Supported versions that are affected are 17.0-26.7. Easily exploitable vulnerability allows high privileged attacker with network access v…

▾ TwilightOracle Corporation · Siebel Apps - MarketingEPSS 0.46%via NVD
CVE-2026-73965Medium· 6.8
2w ago

Vulnerability in the Siebel CRM Deployment product of Oracle Siebel CRM (component: Cloud Gateway)

Vulnerability in the Siebel CRM Deployment product of Oracle Siebel CRM (component: Cloud Gateway). Supported versions that are affected are 17.0-26.7. Difficult to exploit vulnerability allows low privileged attacker with network acces…

▾ Sunlitoracle · siebel_crmEPSS 0.29%via NVD
CVE-2026-73963Critical· 9.8
2w ago

Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion Middleware (component: Portlet Services)

Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion Middleware (component: Portlet Services). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Easily exploitable vulnerability allows unauthenticated…

▾ Midnightoracle · webcenter_portalEPSS 0.51%via NVD
CVE-2026-73962Critical· 9.6
2w ago

Vulnerability in the Oracle Access Manager product of Oracle Fusion Middleware (component: Authentication Engine)

Vulnerability in the Oracle Access Manager product of Oracle Fusion Middleware (component: Authentication Engine). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.1.0. Easily exploitable vulnerability allows low privileg…

▾ Midnightoracle · access_managerEPSS 0.36%via NVD
CVE-2026-73961Critical· 9.8
2w ago

Vulnerability in the Oracle JDeveloper product of Oracle Fusion Middleware (component: ADF Faces)

Vulnerability in the Oracle JDeveloper product of Oracle Fusion Middleware (component: ADF Faces). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Easily exploitable vulnerability allows unauthenticated attacker wit…

▾ MidnightOracle Corporation · Oracle JDeveloperEPSS 0.48%via NVD
CVE-2026-73960High· 7.5
2w ago

Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Ren Server)

Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Ren Server). Supported versions that are affected are 8.61-8.63. Easily exploitable vulnerability allows unauthenticated attacker with netwo…

▾ TwilightOracle Corporation · PeopleSoft Enterprise PeopleToolsEPSS 0.46%via NVD
CVE-2026-73959High· 8.8
2w ago

Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion Middleware (component: Composer)

Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion Middleware (component: Composer). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Easily exploitable vulnerability allows low privileged attacker…

▾ Twilightoracle · webcenter_portalEPSS 0.43%via NVD
CVE-2026-73958High· 8.1
2w ago

Vulnerability in the Oracle Access Manager product of Oracle Fusion Middleware (component: Authentication Engine)

Vulnerability in the Oracle Access Manager product of Oracle Fusion Middleware (component: Authentication Engine). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Difficult to exploit vulnerability allows unauthenti…

▾ Twilightoracle · access_managerEPSS 0.39%via NVD
CVE-2026-73957Critical· 9.3
2w ago

Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion Middleware (component: Portlet Services)

Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion Middleware (component: Portlet Services). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Easily exploitable vulnerability allows unauthenticated…

▾ Midnightoracle · webcenter_portalEPSS 0.38%via NVD
CVE-2026-73956Critical· 9.8
2w ago

Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion Middleware (component: Composer)

Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion Middleware (component: Composer). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Easily exploitable vulnerability allows unauthenticated attacke…

▾ Midnightoracle · webcenter_portalEPSS 0.51%via NVD
CVE-2026-73955High· 7.3
2w ago

Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Charting)

Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Charting). Supported versions that are affected are 8.61-8.63. Easily exploitable vulnerability allows low privileged attacker with network …

▾ TwilightOracle Corporation · PeopleSoft Enterprise PeopleToolsEPSS 0.32%via NVD
CVE-2026-73954High· 8.1
2w ago

Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Business Interlink)

Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Business Interlink). Supported versions that are affected are 8.61-8.63. Difficult to exploit vulnerability allows unauthenticated attacker …

▾ TwilightOracle Corporation · PeopleSoft Enterprise PeopleToolsEPSS 0.37%via NVD
CVE-2026-73953Critical· 9.8
2w ago

Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion Middleware (component: Portlet Services)

Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion Middleware (component: Portlet Services). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Easily exploitable vulnerability allows unauthenticated…

▾ Midnightoracle · webcenter_portalEPSS 0.51%via NVD
CVE-2026-73952Critical· 9.1
2w ago

Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion Middleware (component: Portlet Services)

Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion Middleware (component: Portlet Services). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Easily exploitable vulnerability allows unauthenticated…

▾ Midnightoracle · webcenter_portalEPSS 0.43%via NVD
CVE-2026-73951High· 8.1
2w ago

Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion Middleware (component: Portlet Services)

Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion Middleware (component: Portlet Services). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Difficult to exploit vulnerability allows unauthenticat…

▾ Twilightoracle · webcenter_portalEPSS 0.39%via NVD
CVE-2026-73950Critical· 9.8
2w ago

Vulnerability in the Oracle Access Manager product of Oracle Fusion Middleware (component: Authentication Engine)

Vulnerability in the Oracle Access Manager product of Oracle Fusion Middleware (component: Authentication Engine). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.1.0. Easily exploitable vulnerability allows unauthentica…

▾ Midnightoracle · access_managerEPSS 0.51%via NVD
CVE-2026-73949High· 8.8
2w ago

Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion Middleware (component: Portlet Services)

Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion Middleware (component: Portlet Services). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Easily exploitable vulnerability allows low privileged …

▾ Twilightoracle · webcenter_portalEPSS 0.43%via NVD
CVE-2026-73948Critical· 9.9
2w ago

Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion Middleware (component: Composer)

Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion Middleware (component: Composer). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Easily exploitable vulnerability allows low privileged attacker…

▾ Midnightoracle · webcenter_portalEPSS 0.43%via NVD
CVE-2026-73947Critical· 9.8
2w ago

Vulnerability in the Oracle Access Manager product of Oracle Fusion Middleware (component: Authentication Engine)

Vulnerability in the Oracle Access Manager product of Oracle Fusion Middleware (component: Authentication Engine). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Easily exploitable vulnerability allows unauthentica…

▾ Midnightoracle · access_managerEPSS 0.51%via NVD
CVE-2026-73946Critical· 9.1
2w ago

Vulnerability in the Oracle Access Manager product of Oracle Fusion Middleware (component: Authentication Engine)

Vulnerability in the Oracle Access Manager product of Oracle Fusion Middleware (component: Authentication Engine). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.1.0. Easily exploitable vulnerability allows high privile…

▾ Midnightoracle · access_managerEPSS 0.49%via NVD
CVEs tagged “nvd” — page 267 · VulnSea