Oracle Corporation has 387 CVEs on record. Disclosure cadence is accelerating: 387 in the last 90 days against 0 in the 90 before. The busiest recent month was September 2026 with 371. The median CVSS is 7.8 (high), with 41 rated critical. None have a confirmed exploitation report. The dominant weakness classes are CWE-284 (203) and CWE-269 (99). Most affected products: Oracle Business Intelligence Enterprise Edition (35), Oracle Commerce Guided Search / Oracle Commerce Experience Manager (27), Oracle BI Publisher (22).
CVEs per month
Last 12 months, by publish date
- Exploited share
- 0% vs 1% corpus
- Median CVSS
- 7.8
- Publish → KEV
- —
- Last 90 days
- 387 prev 0
Weakness classes
Products
- Oracle Business Intelligence Enterprise Edition 35
- Oracle Commerce Guided Search / Oracle Commerce Experience Manager 27
- Oracle BI Publisher 22
- Siebel CRM Deployment 21
- Oracle Database Server 13
- Helidon 9
Worst active — by depth score
CVE-2026-83282Critical· 9.9Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: Platform Security)55CVE-2026-83058Critical· 9.9Vulnerability in the Oracle Internet Directory product of Oracle Fusion Middleware (component: OID LDAP Server)55CVE-2026-83057Critical· 9.9Vulnerability in the Oracle Internet Directory product of Oracle Fusion Middleware (component: OID LDAP Server)55CVE-2026-83056Critical· 9.9Vulnerability in the Oracle Internet Directory product of Oracle Fusion Middleware (component: OID LDAP Server)55CVE-2026-83055Critical· 9.9Vulnerability in the Oracle Internet Directory product of Oracle Fusion Middleware (component: OID LDAP Server)55
Oracle Corporation vulnerabilities
CVEs affecting Oracle Corporation, newest first. Open any entry for full detail, references, and exploit status.
387 CVEsRSS
CVE-2026-83308High· 8.1Vulnerability in the Oracle BI Publisher product of Oracle Analytics (component: BI Platform Security)
Vulnerability in the Oracle BI Publisher product of Oracle Analytics (component: BI Platform Security). Supported versions that are affected are 8.2.0.0.0, 12.2.1.4.0 and 26.01.0.0.0. Easily exploitable vulnerability allows low privile…
CVE-2026-83307High· 8.3Vulnerability in the Oracle BI Publisher product of Oracle Analytics (component: BI Platform Security)
Vulnerability in the Oracle BI Publisher product of Oracle Analytics (component: BI Platform Security). Supported versions that are affected are 8.2.0.0.0, 12.2.1.4.0 and 26.01.0.0.0. Easily exploitable vulnerability allows low privile…
CVE-2026-83306High· 8.8Vulnerability in the Oracle JDeveloper product of Oracle Fusion Middleware (component: Resource Catalog Services)
Vulnerability in the Oracle JDeveloper product of Oracle Fusion Middleware (component: Resource Catalog Services). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Easily exploitable vulnerability allows low privileg…
CVE-2026-83305High· 8.6Vulnerability in the Oracle BI Publisher product of Oracle Analytics (component: BI Platform Security)
Vulnerability in the Oracle BI Publisher product of Oracle Analytics (component: BI Platform Security). Supported versions that are affected are 8.2.0.0.0, 12.2.1.4.0 and 26.01.0.0.0. Easily exploitable vulnerability allows unauthentic…
CVE-2026-83304High· 8.9Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: Analytics Web General)
Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: Analytics Web General). Supported versions that are affected are 8.2.0.0.0, 12.2.1.4.0 and 26.01.0.0.0. Difficult to exploit v…
CVE-2026-83303High· 8.5Vulnerability in the Oracle BI Publisher product of Oracle Analytics (component: BI Platform Security)
Vulnerability in the Oracle BI Publisher product of Oracle Analytics (component: BI Platform Security). Supported versions that are affected are 8.2.0.0.0, 12.2.1.4.0 and 26.01.0.0.0. Easily exploitable vulnerability allows low privile…
CVE-2026-83302High· 8.5Vulnerability in the Oracle BI Publisher product of Oracle Analytics (component: BI Publisher Security)
Vulnerability in the Oracle BI Publisher product of Oracle Analytics (component: BI Publisher Security). The supported version that is affected is 12.2.1.4.0. Easily exploitable vulnerability allows low privileged attacker with network…
CVE-2026-83301High· 8.8Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: Service Administration UI)
Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: Service Administration UI). The supported version that is affected is 12.2.1.4.0. Easily exploitable vulnerability allows low …
CVE-2026-83300High· 7.1Vulnerability in the Oracle XML Gateway product of Oracle E-Business Suite (component: Install)
Vulnerability in the Oracle XML Gateway product of Oracle E-Business Suite (component: Install). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network acces…
CVE-2026-83299High· 8.1Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: Analytics Web General)
Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: Analytics Web General). The supported version that is affected is 12.2.1.4.0. Difficult to exploit vulnerability allows unauth…
CVE-2026-83298High· 7.2Vulnerability in the Oracle BI Publisher product of Oracle Analytics (component: BI Platform Security)
Vulnerability in the Oracle BI Publisher product of Oracle Analytics (component: BI Platform Security). The supported version that is affected is 12.2.1.4.0. Easily exploitable vulnerability allows high privileged attacker with network…
CVE-2026-83297High· 8.1Vulnerability in the Oracle BI Publisher product of Oracle Analytics (component: BI Platform Security)
Vulnerability in the Oracle BI Publisher product of Oracle Analytics (component: BI Platform Security). Supported versions that are affected are 8.2.0.0.0, 12.2.1.4.0 and 26.01.0.0.0. Easily exploitable vulnerability allows low privile…
CVE-2026-83296High· 7.5Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: BI Search)
Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: BI Search). Supported versions that are affected are 8.2.0.0.0, 12.2.1.4.0 and 26.01.0.0.0. Difficult to exploit vulnerability…
CVE-2026-83295High· 7.5Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: Presentation Services)
Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: Presentation Services). Supported versions that are affected are 8.2.0.0.0, 12.2.1.4.0 and 26.01.0.0.0. Difficult to exploit v…
CVE-2026-83294High· 7.8Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: Platform Security)
Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: Platform Security). Supported versions that are affected are 8.2.0.0.0, 12.2.1.4.0 and 26.01.0.0.0. Easily exploitable vulnera…
CVE-2026-83293High· 7.8Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: FNDN)
Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: FNDN). The supported version that is affected is 12.2.1.4.0. Easily exploitable vulnerability allows low privileged attacker w…
CVE-2026-83292High· 7.5Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: Platform Security)
Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: Platform Security). Supported versions that are affected are 8.2.0.0.0 and 26.01.0.0.0. Difficult to exploit vulnerability all…
CVE-2026-83291High· 7.8Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: Platform Security)
Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: Platform Security). Supported versions that are affected are 8.2.0.0.0 and 26.01.0.0.0. Easily exploitable vulnerability allow…
CVE-2026-83290High· 7.8Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: Platform Security)
Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: Platform Security). Supported versions that are affected are 8.2.0.0.0 and 26.01.0.0.0. Easily exploitable vulnerability allow…
CVE-2026-83289High· 7.5Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: Analytics Web General)
Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: Analytics Web General). Supported versions that are affected are 8.2.0.0.0, 12.2.1.4.0 and 26.01.0.0.0. Difficult to exploit v…
CVE-2026-83288High· 7.8Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: BI Search)
Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: BI Search). Supported versions that are affected are 8.2.0.0.0, 12.2.1.4.0 and 26.01.0.0.0. Easily exploitable vulnerability a…
CVE-2026-83287High· 7.7Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: Presentation Services)
Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: Presentation Services). Supported versions that are affected are 8.2.0.0.0, 12.2.1.4.0 and 26.01.0.0.0. Easily exploitable vul…
CVE-2026-83286High· 8.1Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: Platform Security)
Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: Platform Security). Supported versions that are affected are 8.2.0.0.0, 12.2.1.4.0 and 26.01.0.0.0. Difficult to exploit vulne…
CVE-2026-83285High· 8.3Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: BI Search)
Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: BI Search). The supported version that is affected is 12.2.1.4.0. Easily exploitable vulnerability allows low privileged attac…
CVE-2026-83284High· 8.6Vulnerability in the Oracle BI Publisher product of Oracle Analytics (component: BI Platform Security)
Vulnerability in the Oracle BI Publisher product of Oracle Analytics (component: BI Platform Security). Supported versions that are affected are 8.2.0.0.0, 12.2.1.4.0 and 26.01.0.0.0. Easily exploitable vulnerability allows unauthentic…
CVE-2026-83283Critical· 9.8Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: Platform Security)
Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: Platform Security). The supported version that is affected is 12.2.1.4.0. Easily exploitable vulnerability allows unauthentica…
CVE-2026-83282Critical· 9.9Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: Platform Security)
Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: Platform Security). The supported version that is affected is 12.2.1.4.0. Easily exploitable vulnerability allows low privileg…
CVE-2026-83281High· 7.5Vulnerability in the Helidon product of Oracle Fusion Middleware (component: helidon-webserver)
Vulnerability in the Helidon product of Oracle Fusion Middleware (component: helidon-webserver). Supported versions that are affected are 4.0.0-4.5.4. Easily exploitable vulnerability allows unauthenticated attacker with network access …
CVE-2026-83280High· 7.5Vulnerability in the Helidon product of Oracle Fusion Middleware (component: helidon-webserver-http2)
Vulnerability in the Helidon product of Oracle Fusion Middleware (component: helidon-webserver-http2). Supported versions that are affected are 4.0.0-4.5.4. Easily exploitable vulnerability allows unauthenticated attacker with network a…
CVE-2026-83279Medium· 5.5Vulnerability in the Oracle Agile PLM MCAD Connector product of Oracle Supply Chain (component: CAX Client)
Vulnerability in the Oracle Agile PLM MCAD Connector product of Oracle Supply Chain (component: CAX Client). The supported version that is affected is 3.6. Easily exploitable vulnerability allows low privileged attacker with logon to t…