VulnSea

Oracle Corporation has 387 CVEs on record. Disclosure cadence is accelerating: 387 in the last 90 days against 0 in the 90 before. The busiest recent month was September 2026 with 371. The median CVSS is 7.8 (high), with 41 rated critical. None have a confirmed exploitation report. The dominant weakness classes are CWE-284 (203) and CWE-269 (99). Most affected products: Oracle Business Intelligence Enterprise Edition (35), Oracle Commerce Guided Search / Oracle Commerce Experience Manager (27), Oracle BI Publisher (22).

CVEs per month

Last 12 months, by publish date

101112010203040506070809
Exploited share
0% vs 1% corpus
Median CVSS
7.8
Publish → KEV
—
Last 90 days
387 prev 0

Products

  • Oracle Business Intelligence Enterprise Edition 35
  • Oracle Commerce Guided Search / Oracle Commerce Experience Manager 27
  • Oracle BI Publisher 22
  • Siebel CRM Deployment 21
  • Oracle Database Server 13
  • Helidon 9
387
Total CVEs
41
Critical
0
CISA KEV
0
Exploited

Oracle Corporation vulnerabilities

CVEs affecting Oracle Corporation, newest first. Open any entry for full detail, references, and exploit status.

387 CVEsRSS

CVE-2026-83278Medium· 6.8
1w ago

Vulnerability in the Helidon product of Oracle Fusion Middleware (component: helidon-integrations-neo4j)

Vulnerability in the Helidon product of Oracle Fusion Middleware (component: helidon-integrations-neo4j). Supported versions that are affected are 3.0.0-3.2.20 and 4.0.0-4.5.4. Difficult to exploit vulnerability allows unauthenticated a…

▾ SunlitOracle Corporation · HelidonEPSS 0.21%via NVD
CVE-2026-83277High· 7.3
1w ago

Vulnerability in the Oracle Agile PLM MCAD Connector product of Oracle Supply Chain (component: CAX Client)

Vulnerability in the Oracle Agile PLM MCAD Connector product of Oracle Supply Chain (component: CAX Client). The supported version that is affected is 3.6. Easily exploitable vulnerability allows low privileged attacker with logon to t…

▾ TwilightOracle Corporation · Oracle Agile PLM MCAD ConnectorEPSS 0.15%via NVD
CVE-2026-83276High· 7.5
1w ago

Vulnerability in the Helidon product of Oracle Fusion Middleware (component: helidon-webclient-http2)

Vulnerability in the Helidon product of Oracle Fusion Middleware (component: helidon-webclient-http2). Supported versions that are affected are 4.0.0-4.5.4. Easily exploitable vulnerability allows unauthenticated attacker with network a…

▾ TwilightOracle Corporation · HelidonEPSS 0.46%via NVD
CVE-2026-83274Medium· 5.5
1w ago

Vulnerability in the Oracle Agile PLM MCAD Connector product of Oracle Supply Chain (component: CAX Client)

Vulnerability in the Oracle Agile PLM MCAD Connector product of Oracle Supply Chain (component: CAX Client). The supported version that is affected is 3.6. Easily exploitable vulnerability allows low privileged attacker with logon to t…

▾ SunlitOracle Corporation · Oracle Agile PLM MCAD ConnectorEPSS 0.15%via NVD
CVE-2026-83273High· 7.2
1w ago

Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: Platform Security)

Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: Platform Security). The supported version that is affected is 26.01.0.0.0. Easily exploitable vulnerability allows high privil…

▾ TwilightOracle Corporation · Oracle Business Intelligence Enterprise EditionEPSS 0.46%via NVD
CVE-2026-83272High· 8.5
1w ago

Vulnerability in the Oracle Text component of Oracle Database Server

Vulnerability in the Oracle Text component of Oracle Database Server. Supported versions that are affected are 19.3-19.32, 21.3-21.23 and 23.4.0-23.26.3. Difficult to exploit vulnerability allows low privileged attacker having Create I…

▾ TwilightOracle Corporation · Oracle Database ServerEPSS 0.32%via NVD
CVE-2026-83271High· 8.8
1w ago

Vulnerability in the RDBMS component of Oracle Database Server

Vulnerability in the RDBMS component of Oracle Database Server. Supported versions that are affected are 19.3-19.32, 21.3-21.23 and 23.4.0-23.26.3. Easily exploitable vulnerability allows low privileged attacker having Execute on DBMS_…

▾ TwilightOracle Corporation · Oracle Database ServerEPSS 0.42%via NVD
CVE-2026-83270High· 7.5
1w ago

Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: BI Platform Security)

Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: BI Platform Security). Supported versions that are affected are 8.2.0.0.0 and 26.01.0.0.0. Easily exploitable vulnerability al…

▾ TwilightOracle Corporation · Oracle Business Intelligence Enterprise EditionEPSS 0.39%via NVD
CVE-2026-83269Critical· 9.8
1w ago

Vulnerability in the Oracle BI Publisher product of Oracle Analytics (component: BI Platform Security)

Vulnerability in the Oracle BI Publisher product of Oracle Analytics (component: BI Platform Security). Supported versions that are affected are 8.2.0.0.0, 12.2.1.4.0 and 26.01.0.0.0. Easily exploitable vulnerability allows unauthentic…

▾ MidnightOracle Corporation · Oracle BI PublisherEPSS 0.48%via NVD
CVE-2026-83268Critical· 9.1
1w ago

Vulnerability in the Oracle BI Publisher product of Oracle Analytics (component: BI Platform Security)

Vulnerability in the Oracle BI Publisher product of Oracle Analytics (component: BI Platform Security). Supported versions that are affected are 8.2.0.0.0, 12.2.1.4.0 and 26.01.0.0.0. Easily exploitable vulnerability allows high privil…

▾ MidnightOracle Corporation · Oracle BI PublisherEPSS 0.46%via NVD
CVE-2026-83267High· 8.5
1w ago

Vulnerability in the Oracle BI Publisher product of Oracle Analytics (component: BI Publisher Security)

Vulnerability in the Oracle BI Publisher product of Oracle Analytics (component: BI Publisher Security). Supported versions that are affected are 8.2.0.0.0, 12.2.1.4.0 and 26.01.0.0.0. Easily exploitable vulnerability allows low privil…

▾ TwilightOracle Corporation · Oracle BI PublisherEPSS 0.29%via NVD
CVE-2026-83266High· 8.2
1w ago

Vulnerability in the Oracle JDeveloper product of Oracle Fusion Middleware (component: Resource Catalog Services)

Vulnerability in the Oracle JDeveloper product of Oracle Fusion Middleware (component: Resource Catalog Services). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Easily exploitable vulnerability allows unauthentica…

▾ TwilightOracle Corporation · Oracle JDeveloperEPSS 0.42%via NVD
CVE-2026-83265High· 8.2
1w ago

Vulnerability in the Oracle Web Services Manager product of Oracle Fusion Middleware (component: Web Services Agent)

Vulnerability in the Oracle Web Services Manager product of Oracle Fusion Middleware (component: Web Services Agent). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Easily exploitable vulnerability allows unauthent…

▾ TwilightOracle Corporation · Oracle Web Services ManagerEPSS 0.34%via NVD
CVE-2026-83264High· 8.4
1w ago

Vulnerability in the Oracle Product Lifecycle Analytics product of Oracle Supply Chain (component: Installation Issues)

Vulnerability in the Oracle Product Lifecycle Analytics product of Oracle Supply Chain (component: Installation Issues). The supported version that is affected is 3.6.1. Easily exploitable vulnerability allows low privileged attacker w…

▾ TwilightOracle Corporation · Oracle Product Lifecycle AnalyticsEPSS 0.14%via NVD
CVE-2026-83263High· 7.5
1w ago

Vulnerability in the Oracle Product Lifecycle Analytics product of Oracle Supply Chain (component: Installation Issues)

Vulnerability in the Oracle Product Lifecycle Analytics product of Oracle Supply Chain (component: Installation Issues). The supported version that is affected is 3.6.1. Difficult to exploit vulnerability allows low privileged attacker…

▾ TwilightOracle Corporation · Oracle Product Lifecycle AnalyticsEPSS 0.32%via NVD
CVE-2026-83262High· 7.5
1w ago

Vulnerability in the Oracle Product Lifecycle Analytics product of Oracle Supply Chain (component: Installation Issues)

Vulnerability in the Oracle Product Lifecycle Analytics product of Oracle Supply Chain (component: Installation Issues). The supported version that is affected is 3.6.1. Difficult to exploit vulnerability allows low privileged attacker…

▾ TwilightOracle Corporation · Oracle Product Lifecycle AnalyticsEPSS 0.32%via NVD
CVE-2026-83261Critical· 9.8
1w ago

Vulnerability in the Oracle Product Lifecycle Analytics product of Oracle Supply Chain (component: Core)

Vulnerability in the Oracle Product Lifecycle Analytics product of Oracle Supply Chain (component: Core). The supported version that is affected is 3.6.1. Easily exploitable vulnerability allows unauthenticated attacker with network ac…

▾ MidnightOracle Corporation · Oracle Product Lifecycle AnalyticsEPSS 0.48%via NVD
CVE-2026-83260Critical· 9.1
1w ago

Vulnerability in the Oracle Agile PLM product of Oracle Supply Chain (component: Event Java PX)

Vulnerability in the Oracle Agile PLM product of Oracle Supply Chain (component: Event Java PX). The supported version that is affected is 9.3.6. Easily exploitable vulnerability allows high privileged attacker with network access via …

▾ MidnightOracle Corporation · Oracle Agile PLMEPSS 0.46%via NVD
CVE-2026-83259High· 7.1
1w ago

Vulnerability in the Oracle Commerce Guided Search / Oracle Commerce Experience Manager product of Oracle Commerce (component: Forge)

Vulnerability in the Oracle Commerce Guided Search / Oracle Commerce Experience Manager product of Oracle Commerce (component: Forge). The supported version that is affected is 11.4.0. Easily exploitable vulnerability allows low privil…

▾ TwilightOracle Corporation · Oracle Commerce Guided Search / Oracle Commerce Experience ManagerEPSS 0.40%via NVD
CVE-2026-83258High· 8.1
1w ago

Vulnerability in the Oracle Commerce Guided Search / Oracle Commerce Experience Manager product of Oracle Commerce (component: Forge)

Vulnerability in the Oracle Commerce Guided Search / Oracle Commerce Experience Manager product of Oracle Commerce (component: Forge). The supported version that is affected is 11.4.0. Difficult to exploit vulnerability allows unauthen…

▾ TwilightOracle Corporation · Oracle Commerce Guided Search / Oracle Commerce Experience ManagerEPSS 0.37%via NVD
CVE-2026-83257High· 7.5
1w ago

Vulnerability in the Oracle Commerce Guided Search / Oracle Commerce Experience Manager product of Oracle Commerce (component: Forge)

Vulnerability in the Oracle Commerce Guided Search / Oracle Commerce Experience Manager product of Oracle Commerce (component: Forge). The supported version that is affected is 11.4.0. Difficult to exploit vulnerability allows low priv…

▾ TwilightOracle Corporation · Oracle Commerce Guided Search / Oracle Commerce Experience ManagerEPSS 0.32%via NVD
CVE-2026-83256High· 8.1
1w ago

Vulnerability in the Oracle Commerce Guided Search / Oracle Commerce Experience Manager product of Oracle Commerce (component: Forge)

Vulnerability in the Oracle Commerce Guided Search / Oracle Commerce Experience Manager product of Oracle Commerce (component: Forge). The supported version that is affected is 11.4.0. Difficult to exploit vulnerability allows unauthen…

▾ TwilightOracle Corporation · Oracle Commerce Guided Search / Oracle Commerce Experience ManagerEPSS 0.37%via NVD
CVE-2026-83255High· 8.1
1w ago

Vulnerability in the Oracle Commerce Guided Search / Oracle Commerce Experience Manager product of Oracle Commerce (component: Forge)

Vulnerability in the Oracle Commerce Guided Search / Oracle Commerce Experience Manager product of Oracle Commerce (component: Forge). The supported version that is affected is 11.4.0. Difficult to exploit vulnerability allows unauthen…

▾ TwilightOracle Corporation · Oracle Commerce Guided Search / Oracle Commerce Experience ManagerEPSS 0.37%via NVD
CVE-2026-83254High· 8.1
1w ago

Vulnerability in the Oracle Commerce Guided Search / Oracle Commerce Experience Manager product of Oracle Commerce (component: Forge)

Vulnerability in the Oracle Commerce Guided Search / Oracle Commerce Experience Manager product of Oracle Commerce (component: Forge). The supported version that is affected is 11.4.0. Difficult to exploit vulnerability allows unauthen…

▾ TwilightOracle Corporation · Oracle Commerce Guided Search / Oracle Commerce Experience ManagerEPSS 0.37%via NVD
CVE-2026-83253High· 7.8
1w ago

Vulnerability in the Oracle Commerce Guided Search / Oracle Commerce Experience Manager product of Oracle Commerce (component: Endeca Application Controller)

Vulnerability in the Oracle Commerce Guided Search / Oracle Commerce Experience Manager product of Oracle Commerce (component: Endeca Application Controller). The supported version that is affected is 11.4.0. Easily exploitable vulnera…

▾ TwilightOracle Corporation · Oracle Commerce Guided Search / Oracle Commerce Experience ManagerEPSS 0.16%via NVD
CVE-2026-83252High· 7.0
1w ago

Vulnerability in the Oracle Commerce Guided Search / Oracle Commerce Experience Manager product of Oracle Commerce (component: Forge)

Vulnerability in the Oracle Commerce Guided Search / Oracle Commerce Experience Manager product of Oracle Commerce (component: Forge). The supported version that is affected is 11.4.0. Difficult to exploit vulnerability allows unauthen…

▾ TwilightOracle Corporation · Oracle Commerce Guided Search / Oracle Commerce Experience ManagerEPSS 0.28%via NVD
CVE-2026-83251Medium· 6.5
1w ago

Vulnerability in the Oracle Commerce Guided Search / Oracle Commerce Experience Manager product of Oracle Commerce (component: Forge)

Vulnerability in the Oracle Commerce Guided Search / Oracle Commerce Experience Manager product of Oracle Commerce (component: Forge). The supported version that is affected is 11.4.0. Difficult to exploit vulnerability allows unauthen…

▾ SunlitOracle Corporation · Oracle Commerce Guided Search / Oracle Commerce Experience ManagerEPSS 0.34%via NVD
CVE-2026-83250Medium· 6.5
1w ago

Vulnerability in the Oracle Commerce Guided Search / Oracle Commerce Experience Manager product of Oracle Commerce (component: Forge)

Vulnerability in the Oracle Commerce Guided Search / Oracle Commerce Experience Manager product of Oracle Commerce (component: Forge). The supported version that is affected is 11.4.0. Difficult to exploit vulnerability allows unauthen…

▾ SunlitOracle Corporation · Oracle Commerce Guided Search / Oracle Commerce Experience ManagerEPSS 0.33%via NVD
CVE-2026-83249High· 7.8
1w ago

Vulnerability in the Oracle Commerce Guided Search / Oracle Commerce Experience Manager product of Oracle Commerce (component: Forge)

Vulnerability in the Oracle Commerce Guided Search / Oracle Commerce Experience Manager product of Oracle Commerce (component: Forge). The supported version that is affected is 11.4.0. Difficult to exploit vulnerability allows low priv…

▾ TwilightOracle Corporation · Oracle Commerce Guided Search / Oracle Commerce Experience ManagerEPSS 0.12%via NVD
CVE-2026-83248High· 8.2
1w ago

Vulnerability in the Oracle Commerce Guided Search / Oracle Commerce Experience Manager product of Oracle Commerce (component: Forge)

Vulnerability in the Oracle Commerce Guided Search / Oracle Commerce Experience Manager product of Oracle Commerce (component: Forge). The supported version that is affected is 11.4.0. Easily exploitable vulnerability allows unauthenti…

▾ TwilightOracle Corporation · Oracle Commerce Guided Search / Oracle Commerce Experience ManagerEPSS 0.43%via NVD
Oracle Corporation vulnerabilities (CVEs) — page 6 · VulnSea