Security
CVE Feed
Latest vulnerabilities from the National Vulnerability Database.
56907
Total
4512
Critical
16897
High
16715
Medium
| CVE ID | Severity | Score | Description | Published |
|---|---|---|---|---|
| CVE-2026-83003 | HIGH | 8.5 | Vulnerability in the Oracle WebCenter Enterprise Capture product of Oracle Fusion Middleware (component: Client Bundle). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Easily … | Sep 15, 2026 |
| CVE-2026-83002 | HIGH | 8.5 | Vulnerability in the Oracle Access Manager product of Oracle Fusion Middleware (component: Authentication Engine). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.1.0. Difficult to … | Sep 15, 2026 |
| CVE-2026-83001 | CRITICAL | 9.1 | Vulnerability in the Oracle Access Manager product of Oracle Fusion Middleware (component: Authentication Engine). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.1.0. Easily exploitable … | Sep 15, 2026 |
| CVE-2026-83000 | CRITICAL | 9.8 | Vulnerability in the Service Delivery Platform product of Oracle Fusion Middleware (component: Messaging Enabler). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Easily exploitable … | Sep 15, 2026 |
| CVE-2026-82999 | CRITICAL | 9.9 | Vulnerability in the Service Delivery Platform product of Oracle Fusion Middleware (component: Messaging Enabler). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Easily exploitable … | Sep 15, 2026 |
| CVE-2026-82998 | CRITICAL | 9.9 | Vulnerability in the Service Delivery Platform product of Oracle Fusion Middleware (component: Messaging Enabler). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Easily exploitable … | Sep 15, 2026 |
| CVE-2026-82997 | CRITICAL | 9.9 | Vulnerability in the Service Delivery Platform product of Oracle Fusion Middleware (component: Messaging Enabler). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Easily exploitable … | Sep 15, 2026 |
| CVE-2026-82996 | HIGH | 7.8 | Vulnerability in the Oracle Platform Security for Java product of Oracle Fusion Middleware (component: Centralized Thirdparty Jars). Supported versions that are affected are 12.2.1.4.0 and … | Sep 15, 2026 |
| CVE-2026-82995 | CRITICAL | 9.8 | Vulnerability in the Oracle Platform Security for Java product of Oracle Fusion Middleware (component: Centralized Thirdparty Jars). Supported versions that are affected are 12.2.1.4.0 and … | Sep 15, 2026 |
| CVE-2026-82994 | CRITICAL | 9.8 | Vulnerability in the Oracle Platform Security for Java product of Oracle Fusion Middleware (component: Centralized Thirdparty Jars). Supported versions that are affected are 12.2.1.4.0 and … | Sep 15, 2026 |
| CVE-2026-82993 | HIGH | 8.5 | Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Business Interlink). Supported versions that are affected are 8.61-8.63. Easily exploitable vulnerability allows low … | Sep 15, 2026 |
| CVE-2026-82992 | HIGH | 7.8 | Vulnerability in the Siebel CRM Deployment product of Oracle Siebel CRM (component: Installation). Supported versions that are affected are 17.0-26.7. Easily exploitable vulnerability allows low … | Sep 15, 2026 |
| CVE-2026-81925 | UNKNOWN | — | Concrete CMS before 9.5.3 improperly neutralized a user-supplied custom date format when rendering conversation messages, resulting in reflected cross-site scripting. An attacker could execute arbitrary … | Sep 15, 2026 |
| CVE-2026-76821 | UNKNOWN | — | OpenCTI is an open source platform for managing cyber threat intelligence knowledge and observables. Prior to 7.260706.0, the JSON ingestion mapper's extractWithRegexp formula function compiled … | Sep 15, 2026 |
| CVE-2026-76820 | HIGH | 7.7 | OpenCTI is an open source platform for managing cyber threat intelligence knowledge and observables. Prior to 7.260701.0, the synchronizerFetch GraphQL query called fetchRemoteStreams after checking … | Sep 15, 2026 |
| CVE-2026-76796 | MEDIUM | 4.0 | The LoadImageAsPngBase64 endpoint of the Newell Brands DYMO Connect Desktop local web service accepts a file path parameter without adequate validation, allowing a crafted path … | Sep 15, 2026 |
| CVE-2026-76707 | MEDIUM | 4.3 | A vulnerability in HPE Networking EdgeConnect SD-WAN Gateways could allow an unauthenticated adjacent attacker to view some system memory contents. Successful exploitation could allow an … | Sep 15, 2026 |
| CVE-2026-76706 | MEDIUM | 5.3 | A vulnerability in the API endpoint of HPE Networking EdgeConnect SD-WAN Orchestrator could allow an unauthenticated remote attacker to obtain sensitive information. Successful exploitation could … | Sep 15, 2026 |
| CVE-2026-76705 | MEDIUM | 5.5 | A buffer overflow vulnerability exists in the API endpoint of HPE Networking EdgeConnect SD-WAN Gateways. Successful exploitation could allow an authenticated remote attacker with Admin … | Sep 15, 2026 |
| CVE-2026-76704 | MEDIUM | 5.5 | A vulnerability in the web-based management interface of the EdgeConnect SD-WAN Orchestrator could allow an authenticated remote attacker to execute arbitrary script code in a … | Sep 15, 2026 |
| CVE-2026-76703 | MEDIUM | 5.5 | A buffer overflow vulnerability exists in the web-based management interface of HPE Networking EdgeConnect SD-WAN Gateways that could allow an authenticated attacker with administrative access … | Sep 15, 2026 |
| CVE-2026-76702 | MEDIUM | 5.8 | A vulnerability in the operating system of HPE Networking EdgeConnect SD-WAN Gateways could allow an authenticated local attacker to cause a denial-of-service. Successful exploitation could … | Sep 15, 2026 |
| CVE-2026-76701 | MEDIUM | 5.9 | A vulnerability in the API endpoint of HPE Networking EdgeConnect SD-WAN Gateways could allow an unauthenticated remote attacker to access sensitive information. Successful exploitation could … | Sep 15, 2026 |
| CVE-2026-76700 | MEDIUM | 5.9 | Vulnerabilities in HPE Networking EdgeConnect SD-WAN Gateways could allow an unauthenticated remote attacker to cause a denial-of-service. Successful exploitation could allow an attacker to interrupt … | Sep 15, 2026 |
| CVE-2026-76699 | MEDIUM | 6.4 | A buffer overflow vulnerability exists in a system service within the underlying operating system of HPE Networking EdgeConnect SD-WAN Gateways that could allow an unauthenticated … | Sep 15, 2026 |