Oracle
Oracle Purchasing: vulnerabilities and CVEs
Oracle Purchasing has 14 published vulnerabilities, 12 of them in the last 12 months. 0 are rated critical and 0 are listed by CISA as actively exploited.
CVEs14
Last 12 months12
Critical0
Actively exploited0
All vulnerabilities in the catalogue →⭐ Follow this technology
Latest vulnerabilities
| CVE | Severity | EPSS | Active exploitation | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-87265 | High (8.1) | 0.36% | — | Sep 15, 2026 | Vulnerability in the Oracle Purchasing product of Oracle E-Business Suite (component: Other issue). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged… |
| CVE-2026-87168 | High (8.1) | 0.36% | — | Sep 15, 2026 | Vulnerability in the Oracle Purchasing product of Oracle E-Business Suite (component: G-Invoicing). Supported versions that are affected are 12.2.10-12.2.15. Easily exploitable vulnerability allows low privileged… |
| CVE-2026-87167 | High (8.1) | 0.36% | — | Sep 15, 2026 | Vulnerability in the Oracle Purchasing product of Oracle E-Business Suite (component: G-Invoicing). Supported versions that are affected are 12.2.11-12.2.15. Easily exploitable vulnerability allows low privileged… |
| CVE-2026-87166 | High (8.1) | 0.36% | — | Sep 15, 2026 | Vulnerability in the Oracle Purchasing product of Oracle E-Business Suite (component: Other issue). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged… |
| CVE-2026-87163 | High (8.8) | 0.43% | — | Sep 15, 2026 | Vulnerability in the Oracle Purchasing product of Oracle E-Business Suite (component: Other issue). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged… |
| CVE-2026-87127 | High (7.7) | 0.39% | — | Sep 15, 2026 | Vulnerability in the Oracle Purchasing product of Oracle E-Business Suite (component: G-Invoicing). Supported versions that are affected are 12.2.10-12.2.15. Easily exploitable vulnerability allows low privileged… |
| CVE-2026-70948 | High (8.8) | 0.43% | — | Aug 18, 2026 | Vulnerability in the Oracle Purchasing product of Oracle E-Business Suite (component: Other issue). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged… |
| CVE-2026-70947 | High (7.5) | 0.41% | — | Aug 18, 2026 | Vulnerability in the Oracle Purchasing product of Oracle E-Business Suite (component: Other issue). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows unauthenticated… |
| CVE-2026-70811 | High (8.1) | 0.36% | — | Aug 18, 2026 | Vulnerability in the Oracle Purchasing product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affected are 12.2.5-12.2.15. Easily exploitable vulnerability allows low privileged… |
| CVE-2026-70798 | High (7.8) | 0.16% | — | Aug 18, 2026 | Vulnerability in the Oracle Purchasing product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged… |
| CVE-2026-70797 | High (7.2) | 0.49% | — | Aug 18, 2026 | Vulnerability in the Oracle Purchasing product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows high… |
| CVE-2026-62491 | High (8.1) | 0.36% | — | Aug 18, 2026 | Vulnerability in the Oracle Purchasing product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged… |
| CVE-2024-21132 | Medium (5.4) | 0.27% | — | Jul 16, 2024 | Vulnerability in the Oracle Purchasing product of Oracle E-Business Suite (component: Approvals). Supported versions that are affected are 12.2.3-12.2.13. Easily exploitable vulnerability allows low privileged attacker… |
| CVE-2021-2262 | High (8.1) | 0.99% | — | Apr 22, 2021 | Vulnerability in the Oracle Purchasing product of Oracle E-Business Suite (component: Endeca). The supported version that is affected is 12.1.3. Easily exploitable vulnerability allows low privileged attacker with… |
🎯 How it gets exploited (ATT&CK techniques)
Number of CVEs of this technology mapped to each exploitation or primary-impact technique.