Vulnerabilities
Summary — last 7 days
New vulnerabilities2,855▼ 148 vs. last week
Critical / high1,378▲ 60 vs. last week
New active exploitation (KEV)5▼ 3 vs. last week
Unscored (no CVSS)266▼ 258 vs. last week
659 results, sorted by published date (most recent first)
| CVE | Status | Severity | EPSS | Active exploitation | Affected technologies | Published ▼ | Modified | Description |
|---|---|---|---|---|---|---|---|---|
| Awaiting Analysis | High (8.8) | 0.42% | — | Oracle E-business SuiteAIOracle Contract Lifecycle Management FOR Public SectorAI | 9/15/2026 | 9/17/2026 | Vulnerability in the Oracle Contract Lifecycle Management for Public Sector product of Oracle E-Business Suite (component: ECC For Award and IDV). The supported version that is affected is V16. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Contract… | |
| Awaiting Analysis | High (8.8) | 0.42% | — | Oracle Bills OF MaterialAIOracle E-business SuiteAI | 9/15/2026 | 9/17/2026 | Vulnerability in the Oracle Bills of Material product of Oracle E-Business Suite (component: Setup Workbench). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Bills of Material. Successful attacks… | |
| Awaiting Analysis | High (8) | 0.36% | — | Oracle Advanced BenefitsAIOracle E-business SuiteAI | 9/15/2026 | 9/17/2026 | Vulnerability in the Oracle Advanced Benefits product of Oracle E-Business Suite (component: Self-serv What-if Analysis). Supported versions that are affected are 12.2.3-12.2.15. Difficult to exploit vulnerability allows high privileged attacker with network access via HTTP to compromise Oracle Advanced Benefits.… | |
| Awaiting Analysis | High (7.2) | 0.46% | — | Oracle ContractsAIOracle E-business SuiteAI | 9/15/2026 | 9/17/2026 | Vulnerability in the Oracle Contracts product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affected are 12.2.14-12.2.15. Easily exploitable vulnerability allows high privileged attacker with network access via HTTP to compromise Oracle Contracts. Successful attacks of this… | |
| Awaiting Analysis | High (7.2) | 0.46% | — | Oracle E-business SuiteAIOracle ContractsAI | 9/15/2026 | 9/17/2026 | Vulnerability in the Oracle Contracts product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affected are 12.2.14-12.2.15. Easily exploitable vulnerability allows high privileged attacker with network access via HTTP to compromise Oracle Contracts. Successful attacks of this… | |
| Awaiting Analysis | High (8.8) | 0.42% | — | Oracle E-business SuiteAIOracle ContractsAI | 9/15/2026 | 9/17/2026 | Vulnerability in the Oracle Contracts product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affected are 12.2.14-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Contracts. Successful attacks of this… | |
| Awaiting Analysis | High (8.1) | 0.37% | — | Oracle Mobile Application ServerAIOracle E-business SuiteAI | 9/15/2026 | 9/17/2026 | Vulnerability in the Oracle Mobile Application Server product of Oracle E-Business Suite (component: MWA Terminal Server). Supported versions that are affected are 12.2.3-12.2.15. Difficult to exploit vulnerability allows unauthenticated attacker with network access via TCP to compromise Oracle Mobile Application… | |
| Awaiting Analysis | High (7.5) | 0.24% | — | Oracle Mobile Application ServerAIOracle E-business SuiteAI | 9/15/2026 | 9/17/2026 | Vulnerability in the Oracle Mobile Application Server product of Oracle E-Business Suite (component: MWA Terminal Server). Supported versions that are affected are 12.2.3-12.2.15. Difficult to exploit vulnerability allows unauthenticated attacker with access to the physical communication segment attached to the… | |
| Awaiting Analysis | Critical (9.8) | 0.48% | — | Oracle Mobile Application ServerAIOracle E-business SuiteAI | 9/15/2026 | 9/16/2026 | Vulnerability in the Oracle Mobile Application Server product of Oracle E-Business Suite (component: MWA Terminal Server). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows unauthenticated attacker with network access via TCP to compromise Oracle Mobile Application… | |
| Awaiting Analysis | High (8.8) | 0.42% | — | Oracle Demand Signal RepositoryAIOracle E-business SuiteAI | 9/15/2026 | 9/17/2026 | Vulnerability in the Oracle Demand Signal Repository product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Demand Signal Repository.… | |
| Awaiting Analysis | High (8.8) | 0.42% | — | Oracle Document Management AND CollaborationAIOracle E-business SuiteAI | 9/15/2026 | 9/17/2026 | Vulnerability in the Oracle Document Management and Collaboration product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Document… | |
| Awaiting Analysis | High (7.2) | 0.46% | — | Oracle Document Management AND CollaborationAIOracle E-business SuiteAI | 9/15/2026 | 9/17/2026 | Vulnerability in the Oracle Document Management and Collaboration product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows high privileged attacker with network access via HTTP to compromise Oracle Document… | |
| Awaiting Analysis | Critical (9.8) | 0.48% | — | Oracle Document Management AND CollaborationAIOracle E-business SuiteAI | 9/15/2026 | 9/16/2026 | Vulnerability in the Oracle Document Management and Collaboration product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Document… | |
| Awaiting Analysis | High (8.5) | 0.32% | — | Oracle E-business SuiteAI | 9/15/2026 | 9/17/2026 | Vulnerability in the Oracle Product Workbench product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affected are 12.2.3-12.2.15. Difficult to exploit vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Product Workbench. While the… | |
| Awaiting Analysis | High (8) | 0.36% | — | Oracle Bills OF MaterialAIOracle E-business SuiteAI | 9/15/2026 | 9/17/2026 | Vulnerability in the Oracle Bills of Material product of Oracle E-Business Suite (component: Setup Workbench). Supported versions that are affected are 12.2.3-12.2.15. Difficult to exploit vulnerability allows high privileged attacker with network access via HTTP to compromise Oracle Bills of Material. While the… | |
| Awaiting Analysis | High (8.8) | 0.42% | — | Oracle E-business SuiteAIOracle Complex Maintenance Repair AND OverhaulAI | 9/15/2026 | 9/17/2026 | Vulnerability in the Oracle Complex Maintenance, Repair and Overhaul product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTPS to compromise Oracle Complex… | |
| Deferred | High (8.8) | 0.42% | — | Oracle E-business SuiteAIOracle Applications ManagerAI | 9/15/2026 | 9/17/2026 | Vulnerability in the Oracle Applications Manager product of Oracle E-Business Suite (component: Oracle Diagnostics Interfaces). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Applications… | |
| Deferred | High (8.8) | 0.42% | — | Oracle E-business SuiteAIOracle Applications FrameworkAI | 9/15/2026 | 9/17/2026 | Vulnerability in the Oracle Applications Framework product of Oracle E-Business Suite (component: Personalization). Supported versions that are affected are 12.2.9-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Applications Framework.… | |
| Deferred | High (8.8) | 0.42% | — | Oracle E-business SuiteAIOracle Applications FrameworkAI | 9/15/2026 | 9/17/2026 | Vulnerability in the Oracle Applications Framework product of Oracle E-Business Suite (component: Personalization). Supported versions that are affected are 12.2.9-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Applications Framework.… | |
| Deferred | High (7.2) | 0.46% | — | Oracle E-business SuiteAIOracle Applications FrameworkAI | 9/15/2026 | 9/17/2026 | Vulnerability in the Oracle Applications Framework product of Oracle E-Business Suite (component: Personalization). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows high privileged attacker with network access via HTTP to compromise Oracle Applications Framework.… | |
| Awaiting Analysis | Critical (9.8) | 0.46% | — | Oracle Applications FrameworkAIOracle E-business SuiteAI | 9/15/2026 | 9/16/2026 | Vulnerability in the Oracle Applications Framework product of Oracle E-Business Suite (component: Personalization). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows unauthenticated attacker with network access via SOAP to compromise Oracle Applications Framework.… | |
| Deferred | High (8.8) | 0.42% | — | Oracle E-business SuiteAI | 9/15/2026 | 9/17/2026 | Vulnerability in the Oracle Applications Framework product of Oracle E-Business Suite (component: Personalization). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Applications Framework.… | |
| Deferred | High (7.5) | 0.32% | — | Oracle SourcingAIOracle E-business SuiteAI | 9/15/2026 | 9/17/2026 | Vulnerability in the Oracle Sourcing product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affected are 12.2.3-12.2.15. Difficult to exploit vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Sourcing. Successful attacks of this… | |
| Deferred | Medium (6.5) | 0.34% | — | Oracle E-business SuiteAIOracle Process Manufacturing IntelligenceAI | 9/15/2026 | 9/17/2026 | Vulnerability in the Oracle Process Manufacturing Intelligence product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via Oracle Net to compromise Oracle Process… | |
| Deferred | High (8.8) | 0.42% | — | Oracle E-business SuiteAIOracle Depot RepairAI | 9/15/2026 | 9/17/2026 | Vulnerability in the Oracle Depot Repair product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affected are 12.2.10-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Depot Repair. Successful attacks of… |