Known Vulnerabilities for Agile Plm by Oracle
Listed below are 10 of the newest known vulnerabilities associated with "Agile Plm" by "Oracle".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2025-49329 | Unrestricted Upload of File with Dangerous Type vulnerability in Agile Logix Store Locator WordPress agile-store-locator allo... | Not Provided | 2025-06-06 | 2026-04-01 |
| CVE-2025-49328 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Agile Logix Store Locat... | Not Provided | 2025-06-06 | 2026-04-01 |
| CVE-2025-24614 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Agile Logix Post Timeli... | Not Provided | 2025-02-14 | 2026-04-01 |
| CVE-2025-22329 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Agile Logix Free Google... | Not Provided | 2025-01-15 | 2026-04-01 |
| CVE-2024-49636 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in woracal Agile Video Pla... | Not Provided | 2024-10-29 | 2026-04-01 |
| CVE-2022-23437 | There's a vulnerability within the Apache Xerces Java (XercesJ) XML parser when handling specially crafted XML document paylo... | 6.5 - MEDIUM | 2022-01-24 | 2023-08-08 |
| CVE-2022-21467 | Vulnerability in the Oracle Agile PLM product of Oracle Supply Chain (component: Attachments). The supported version that is ... | 6.5 - MEDIUM | 2022-04-19 | 2022-04-28 |
| CVE-2021-29425 | In Apache Commons IO before 2.7, When invoking the method FileNameUtils.normalize with an improper input string, like "//../f... | 4.8 - MEDIUM | 2021-04-13 | 2023-11-07 |
| CVE-2021-26272 | It was possible to execute a ReDoS-type attack inside CKEditor 4 before 4.16 by persuading a victim to paste crafted URL-like... | 6.5 - MEDIUM | 2021-01-26 | 2022-03-01 |
| CVE-2021-26271 | It was possible to execute a ReDoS-type attack inside CKEditor 4 before 4.16 by persuading a victim to paste crafted text int... | 6.5 - MEDIUM | 2021-01-26 | 2021-12-01 |