Known Vulnerabilities for Commerce Guided Search by Oracle
Listed below are 10 of the newest known vulnerabilities associated with "Commerce Guided Search" by "Oracle".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2022-22947 | In spring cloud gateway versions prior to 3.1.1+ and 3.0.7+ , applications are vulnerable to a code injection attack when the... | 10 - CRITICAL | 2022-03-03 | 2023-07-24 |
| CVE-2022-22946 | In spring cloud gateway versions prior to 3.1.1+ , applications that are configured to enable HTTP2 and no key store or trust... | 5.5 - MEDIUM | 2022-03-04 | 2023-02-22 |
| CVE-2022-21466 | Vulnerability in the Oracle Commerce Guided Search product of Oracle Commerce (component: Tools and Frameworks). The supporte... | 7.5 - HIGH | 2022-04-19 | 2022-04-28 |
| CVE-2021-22947 | When curl >= 7.20.0 and <= 7.78.0 connects to an IMAP or POP3 server to retrieve data using STARTTLS to upgrade to TLS securi... | 5.9 - MEDIUM | 2021-09-29 | 2024-03-27 |
| CVE-2021-22946 | A user can tell curl >= 7.20.0 and <= 7.78.0 to require a successful upgrade to TLS when speaking to an IMAP, POP3 or FTP ser... | 7.5 - HIGH | 2021-09-29 | 2024-03-27 |
| CVE-2021-22118 | In Spring Framework, versions 5.2.x prior to 5.2.15 and versions 5.3.x prior to 5.3.7, a WebFlux application is vulnerable to... | 7.8 - HIGH | 2021-05-27 | 2022-10-25 |
| CVE-2021-3450 | The X509_V_FLAG_X509_STRICT flag enables additional security checks of the certificates present in a certificate chain. It is... | 7.4 - HIGH | 2021-03-25 | 2023-11-07 |
| CVE-2021-2348 | Vulnerability in the Oracle Commerce Guided Search / Oracle Commerce Experience Manager product of Oracle Commerce (component... | 4.3 - MEDIUM | 2021-07-21 | 2021-07-26 |
| CVE-2021-2346 | Vulnerability in the Oracle Commerce Guided Search / Oracle Commerce Experience Manager product of Oracle Commerce (component... | 5.4 - MEDIUM | 2021-07-21 | 2021-07-23 |
| CVE-2021-2345 | Vulnerability in the Oracle Commerce Guided Search / Oracle Commerce Experience Manager product of Oracle Commerce (component... | 5.4 - MEDIUM | 2021-07-21 | 2021-07-23 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Oracle | Commerce Guided Search | 6.5.2 | All | All | All |
| Application | Oracle | Commerce Guided Search | 6.5.1 | All | All | All |
| Application | Oracle | Commerce Guided Search | 6.5.0 | All | All | All |
| Application | Oracle | Commerce Guided Search | 6.4.1.2 | All | All | All |
| Application | Oracle | Commerce Guided Search | 6.3.0 | All | All | All |
| Application | Oracle | Commerce Guided Search | 6.2.2 | All | All | All |
| Application | Oracle | Commerce Guided Search | 11.3.1 | All | All | All |
| Application | Oracle | Commerce Guided Search | 11.2 | All | All | All |
| Application | Oracle | Commerce Guided Search | 11.1 | All | All | All |
| Application | Oracle | Commerce Guided Search | 11.0 | All | All | All |