Known Vulnerabilities for Commerce Merchandising by Oracle
Listed below are 9 of the newest known vulnerabilities associated with "Commerce Merchandising" by "Oracle".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2022-24729 json | CKEditor4 is an open source what-you-see-is-what-you-get HTML editor. CKEditor4 prior to version 4.18.0 contains a vulnerabil... | 7.5 - HIGH | 2022-03-16 | 2023-11-07 |
| CVE-2022-24728 json | CKEditor4 is an open source what-you-see-is-what-you-get HTML editor. A vulnerability has been discovered in the core HTML pr... | 5.4 - MEDIUM | 2022-03-16 | 2023-11-07 |
| CVE-2021-37695 json | ckeditor is an open source WYSIWYG HTML editor with rich content support. A potential vulnerability has been discovered in CK... | 5.4 - MEDIUM | 2021-08-13 | 2023-11-07 |
| CVE-2021-32809 json | ckeditor is an open source WYSIWYG HTML editor with rich content support. A potential vulnerability has been discovered in CK... | 5.4 - MEDIUM | 2021-08-12 | 2023-11-07 |
| CVE-2021-32808 json | ckeditor is an open source WYSIWYG HTML editor with rich content support. A vulnerability has been discovered in the clipboar... | 5.4 - MEDIUM | 2021-08-12 | 2023-11-07 |
| CVE-2021-26272 json | It was possible to execute a ReDoS-type attack inside CKEditor 4 before 4.16 by persuading a victim to paste crafted URL-like... | 6.5 - MEDIUM | 2021-01-26 | 2022-03-01 |
| CVE-2020-27193 json | A cross-site scripting (XSS) vulnerability in the Color Dialog plugin for CKEditor 4.15.0 allows remote attackers to run arbi... | 6.1 - MEDIUM | 2020-11-12 | 2021-12-02 |
| CVE-2020-9281 json | A cross-site scripting (XSS) vulnerability in the HTML Data Processor for CKEditor 4.0 before 4.14 allows remote attackers to... | 6.1 - MEDIUM | 2020-03-07 | 2023-11-07 |
| CVE-2019-2713 json | Vulnerability in the Oracle Commerce Merchandising component of Oracle Commerce (subcomponent: Asset Manager). The supported ... | 6.5 - MEDIUM | 2019-04-23 | 2020-08-24 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Oracle | Commerce Merchandising | 11.2.0.3 |