Known Vulnerabilities for Commerce Merchandising by Oracle
Listed below are 9 of the newest known vulnerabilities associated with "Commerce Merchandising" by "Oracle".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2022-24729 | CKEditor4 is an open source what-you-see-is-what-you-get HTML editor. CKEditor4 prior to version 4.18.0 contains a vulnerabil... | 7.5 - HIGH | 2022-03-16 | 2023-11-07 |
| CVE-2022-24728 | CKEditor4 is an open source what-you-see-is-what-you-get HTML editor. A vulnerability has been discovered in the core HTML pr... | 5.4 - MEDIUM | 2022-03-16 | 2023-11-07 |
| CVE-2021-37695 | ckeditor is an open source WYSIWYG HTML editor with rich content support. A potential vulnerability has been discovered in CK... | 5.4 - MEDIUM | 2021-08-13 | 2023-11-07 |
| CVE-2021-32809 | ckeditor is an open source WYSIWYG HTML editor with rich content support. A potential vulnerability has been discovered in CK... | 5.4 - MEDIUM | 2021-08-12 | 2023-11-07 |
| CVE-2021-32808 | ckeditor is an open source WYSIWYG HTML editor with rich content support. A vulnerability has been discovered in the clipboar... | 5.4 - MEDIUM | 2021-08-12 | 2023-11-07 |
| CVE-2021-26272 | It was possible to execute a ReDoS-type attack inside CKEditor 4 before 4.16 by persuading a victim to paste crafted URL-like... | 6.5 - MEDIUM | 2021-01-26 | 2022-03-01 |
| CVE-2020-27193 | A cross-site scripting (XSS) vulnerability in the Color Dialog plugin for CKEditor 4.15.0 allows remote attackers to run arbi... | 6.1 - MEDIUM | 2020-11-12 | 2021-12-02 |
| CVE-2020-9281 | A cross-site scripting (XSS) vulnerability in the HTML Data Processor for CKEditor 4.0 before 4.14 allows remote attackers to... | 6.1 - MEDIUM | 2020-03-07 | 2023-11-07 |
| CVE-2019-2713 | Vulnerability in the Oracle Commerce Merchandising component of Oracle Commerce (subcomponent: Asset Manager). The supported ... | 6.5 - MEDIUM | 2019-04-23 | 2020-08-24 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Oracle | Commerce Merchandising | 11.2.0.3 | All | All | All |