Known Vulnerabilities for Database 9i by Oracle
Listed below are 10 of the newest known vulnerabilities associated with "Database 9i" by "Oracle".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-65916 json | CyberPanel through 1.9.1, fixed in commit b198460, contains a missing authorization vulnerability in the cancelBackupCreation... | Not Provided | 2026-07-23 | 2026-07-23 |
| CVE-2026-65689 json | Bold Reports Standalone Report Designer before 14.1.12 contains a missing filepath validation vulnerability in its database d... | Not Provided | 2026-07-23 | 2026-07-23 |
| CVE-2026-65605 json | SiYuan before v3.7.2 contains a stored cross-site scripting vulnerability in Attribute View (database) cell rendering. A Temp... | Not Provided | 2026-07-23 | 2026-07-23 |
| CVE-2026-65589 json | n8n versions before 1.123.64 fail to properly mask custom HTTP header credentials in LLM sub-node execution data, writing pla... | Not Provided | 2026-07-22 | 2026-07-23 |
| CVE-2026-65431 json | Joomla Extension - regularlabs.com - Zipslip in GeoIP extension - Geo IP database update archives have been broadly extracted... | Not Provided | 2026-07-23 | 2026-07-23 |
| CVE-2026-65318 json | Verba RAG application version 2.1.3 contains an unauthenticated server-side request forgery vulnerability that allows unauthe... | Not Provided | 2026-07-21 | 2026-07-22 |
| CVE-2026-65051 json | Ninja Forms WordPress plugin version 3.14.8 contains a client-side enforcement of server-side security vulnerability that all... | Not Provided | 2026-07-21 | 2026-07-23 |
| CVE-2026-64880 json | Unsanitized user-supplied input in report filtering parameters is concatenated directly into SQL queries without proper escap... | Not Provided | 2026-07-21 | 2026-07-22 |
| CVE-2026-64877 json | An authenticated non-admin user can exploit a SQL injection flaw in the ticketing REST API to access sensitive data stored in... | Not Provided | 2026-07-21 | 2026-07-22 |
| CVE-2026-64876 json | Joomla Extension - regularlabs.com - Inconsistent CSRF token checks / privilege checks in GeoIP extension - Database-update ... | Not Provided | 2026-07-23 | 2026-07-23 |