Known Vulnerabilities for Database Server by Oracle
Listed below are 10 of the newest known vulnerabilities associated with "Database Server" by "Oracle".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-86437 json | Lara Dashboard before 1.3.2 authorizes the POST /admin/settings/core-upgrades/upload endpoint with only the settings.edit per... | Not Provided | 2026-09-07 | 2026-09-08 |
| CVE-2026-86123 json | SQL Chat contains four unauthenticated API endpoints that accept client-supplied database connection parameters and execute a... | Not Provided | 2026-09-05 | 2026-09-08 |
| CVE-2026-86075 json | n8n is an open source workflow automation platform. Prior to 2.37.7 and 2.38.2, the OAuth Dynamic Client Registration endpoin... | Not Provided | 2026-09-08 | 2026-09-09 |
| CVE-2026-85607 json | Blinko 1.8.7 contains an authorization bypass (IDOR) vulnerability in multiple tRPC procedures (message.list, message.update,... | Not Provided | 2026-09-04 | 2026-09-08 |
| CVE-2026-82877 json | ILIAS before versions 9.22, 10.10, and 11.3 contains an arbitrary file read vulnerability in the SOAP addFile method that all... | Not Provided | 2026-08-31 | 2026-09-04 |
| CVE-2026-82243 json | Budibase Server before 3.41.3 contains a server-side request forgery vulnerability in the datasource verify endpoint that all... | Not Provided | 2026-08-28 | 2026-08-31 |
| CVE-2026-82078 json | An unsafe dynamic class loading vulnerability exists in the database connection utilities of PaperCut MF and PaperCut NG. The... | Not Provided | 2026-08-28 | 2026-09-01 |
| CVE-2026-82076 json | An integer overflow in the query planning component of MongoDB Server can allow an authenticated user with ordinary database-... | Not Provided | 2026-09-08 | 2026-09-08 |
| CVE-2026-82074 json | MongoDB Server contains an incorrect authorization vulnerability in the aggregation framework. An authenticated user with min... | Not Provided | 2026-09-08 | 2026-09-08 |
| CVE-2026-82066 json | A heap out-of-bounds read security issue exists in the query planning component of MongoDB Server. An authenticated user with... | Not Provided | 2026-09-08 | 2026-09-08 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Oracle | Database Server | 9.2.2 | |||
| Application | Oracle | Database Server | 9.2.1 | |||
| Application | Oracle | Database Server | 9.2.0.8dv | |||
| Application | Oracle | Database Server | 9.2.0.8dv | |||
| Application | Oracle | Database Server | 9.2.0.8 | |||
| Application | Oracle | Database Server | 9.2.0.8 | |||
| Application | Oracle | Database Server | 9.2.0.7 | |||
| Application | Oracle | Database Server | 9.2.0.7 | |||
| Application | Oracle | Database Server | 9.2.0.6 | |||
| Application | Oracle | Database Server | 9.2.0.6 | |||
| Application | Oracle | Database Server | 9.2.0.5 | |||
| Application | Oracle | Database Server | 9.2.0.4 | |||
| Application | Oracle | Database Server | 9.2.0.3 | |||
| Application | Oracle | Database Server | 9.2.0.2 | |||
| Application | Oracle | Database Server | 9.2.0.1 | |||
| Application | Oracle | Database Server | 9.2 | |||
| Application | Oracle | Database Server | 9.0.4 | |||
| Application | Oracle | Database Server | 9.0.2.4 | |||
| Application | Oracle | Database Server | 9.0.2.4 | |||
| Application | Oracle | Database Server | 9.0.1.5 |