Known Vulnerabilities for Database Server by Oracle
Listed below are 10 of the newest known vulnerabilities associated with "Database Server" by "Oracle".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-67435 json | linuxfabrik-lib provides Python modules for database access, caching, shell execution, and API integrations. Prior to version... | Not Provided | 2026-07-29 | 2026-07-29 |
| CVE-2026-67343 json | ArcadeDB versions before 26.7.2 fail to properly redact the cluster token in the GET /api/v1/server endpoint, allowing authen... | Not Provided | 2026-08-01 | 2026-08-01 |
| CVE-2026-66751 json | Let's Chat 0.3.0 through 0.4.8 contains an improper authorization vulnerability that allows any authenticated user to archive... | Not Provided | 2026-07-28 | 2026-07-28 |
| CVE-2026-66749 json | Let's Chat 0.4.0 through 0.4.8 contains a null dereference vulnerability that allows authenticated attackers to crash the ser... | Not Provided | 2026-07-28 | 2026-07-28 |
| CVE-2026-65693 json | Microweber CMS through 2.0.20 contains a server-side template injection vulnerability that allows authenticated administrator... | Not Provided | 2026-07-24 | 2026-07-28 |
| CVE-2026-65689 json | Bold Reports Standalone Report Designer before 14.1.12 contains a missing filepath validation vulnerability in its database d... | Not Provided | 2026-07-23 | 2026-07-27 |
| CVE-2026-65318 json | Verba RAG application version 2.1.3 contains an unauthenticated server-side request forgery vulnerability that allows unauthe... | Not Provided | 2026-07-21 | 2026-07-22 |
| CVE-2026-65051 json | Ninja Forms WordPress plugin version 3.14.8 contains a client-side enforcement of server-side security vulnerability that all... | Not Provided | 2026-07-21 | 2026-07-23 |
| CVE-2026-63763 json | SurrealDB before 2.5.0 and before 3.0.0-beta.3 contains a confused deputy privilege escalation vulnerability. Unprivileged us... | Not Provided | 2026-07-20 | 2026-07-21 |
| CVE-2026-62353 json | TDengine is a time-series database optimized for Internet of Things devices. Prior to 3.4.1.14, source/libs/parser/src/parTok... | Not Provided | 2026-07-15 | 2026-07-15 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Oracle | Database Server | 9.2.2 | |||
| Application | Oracle | Database Server | 9.2.1 | |||
| Application | Oracle | Database Server | 9.2.0.8dv | |||
| Application | Oracle | Database Server | 9.2.0.8dv | |||
| Application | Oracle | Database Server | 9.2.0.8 | |||
| Application | Oracle | Database Server | 9.2.0.8 | |||
| Application | Oracle | Database Server | 9.2.0.7 | |||
| Application | Oracle | Database Server | 9.2.0.7 | |||
| Application | Oracle | Database Server | 9.2.0.6 | |||
| Application | Oracle | Database Server | 9.2.0.6 | |||
| Application | Oracle | Database Server | 9.2.0.5 | |||
| Application | Oracle | Database Server | 9.2.0.4 | |||
| Application | Oracle | Database Server | 9.2.0.3 | |||
| Application | Oracle | Database Server | 9.2.0.2 | |||
| Application | Oracle | Database Server | 9.2.0.1 | |||
| Application | Oracle | Database Server | 9.2 | |||
| Application | Oracle | Database Server | 9.0.4 | |||
| Application | Oracle | Database Server | 9.0.2.4 | |||
| Application | Oracle | Database Server | 9.0.2.4 | |||
| Application | Oracle | Database Server | 9.0.1.5 |