Known Vulnerabilities for Order Management by Oracle
Listed below are 1 of the newest known vulnerabilities associated with "Order Management" by "Oracle".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-41175 json | Statamic is a Laravel and Git powered content management system (CMS). Prior to versions 5.73.20 and 6.13.0, manipulating que... | Not Provided | 2026-04-22 | 2026-04-23 |
| CVE-2026-39319 json | ChurchCRM is an open-source church management system. Prior to 7.1.0, a second order SQL injection vulnerability was found in... | Not Provided | 2026-04-07 | 2026-04-08 |
| CVE-2026-35446 json | LORIS (Longitudinal Online Research and Imaging System) is a self-hosted web application that provides data- and project-mana... | Not Provided | 2026-04-08 | 2026-04-08 |
| CVE-2026-34385 json | Fleet is open source device management software. Prior to 4.81.0, a second-order SQL injection vulnerability in Fleet's Apple... | Not Provided | 2026-03-27 | 2026-03-31 |
| CVE-2026-34301 json | Vulnerability in the PeopleSoft Enterprise FIN Maintenance Management product of Oracle PeopleSoft (component: Work Order Man... | Not Provided | 2026-04-21 | 2026-04-22 |
| CVE-2026-34299 json | Vulnerability in the PeopleSoft Enterprise FIN Maintenance Management product of Oracle PeopleSoft (component: Work Order Man... | Not Provided | 2026-04-21 | 2026-04-22 |
| CVE-2026-33757 json | OpenBao is an open source identity-based secrets management system. Prior to version 2.5.2, OpenBao does not prompt for user ... | Not Provided | 2026-03-27 | 2026-04-01 |
| CVE-2026-33530 json | InvenTree is an Open Source Inventory Management System. Prior to version 1.2.6, certain API endpoints associated with bulk d... | Not Provided | 2026-03-26 | 2026-03-30 |
| CVE-2026-27890 json | Firebird is an open-source relational database management system. In versions prior to 5.0.4, 4.0.7 and 3.0.14, when processi... | Not Provided | 2026-04-17 | 2026-04-17 |
| CVE-2026-4896 json | The WCFM – Frontend Manager for WooCommerce along with Bookings Subscription Listings Compatible plugin for WordPress is vu... | Not Provided | 2026-04-04 | 2026-04-08 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Oracle | Order Management | 12.2.7 | |||
| Application | Oracle | Order Management | 12.2.6 | |||
| Application | Oracle | Order Management | 12.2.5 | |||
| Application | Oracle | Order Management | 12.2.4 | |||
| Application | Oracle | Order Management | 12.2.3 | |||
| Application | Oracle | Order Management | 12.1.3 | |||
| Application | Oracle | Order Management | 12.1.2 | |||
| Application | Oracle | Order Management | 12.1.1 |