Known Vulnerabilities for Scripting by Oracle
Listed below are 10 of the newest known vulnerabilities associated with "Scripting" by "Oracle".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-107272 json | Gophish through 0.12.1 contains stored and reflected cross-site scripting vulnerabilities that allow attackers to inject scri... | Not Provided | 2026-10-07 | 2026-10-07 |
| CVE-2026-106513 json | MISP exposes critical infrastructure settings—specifically the Redis host addresses used by the core application, the ZeroM... | Not Provided | 2026-10-06 | 2026-10-07 |
| CVE-2026-106512 json | The CakeResponse::download() method in lib/Cake/Network/CakeResponse.php constructs a Content-Disposition header by directly ... | Not Provided | 2026-10-06 | 2026-10-07 |
| CVE-2026-106033 json | A DOM-based Cross-Site Scripting (XSS) vulnerability exists in the Ansible Platform UI due to unvalidated input handling with... | Not Provided | 2026-10-06 | 2026-10-07 |
| CVE-2026-105950 json | A security vulnerability has been detected in getformwork formwork up to 2.3.12. Impacted is the function DomSanitizer::sanit... | Not Provided | 2026-10-06 | 2026-10-06 |
| CVE-2026-105884 json | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WP Media Rocket Lazy Lo... | Not Provided | 2026-10-07 | 2026-10-07 |
| CVE-2026-105879 json | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Crocoblock JetElements ... | Not Provided | 2026-10-06 | 2026-10-06 |
| CVE-2026-105875 json | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in BdThemes Prime Slider �... | Not Provided | 2026-10-07 | 2026-10-07 |
| CVE-2026-105873 json | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in BdThemes Element Pack E... | Not Provided | 2026-10-07 | 2026-10-07 |
| CVE-2026-105871 json | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in BdThemes Element Pack E... | Not Provided | 2026-10-07 | 2026-10-07 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Oracle | Scripting | 12.2.9 | |||
| Application | Oracle | Scripting | 12.2.8 | |||
| Application | Oracle | Scripting | 12.2.7 | |||
| Application | Oracle | Scripting | 12.2.6 | |||
| Application | Oracle | Scripting | 12.2.5 | |||
| Application | Oracle | Scripting | 12.2.4 | |||
| Application | Oracle | Scripting | 12.2.3 | |||
| Application | Oracle | Scripting | 12.2.10 | |||
| Application | Oracle | Scripting | 12.1.3 | |||
| Application | Oracle | Scripting | 12.1.2 | |||
| Application | Oracle | Scripting | 12.1.1 |