Known Vulnerabilities for Scripting by Oracle
Listed below are 6 of the newest known vulnerabilities associated with "Scripting" by "Oracle".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-43940 json | electerm is an open-sourced terminal/ssh/sftp/telnet/serialport/RDP/VNC/Spice/ftp client. Prior to version 3.7.16, the runWid... | Not Provided | 2026-05-08 | 2026-05-08 |
| CVE-2026-42794 json | Improper Neutralization of Input During Web Page Generation (XSS) vulnerability in absinthe-graphql absinthe_plug allows refl... | Not Provided | 2026-05-08 | 2026-05-08 |
| CVE-2026-42652 json | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in wpeverest User Registra... | Not Provided | 2026-04-29 | 2026-04-29 |
| CVE-2026-42643 json | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in StellarWP Image Widget ... | Not Provided | 2026-04-29 | 2026-04-29 |
| CVE-2026-42524 json | Jenkins HTML Publisher Plugin 427 and earlier does not escape job name and URL in the legacy wrapper file, resulting in a sto... | Not Provided | 2026-04-29 | 2026-04-29 |
| CVE-2026-42523 json | Jenkins GitHub Plugin 1.46.0 and earlier improperly processes the current job URL as part of JavaScript implementing validati... | Not Provided | 2026-04-29 | 2026-04-29 |
| CVE-2026-42509 json | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Apache Wicket. This is... | Not Provided | 2026-05-06 | 2026-05-07 |
| CVE-2026-42410 json | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in CodexThemes TheGem Them... | Not Provided | 2026-04-27 | 2026-04-27 |
| CVE-2026-42366 json | Multiple reflected cross-site scripting (xss) vulnerabilities exist in the Web Interface / ssi.cgi functionality of GeoVision... | Not Provided | 2026-05-04 | 2026-05-04 |
| CVE-2026-42150 json | wlc is a Weblate command-line client using Weblate's REST API. Prior to version 2.0.0, the HTML output format in wlc embeds A... | Not Provided | 2026-05-08 | 2026-05-08 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Oracle | Scripting | 12.2.9 | |||
| Application | Oracle | Scripting | 12.2.8 | |||
| Application | Oracle | Scripting | 12.2.7 | |||
| Application | Oracle | Scripting | 12.2.6 | |||
| Application | Oracle | Scripting | 12.2.5 | |||
| Application | Oracle | Scripting | 12.2.4 | |||
| Application | Oracle | Scripting | 12.2.3 | |||
| Application | Oracle | Scripting | 12.2.10 | |||
| Application | Oracle | Scripting | 12.1.3 | |||
| Application | Oracle | Scripting | 12.1.2 | |||
| Application | Oracle | Scripting | 12.1.1 |