Known Vulnerabilities for User Management by Oracle
Listed below are 6 of the newest known vulnerabilities associated with "User Management" by "Oracle".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-49095 json | Improper Input Validation (CWE-20) in the Kibana Fleet agent policy management feature can lead to privilege escalation. An a... | Not Provided | 2026-05-28 | 2026-05-30 |
| CVE-2026-49094 json | Uncontrolled Resource Consumption (CWE-400) in Kibana can lead to denial of service via Excessive Allocation (CAPEC-130). An ... | Not Provided | 2026-05-28 | 2026-05-29 |
| CVE-2026-49093 json | Server-Side Request Forgery (CWE-918) in Kibana can allow an authenticated user with connector management privileges to bypas... | Not Provided | 2026-05-28 | 2026-05-29 |
| CVE-2026-45717 json | Budibase is an open-source low-code platform. Prior to 3.38.1, Budibase exposes a REST API for datasource management. The rou... | Not Provided | 2026-05-27 | 2026-05-27 |
| CVE-2026-45660 json | Statamic is a Laravel and Git powered content management system (CMS). Prior to 5.73.22 and 6.18.1, the Glide image proxy's U... | Not Provided | 2026-05-29 | 2026-05-29 |
| CVE-2026-45551 json | Group-Office is an enterprise customer relationship management and groupware tool. Prior to 26.0.25, 25.0.100, and 6.8.165, G... | Not Provided | 2026-05-29 | 2026-05-29 |
| CVE-2026-45395 json | Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to 0.9.5, the tool u... | Not Provided | 2026-05-15 | 2026-05-18 |
| CVE-2026-45375 json | SiYuan is an open-source personal knowledge management system. Prior to 3.7.0, SiYuan's Bazaar (community marketplace) render... | Not Provided | 2026-05-14 | 2026-05-16 |
| CVE-2026-45332 json | Automad is a flat-file content management system and template engine. From 2.0.0-alpha.1 to 2.0.0-beta.27, a Broken Access Co... | Not Provided | 2026-05-28 | 2026-05-30 |
| CVE-2026-45223 json | Crabbox before 0.9.0 contains an authentication bypass vulnerability in the coordinator user-token verification path where th... | Not Provided | 2026-05-11 | 2026-05-11 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Oracle | User Management | 12.2.7 | |||
| Application | Oracle | User Management | 12.2.6 | |||
| Application | Oracle | User Management | 12.2.5 | |||
| Application | Oracle | User Management | 12.2.4 | |||
| Application | Oracle | User Management | 12.2.3 | |||
| Application | Oracle | User Management | 12.2.10 | |||
| Application | Oracle | User Management | 12.1.3 |