Known Vulnerabilities for Oracle by Vendor
Listed below are 10 of the newest known vulnerabilities associated with "Oracle" by "Vendor".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-73409 json | Budibase is an open-source low-code platform. Prior to 3.40.1, packages/server/src/integrations/mongodb.ts passed builder-con... | Not Provided | 2026-08-12 | 2026-08-12 |
| CVE-2026-70395 json | Improper Neutralization of Special Elements in Data Query Logic vulnerability in ash-project ash allows an attacker to forge ... | Not Provided | 2026-08-09 | 2026-08-10 |
| CVE-2026-69247 json | cryptography is a package designed to expose cryptographic primitives and recipes to Python developers. From 44.0.0 until 50.... | Not Provided | 2026-08-03 | 2026-08-04 |
| CVE-2026-69240 json | Sequelize is a Node.js ORM tool. Prior to 6.37.4, SQL injection is possible with strings only if dialect is set to oracle. Th... | Not Provided | 2026-08-03 | 2026-08-04 |
| CVE-2026-68586 json | SiYuan before v3.7.3 fails to apply publish-access filters to the getBacklinkDoc and getBackmentionDoc content endpoints (/ap... | Not Provided | 2026-08-03 | 2026-08-03 |
| CVE-2026-68582 json | Vikunja versions >= 0.24.0 and <= 2.3.0 contain a broken object level authorization (BOLA) vulnerability in the task-collecti... | Not Provided | 2026-08-02 | 2026-08-03 |
| CVE-2026-67620 json | Flowise through 3.1.4 contains a server-side request forgery vulnerability in the SSRF guard implemented in httpSecurity.ts, ... | Not Provided | 2026-08-08 | 2026-08-10 |
| CVE-2026-63231 json | A post-authentication SQL injection vulnerability in Koollab LMS allowed an authenticated attacker to use an error-based SQL ... | Not Provided | 2026-07-29 | 2026-07-29 |
| CVE-2026-63229 json | A pre-authentication blind SQL injection vulnerability in Koollab LMS allowed an unauthenticated attacker to use a time-based... | Not Provided | 2026-07-29 | 2026-07-29 |
| CVE-2026-62574 json | Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (com... | Not Provided | 2026-07-21 | 2026-08-01 |