Total CVEs

125,872

Critical Severity

2,276

High Severity

7,883

Last 7 Days

1,163
Quick preset (or use dates below)
Clear Filters
๐Ÿ“… Showing Year: 2026 (January 1 - December 31, 2026) View All Years โ†’
Showing 621 - 640 of 7,583 CVEs
CVE-2026-35245 HIGH - 7.5

Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). The supported version that is affected is 7.2.6. Easily exploitable vulnerability allows unauthenticated attacker with network access via RDP to compromise Oracle VM VirtualBox. Successful attacks of thi...

Vendor: oracle
Product: vm_virtualbox
Published: Apr 21, 2026
Source: NVD
CVE-2026-35243 HIGH - 7.8

Vulnerability in the Oracle Application Development Framework (ADF) product of Oracle Fusion Middleware (component: ADF Faces). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where...

Vendor: oracle
Product: application_development_framework
Published: Apr 21, 2026
Source: NVD
CVE-2026-35242 HIGH - 7.5

Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). The supported version that is affected is 7.2.6. Difficult to exploit vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracl...

Vendor: oracle
Product: vm_virtualbox
Published: Apr 21, 2026
Source: NVD
CVE-2026-35231 HIGH - 7.5

Vulnerability in the Oracle Financial Services Transaction Filtering product of Oracle Financial Services Applications (component: User Interface). The supported version that is affected is 8.1.2.8.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to ...

Vendor: oracle
Product: financial_services_transaction_filtering
Published: Apr 21, 2026
Source: NVD
CVE-2026-35230 HIGH - 7.5

Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). The supported version that is affected is 7.2.6. Difficult to exploit vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracl...

Vendor: oracle
Product: vm_virtualbox
Published: Apr 21, 2026
Source: NVD
CVE-2026-35229 HIGH - 7.5

Vulnerability in the Java VM component of Oracle Database Server. Supported versions that are affected are 19.3-19.30 and 21.3-21.21. Easily exploitable vulnerability allows unauthenticated attacker with network access via Oracle Net to compromise Java VM. Successful attacks of this vulnerability...

Published: Apr 21, 2026
Source: NVD
CVE-2026-34320 HIGH - 7.5

Vulnerability in the Oracle Financial Services Customer Screening product of Oracle Financial Services Applications (component: User Interface). The supported version that is affected is 8.1.2.8.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to com...

Vendor: oracle
Product: financial_services_customer_screening
Published: Apr 21, 2026
Source: NVD
CVE-2026-34310 HIGH - 7.5

Vulnerability in the Oracle Financial Services Analytical Applications Infrastructure product of Oracle Financial Services Applications (component: Platform). Supported versions that are affected are 8.0.7.9, 8.0.8.7 and 8.1.2.5. Easily exploitable vulnerability allows unauthenticated attacker wit...

Vendor: oracle
Product: financial_services_analytical_applications_infrastructure
Published: Apr 21, 2026
Source: NVD
CVE-2026-34309 HIGH - 8.1

Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Security). Supported versions that are affected are 8.61-8.62. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise PeopleSoft Enterprise PeopleTools...

Vendor: oracle
Product: peoplesoft_enterprise_peopletools
Published: Apr 21, 2026
Source: NVD
CVE-2026-34305 HIGH - 7.5

Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Web Services). Supported versions that are affected are 12.2.1.4.0, 14.1.1.0.0, 14.1.2.0.0 and 15.1.1.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to co...

Vendor: oracle
Product: weblogic_server
Published: Apr 21, 2026
Source: NVD
CVE-2026-34297 HIGH - 7.5

Vulnerability in the Oracle HCM Common Architecture product of Oracle E-Business Suite (component: Knowledge Integration). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle HCM ...

Vendor: oracle
Product: hcm_common_architecture
Published: Apr 21, 2026
Source: NVD
CVE-2026-34292 HIGH - 7.2

Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 12.2.1.4.0 and 14.1.1.0.0. Easily exploitable vulnerability allows high privileged attacker with network access via HTTP to compromise Oracle WebLogic Server....

Vendor: oracle
Product: weblogic_server
Published: Apr 21, 2026
Source: NVD
CVE-2026-34291 HIGH - 8.7

Vulnerability in the Oracle HTTP Server product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Difficult to exploit vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle HTTP Server. Whil...

Vendor: oracle
Product: http_server
Published: Apr 21, 2026
Source: NVD
CVE-2026-34290 HIGH - 7.5

Vulnerability in the Oracle Identity Manager Connector product of Oracle Fusion Middleware (component: Core). The supported version that is affected is 12.2.1.4.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via TCP to compromise Oracle Identity Manager Con...

Vendor: oracle
Product: identity_manager_connector
Published: Apr 21, 2026
Source: NVD
CVE-2026-34282 HIGH - 7.5

Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Networking). Supported versions that are affected are Oracle Java SE: 8u481-perf, 11.0.30, 17.0.18, 21.0.10, 25.0.2, 26; Oracle GraalVM for JDK: 17.0.18 and 21.0.10;...

Vendor: oracle
Product: jre
Published: Apr 21, 2026
Source: NVD
CVE-2026-22016 HIGH - 7.5

Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JAXP). Supported versions that are affected are Oracle Java SE: 8u481, 8u481-b50, 8u481-perf, 11.0.30, 17.0.18, 21.0.10, 25.0.2, 26; Oracle GraalVM for JDK: 17.0.18 a...

Vendor: oracle
Product: jre
Published: Apr 21, 2026
Source: NVD
CVE-2026-22011 HIGH - 7.6

Vulnerability in the Oracle Applications DBA product of Oracle E-Business Suite (component: ADPatch). Supported versions that are affected are 12.2.3-12.2.15. Difficult to exploit vulnerability allows high privileged attacker with network access via HTTP to compromise Oracle Applications DBA. Succ...

Vendor: oracle
Product: applications_dba
Published: Apr 21, 2026
Source: NVD
CVE-2026-22010 HIGH - 7.5

Vulnerability in the Oracle Financial Services Analytical Applications Infrastructure product of Oracle Financial Services Applications (component: Platform). Supported versions that are affected are 8.0.7.9, 8.0.8.7 and 8.1.2.5. Easily exploitable vulnerability allows unauthenticated attacker wit...

Vendor: oracle
Product: financial_services_analytical_applications_infrastructure
Published: Apr 21, 2026
Source: NVD
CVE-2026-21997 HIGH - 8.5

Vulnerability in the Oracle Life Sciences Empirica Signal product of Oracle Life Science Applications (component: Common Core). Supported versions that are affected are 9.2.1-9.2.3. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Lif...

Published: Apr 21, 2026
Source: NVD
CVE-2025-70420 HIGH - 8.8

A SQL injection vulnerability exists in Genesys Latitude v25.1.0.420 that allows an authenticated attacker to execute arbitrary SQL queries against the backend database. The vulnerability is caused by unsanitized user-supplied input being concatenated directly into SQL statements.

Published: Apr 21, 2026
Source: NVD