CVEs (64)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
Unspecified vulnerability in the Oracle WebCenter Sites component in Oracle Fusion Middleware 11.1.1.8, and 12.2.1.0 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors. |
2Apache Oracle6Groovy Health Sciences Clinical Development CenterRetail Order Broker Cloud Service+3 moreMay 6, 2026 Aug 13, 2015 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 The MethodClosure class in runtime/MethodClosure.java in Apache Groovy 1.7.0 through 2.4.3 allows remote attackers to execute arbitrary code or cause a denial of service via a crafted serialized object. |
2Apache Oracle2Webcenter Sites Xalan JavaMay 6, 2026 Apr 15, 2014 N/A· v4 N/A· v3 7.5 HIGH· v2 The TransformerFactory in Apache Xalan-Java before 2.7.2 does not properly restrict access to certain properties when FEATURE_SECURE_PROCESSING is enabled, which allows remote attackers to bypass expected restrictions an...Show more |
2Apache Oracle4Flexcube Private Banking Mysql Enterprise MonitorStruts+1 moreApr 29, 2026 Sep 30, 2013 N/A· v4 N/A· v3 10.0 HIGH· v2 Apache Struts 2.0.0 through 2.3.15.1 enables Dynamic Method Invocation by default, which has unknown impact and attack vectors. |