LIVE FEED
1803 events · 13 sources · newest first
Events in view
1803
all sources
Critical
1524
severity
Active sources
13
collectors
Last sync
2026-08-29 00:00
UTC
All sources
NVD CVE · 1803CISA KEV · 1686News · 444CISA advisory · 124eCFR · 98DoD CIO CMMC · 21DC3 DCISE · 19DOJ FCA · 16NIST · 15Fed. Register · 14DCSA · 11Cyber AB docs · 10OIRA · 1
2026-07-21
NVD CVE
CVE-2026-60229: Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (compo
CRITICAL
Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 12.2.1.4.0, 14.1.1.0.0, 14.1.2.0.0 and 15.1.1.0.0. Easily exploitable...
availabilityconfidentialitycore-componentcve-2026-60229cvss-31data-compromiseintegritynetwork-access
2026-07-21
NVD CVE
CVE-2026-60880: Vulnerability in the Oracle Work in Process product of Oracle E-Business Suite (
CRITICAL
Vulnerability in the Oracle Work in Process product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows...
2026-07-21
NVD CVE
CVE-2026-60294: Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware
CRITICAL
Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 12.2.1.4.0, 14.1.1.0.0, 14.1.2.0.0 and 15.1.1.0.0. Easily exploitable...
2026-07-21
NVD CVE
CVE-2026-60299: Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (compo
CRITICAL
Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 14.1.1.0.0, 14.1.2.0.0 and 15.1.1.0.0. Easily exploitable vulnerability allows...
2026-07-21
NVD CVE
CVE-2026-60999: Vulnerability in the Oracle Data Integrator product of Oracle Fusion Middleware
CRITICAL
Vulnerability in the Oracle Data Integrator product of Oracle Fusion Middleware (component: Rest Service). The supported version that is affected is 14.1.2.0.0. Easily exploitable vulnerability allows...
2026-07-21
NVD CVE
CVE-2026-61076: Vulnerability in the PeopleSoft Enterprise HCM Talent Acquisition Manager produc
CRITICAL
Vulnerability in the PeopleSoft Enterprise HCM Talent Acquisition Manager product of Oracle PeopleSoft (component: Job Opening). The supported version that is affected is 9.2. Easily exploitable vulnerability...
2026-07-21
NVD CVE
CVE-2026-46924: Vulnerability in Oracle Application Testing Suite. The supported version that
CRITICAL
Vulnerability in Oracle Application Testing Suite. The supported version that is affected is 13.3.0.1. Easily exploitable vulnerability allows unauthenticated attacker with network access via TCP to compromise...
applications-testing-suiteavailabilitycompromiseconfidentialitycve-2026-46924cvss-31integritynetwork-access
2026-07-21
NVD CVE
CVE-2026-61245: Vulnerability in the PeopleSoft Enterprise FIN Manufacturing Brazil product of O
CRITICAL
Vulnerability in the PeopleSoft Enterprise FIN Manufacturing Brazil product of Oracle PeopleSoft (component: Integration). The supported version that is affected is 9.1. Easily exploitable vulnerability allows...
2026-07-21
NVD CVE
CVE-2026-60649: Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middlewar
CRITICAL
Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Web Content Management). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Easily exploitable...
2026-07-21
NVD CVE
CVE-2026-60297: Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (compo
CRITICAL
Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 12.2.1.4.0, 14.1.1.0.0, 14.1.2.0.0 and 15.1.1.0.0. Easily exploitable...
2026-07-21
NVD CVE
CVE-2026-60240: Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (compo
CRITICAL
Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 12.2.1.4.0, 14.1.1.0.0, 14.1.2.0.0 and 15.1.1.0.0. Easily exploitable...
availabilityconfidentialitycore-componentcve-2026-60240cvss-31data-compromiseintegritynetwork-access
2026-07-21
NVD CVE
CVE-2026-60663: Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middlewar
CRITICAL
Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Web Content Management). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Easily exploitable...
2026-07-21
NVD CVE
CVE-2026-61097: Vulnerability in the Oracle Banking Trade Finance Process Management product of
CRITICAL
Vulnerability in the Oracle Banking Trade Finance Process Management product of Oracle Financial Services Applications (component: Common). Supported versions that are affected are 14.6.0-14.8.0. Easily exploitable...
2026-07-21
NVD CVE
CVE-2026-60711: Vulnerability in the Siebel CRM Cloud Applications product of Oracle Siebel CRM
CRITICAL
Vulnerability in the Siebel CRM Cloud Applications product of Oracle Siebel CRM (component: Siebel Cloud Manager). Supported versions that are affected are 22.3-26.5. Easily exploitable vulnerability allows low...
2026-07-21
NVD CVE
CVE-2026-60644: Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middlewar
CRITICAL
Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Web Content Management). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Easily exploitable...
2026-07-21
NVD CVE
CVE-2026-60290: Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (compo
CRITICAL
Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 14.1.1.0.0, 14.1.2.0.0 and 15.1.1.0.0. Easily exploitable vulnerability allows...
2026-07-21
NVD CVE
CVE-2026-60719: Vulnerability in the Oracle BI Publisher product of Oracle Analytics (component:
CRITICAL
Vulnerability in the Oracle BI Publisher product of Oracle Analytics (component: Web Service API). Supported versions that are affected are 8.2.0.0.0, 12.2.1.4.0 and 26.01.0.0.0. Easily exploitable vulnerability...
2026-07-21
NVD CVE
CVE-2026-60173: Vulnerability in the Oracle BI Publisher product of Oracle Analytics (component:
CRITICAL
Vulnerability in the Oracle BI Publisher product of Oracle Analytics (component: BI Platform Security). Supported versions that are affected are 8.2.0.0.0 and 12.2.1.4.0. Easily exploitable vulnerability allows...
availabilitybi-platform-securitybi-publisherscompromiseconfidentialitycve-2026-60173cvss-31http
2026-07-21
NVD CVE
CVE-2026-61184: Vulnerability in the Oracle Agile Product Lifecycle Management for Process produ
CRITICAL
Vulnerability in the Oracle Agile Product Lifecycle Management for Process product of Oracle Supply Chain (component: Product Quality Management). The supported version that is affected is 6.2.4. Easily exploitable...
2026-07-21
NVD CVE
CVE-2026-60355: Vulnerability in the Oracle Access Manager product of Oracle Fusion Middleware (
CRITICAL
Vulnerability in the Oracle Access Manager product of Oracle Fusion Middleware (component: Authentication Engine). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.1.0. Easily exploitable...
2026-07-21
NVD CVE
CVE-2026-60632: Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middlewar
CRITICAL
Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Content Server). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Easily exploitable vulnerability...
2026-07-21
NVD CVE
CVE-2026-60199: Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware
CRITICAL
Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 12.2.1.4.0, 14.1.1.0.0, 14.1.2.0.0 and 15.1.1.0.0. Easily exploitable...
availabilitycompromiseconfidentialitycore-componentcve-2026-60199cvss-31httpintegrity
2026-07-21
NVD CVE
CVE-2026-60230: Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (compo
CRITICAL
Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 12.2.1.4.0, 14.1.1.0.0, 14.1.2.0.0 and 15.1.1.0.0. Easily exploitable...
availabilityconfidentialitycore-componentcve-2026-60230cvss-31data-compromiseintegritynetwork-access
2026-07-21
NVD CVE
CVE-2026-60292: Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware
CRITICAL
Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 12.2.1.4.0 and 14.1.1.0.0. Easily exploitable vulnerability allows...
2026-07-21
NVD CVE
CVE-2026-60566: Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion Middleware
CRITICAL
Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion Middleware (component: Runtime Tools). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Easily exploitable vulnerability...
2026-07-21
NVD CVE
CVE-2026-60567: Vulnerability in the Oracle Identity Manager product of Oracle Fusion Middleware
CRITICAL
Vulnerability in the Oracle Identity Manager product of Oracle Fusion Middleware (component: OIM Legacy UI). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.1.0. Easily exploitable vulnerability...
2026-07-21
NVD CVE
CVE-2026-60285: Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (compo
CRITICAL
Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 12.2.1.4.0, 14.1.1.0.0, 14.1.2.0.0 and 15.1.1.0.0. Easily exploitable...
2026-07-21
NVD CVE
CVE-2026-60286: Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (compo
CRITICAL
Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 12.2.1.4.0, 14.1.1.0.0, 14.1.2.0.0 and 15.1.1.0.0. Easily exploitable...
2026-07-21
NVD CVE
CVE-2026-65008: Grav 2.0.4 (fixed in 2.0.7) contains a remote code execution vulnerability in Bl
CRITICAL
Grav 2.0.4 (fixed in 2.0.7) contains a remote code execution vulnerability in Blueprint::dynamicData() (system/src/Grav/Common/Data/Blueprint.php), which passes a Class::method callable string and its arguments...
authenticate-accountsblueprint-dynamicdatacalls-user-func-arraycve-2026-65008form-plugingravgrav-blueprintsgrav-common-data
2026-07-21
NVD CVE
CVE-2026-28302: SolarWinds Serv-U is affected by an insecure direct object reference (IDOR) vuln
CRITICAL
SolarWinds Serv-U is affected by an insecure direct object reference (IDOR) vulnerability that can lead to privilege escalation and remote code execution as root. This issue requires group administrator access. The...
cve-2026-28302cybersecuritydfar-252-204-7012groups-administratorsidorincident-responsenist-800-171nvd-cve
2026-07-21
NVD CVE
CVE-2026-60568: Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion Middleware
CRITICAL
Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion Middleware (component: Runtime Tools). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Easily exploitable vulnerability...
2026-07-21
NVD CVE
CVE-2026-60221: Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (compo
CRITICAL
Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 12.2.1.4.0, 14.1.1.0.0, 14.1.2.0.0 and 15.1.1.0.0. Easily exploitable...
availabilityconfidentialitycore-componentcve-2026-60221cvss-31data-compromiseintegritynetwork-access
2026-07-21
NVD CVE
CVE-2026-28306: SolarWinds Serv-U is affected by a privilege escalation vulnerability that allow
CRITICAL
SolarWinds Serv-U is affected by a privilege escalation vulnerability that allows a domain administrator to elevate their privileges to a system administrator. The impact is lower in Windows deployments.
cve-2026-28306cybersecuritydomain-administratornvd-cvepatch-managementprivileges-escalationrisk-managementserv-u
2026-07-21
NVD CVE
CVE-2026-28307: SolarWinds Serv-U is affected by a privilege escalation vulnerability that allow
CRITICAL
SolarWinds Serv-U is affected by a privilege escalation vulnerability that allows a domain user group to be elevated into an administrator group. The impact is lower in Windows deployments.
administrator-privilegescve-2026-28307cybersecurityincident-responsenetwork-securitynvd-cvepatch-managementprivileges-escalation
2026-07-21
NVD CVE
CVE-2026-60562: Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion Middleware
CRITICAL
Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion Middleware (component: Runtime Tools). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Easily exploitable vulnerability...
2026-07-21
NVD CVE
CVE-2026-28309: SolarWinds Serv-U is affected by a broken access control vulnerability that allo
CRITICAL
SolarWinds Serv-U is affected by a broken access control vulnerability that allows a domain administrator to create system administrator accounts. The impact is lower in Windows deployments.
broken-access-controlcve-2026-28309cybersecuritydfar-252-204-7012domain-administratorincident-responsenist-800-171nvd-cve
2026-07-21
NVD CVE
CVE-2026-28314: SolarWinds Serv-U is affected by an insecure direct object reference vulnerabili
CRITICAL
SolarWinds Serv-U is affected by an insecure direct object reference vulnerability that leads to an account takeover. User authentication is required. The impact is lower in Windows deployments.
accounts-takeovercve-2026-28314cybersecuritydata-compromisedfar-252-204-7012incident-responseinsecure-direct-object-referencenist-800-171
2026-07-21
NVD CVE
CVE-2026-28312: SolarWinds Serv-U is affected by a privilege escalation vulnerability. This woul
CRITICAL
SolarWinds Serv-U is affected by a privilege escalation vulnerability. This would elevate a group’s access to system administrator and allow code execution as root. The impact is lower in Windows deployments.
code-executioncve-2026-28312cybersecuritydefense-industrial-basedfar-252-204-7012incident-responsenist-800-171nvd-cve
2026-07-21
NVD CVE
CVE-2026-28316: SolarWinds Serv-U is affected by an insecure direct object reference (IDOR) vuln
CRITICAL
SolarWinds Serv-U is affected by an insecure direct object reference (IDOR) vulnerability that can lead to privilege escalation to a system administrator with the ability to execute commands as the root user. This...
command-executioncve-2026-28316cybersecuritydfar-252-204-7012idorincident-responsenist-800-171nvd-cve
2026-07-21
NVD CVE
CVE-2026-60224: Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (compo
CRITICAL
Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 12.2.1.4.0, 14.1.1.0.0, 14.1.2.0.0 and 15.1.1.0.0. Easily exploitable...
availabilityconfidentialitycore-componentcve-2026-60224cvss-31data-compromiseintegritynetwork-access