Filter
-Infinity
0

Oracle Communications Diameter Signaling RouterLegion of the Bouncy Castle Java Cryptography APIs could allow a remote attacker to execute arbitrar…

First published (updated )

Oracle Business Process Management SuiteBouncy Castle could provide weaker than expected security, caused by an error in the Low-level inter…

7.5
First published (updated )

Apache TomEEThe ASN.1 parser in Bouncy Castle Crypto (aka BC Java) 1.63 can trigger a large attempted memory all…

7.5
First published (updated )

Apache Log4jApache log4j2 log messages substitution (CVE-2021-44228)

First published (updated )

Oracle Retail Integration BusApache log4j2 log messages substitution (CVE-2021-44228)

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Oracle REST Data ServicesJQuery Cross-Site Scripting (XSS) Vulnerability

First published (updated )

redhat/eap7-elytron-webFasterXML jackson-databind 2.x before 2.9.10.4 mishandles the interaction between serialization gadg…

First published (updated )

Oracle Banking Digital ExperienceFasterXML jackson-databind 2.x before 2.9.10.4 mishandles the interaction between serialization gadg…

First published (updated )

Oracle Utilitiesjackson-databind before 2.13.0 allows a Java StackOverflow exception and denial of service via a lar…

7.5
First published (updated )

Oracle Retail Financial IntegrationBypass of the secureValidation property

7.5
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Oracle WebLogic ServerUncontrolled Resource Consumption in org.cyberneko.html (nokogiri fork)

7.5
First published (updated )

Oracle WebLogic ServerPath Traversal in ESAPI

First published (updated )

Oracle WebLogic ServerCross-site Scripting in org.owasp.esapi:esapi -- antisamy-esapi.xml configuration file

First published (updated )

Apache Struts 2Apache Struts Remote Code Execution Vulnerability

First published (updated )

Oracle WebLogic ServerOracle Corporation WebLogic Server Remote Code Execution Vulnerability

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Oracle WebLogic ServerOracle WebLogic Server OS Command Injection Vulnerability

First published (updated )

Oracle WebLogic ServerVulnerability in the Oracle WebLogic Server component of Oracle Fusion Middleware (subcomponent: Cor…

First published (updated )

Oracle WebLogic ServerOracle WebLogic Server Deserialization of Untrusted Data Vulnerability

First published (updated )

Oracle WebLogic ServerUnspecified vulnerability in the WebLogic Server in Oracle WebLogic Server 7.0 SP7, 8.1 SP6, 9.0, 9.…

First published (updated )

Symantec NetBackup ApplianceSpring Framework JDK 9+ Remote Code Execution Vulnerability

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Apache Log4jA deserialization flaw in the Chainsaw component of Log4j 1 can lead to malicious code execution.

First published (updated )

Apache Log4jSQL injection in JDBC Appender in Apache Log4j V1

First published (updated )

Apache Log4jDeserialization of untrusted data in JMSSink in Apache Log4j 1.x

First published (updated )

redhat/log4jDeserialization of untrusted data in JMSAppender in Apache Log4j 1.2

8.1
First published (updated )

Oracle WebLogic ServerVulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). …

7.5
EPSS
0.09%
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Oracle WebLogic ServerVulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). …

First published (updated )

Oracle WebLogic ServerCSRF

EPSS
0.05%
First published (updated )

Oracle Banking APIsPossible limited path traversal vulnerabily in Apache Commons IO

First published (updated )

Oracle WebLogic ServerVulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). …

7.5
First published (updated )

Oracle WebLogic ServerVulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). …

7.5
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2025 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203