CWE-200

High likelihood

Exposure of Sensitive Information to an Unauthorized Actor

Parent: CWE-668 - Exposure of Resource to Wrong Sphere

The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.

10,504 vulnerabilities with CWE-200
CVE-2026-62565 HIGH
Oracle Hrms (us) < 12.2.15 - Exposure of Sensitive Information to an Unauthorized Actor
CVSS 7.1
CVE-2026-62560 HIGH
Oracle HRMS (Norway) 12.2.3-12.2.15 - Authenticated Unauthorized Data Access via HTTP
CVSS 7.7
CVE-2026-62559 MEDIUM
Oracle Hrms (us) < 12.2.15 - Exposure of Sensitive Information to an Unauthorized Actor
CVSS 6.8
CVE-2026-62556 MEDIUM
Oracle Hrms (us) < 12.2.15 - Exposure of Sensitive Information to an Unauthorized Actor
CVSS 6.5
CVE-2026-62528 MEDIUM
Oracle Hcm Configuration Workbench < 12.2.15 - Denial of Service
CVSS 6.3
CVE-2026-62527 MEDIUM
Oracle Learning Management < 12.2.15 - Denial of Service
CVSS 6.3
CVE-2026-62525 MEDIUM
Oracle Quality < 12.2.15 - Denial of Service
CVSS 6.3
CVE-2026-62524 MEDIUM
Oracle Hrms (us) < 12.2.15 - Denial of Service
CVSS 6.3
CVE-2026-62519 MEDIUM
Oracle Succession Planning < 12.2.15 - Denial of Service
CVSS 6.3
CVE-2026-62518 HIGH
Oracle Production Scheduling < 12.2.15 - Denial of Service
CVSS 7.6
CVE-2026-62490 MEDIUM
Oracle Contracts Integration < 12.2.15 - Exposure of Sensitive Information to an Unauthorized Actor
CVSS 5.3
CVE-2026-62473 HIGH
Oracle Installed Base < 12.2.15 - Denial of Service
CVSS 8.3
CVE-2026-62470 MEDIUM
Oracle Self-Service Human Resources < 12.2.15 - Exposure of Sensitive Information to an Unauthorized Actor
CVSS 6.5
CVE-2026-62453 MEDIUM
Oracle Hrms (uk) < 12.2.15 - Denial of Service
CVSS 6.3
CVE-2026-61316 MEDIUM
Oracle Edi Gateway < 12.2.15 - Exposure of Sensitive Information to an Unauthorized Actor
CVSS 4.3
CVE-2026-61315 MEDIUM
Oracle Edi Gateway < 12.2.15 - Exposure of Sensitive Information to an Unauthorized Actor
CVSS 4.3
CVE-2026-61304 MEDIUM
Oracle Price Protection < 12.2.15 - Denial of Service
CVSS 6.3
CVE-2026-61303 LOW
Oracle Edi Gateway < 12.2.15 - Exposure of Sensitive Information to an Unauthorized Actor
CVSS 1.9
CVE-2026-61294 MEDIUM
Oracle Common Applications Calendar < 12.2.15 - Denial of Service
CVSS 6.3
CVE-2026-61292 MEDIUM
Oracle U.s. Federal Financials < 12.2.15 - Exposure of Sensitive Information to an Unauthorized Actor
CVSS 4.3
CVE-2026-61279 MEDIUM
Oracle Proposals < 12.2.15 - Denial of Service
CVSS 6.3
CVE-2026-61267 HIGH
Oracle Hcm Configuration Workbench < 12.2.15 - Denial of Service
CVSS 7.3
CVE-2026-61266 MEDIUM
Oracle Supply Chain Globalization < 12.2.15 - Denial of Service
CVSS 6.3
CVE-2026-61251 MEDIUM
Oracle Corporation Hrms (Australia) < 12.2.15 - Exposure of Sensitive Information to an Unauthorized Actor
CVSS 6.5
CVE-2026-61249 MEDIUM
Oracle Learning Management < 12.2.15 - Exposure of Sensitive Information to an Unauthorized Actor
CVSS 6.5
Details
Vulnerabilities 10,504
Exploit Likelihood High