Oracle Corporation

742 tracked vulnerabilities.

CVE-2026-35255 MEDIUM
Oracle Cloud Native Environment Command Line Interface - Arbitrary Code Execution
May 06, 2026
CVSS 6.6
EPSS 0.00
CVE-2026-35254 MEDIUM
Oracle OCI CLI 3.77 - Unauthenticated Path Traversal via File Import
May 06, 2026
CVSS 6.1
EPSS 0.00
CVE-2026-35253 MEDIUM
Oracle Macaron Tool v0.22.0 - Unauthenticated Origin Validation Error via HTTP
May 06, 2026
CVSS 4.7
EPSS 0.00
CVE-2026-35228 HIGH
Oracle MCP Server Helper Tool 1.0.1-1.0.156 - SQL Injection
May 05, 2026
CVSS 8.7
EPSS 0.00
CVE-2026-35233 MEDIUM
Oracle Linux 8-10 - Out-of-bounds Read in ELF Parser via sh_link Field
May 01, 2026
CVSS 4.4
EPSS 0.00
CVE-2026-21996 LOW
Oracle Linux 8-10 - Denial of Service via Malicious ELF Binary
May 01, 2026
CVSS 3.3
EPSS 0.00
CVE-2026-35252 MEDIUM
Oracle Security Service 12.2.1.4.0 - Privilege Escalation
Apr 21, 2026
CVSS 6.4
EPSS 0.00
CVE-2026-35251 HIGH
Oracle VM VirtualBox 7.2.6 - Privilege Escalation
Apr 21, 2026
CVSS 7.5
EPSS 0.00
CVE-2026-35250 LOW
Oracle VM VirtualBox 7.2.6 - Authenticated Partial Denial of Service
Apr 21, 2026
CVSS 2.3
EPSS 0.00
CVE-2026-35249 LOW
Oracle VM VirtualBox 7.2.6 - Privilege Escalation
Apr 21, 2026
CVSS 3.2
EPSS 0.00
CVE-2026-35248 MEDIUM
Oracle VM VirtualBox 7.2.6 - Authenticated Unauthorized Data Access and Partial Denial of Service
Apr 21, 2026
CVSS 5.0
EPSS 0.00
CVE-2026-35247 MEDIUM
Oracle VM VirtualBox 7.2.6 - Privilege Escalation
Apr 21, 2026
CVSS 6.0
EPSS 0.00
CVE-2026-35246 HIGH
Oracle VM VirtualBox 7.2.6 - Privilege Escalation
Apr 21, 2026
CVSS 7.5
EPSS 0.00
CVE-2026-35245 HIGH
Oracle VM VirtualBox 7.2.6 - Unauthenticated Denial of Service via RDP
Apr 21, 2026
CVSS 7.5
EPSS 0.00
CVE-2026-35244 MEDIUM
Oracle Hyperion Infrastructure Technology 11.2.24.0.000 - Privilege Escalation
Apr 21, 2026
CVSS 5.2
EPSS 0.00
CVE-2026-35243 HIGH
Oracle ADF 12.2.1.4.0 - Privilege Escalation
Apr 21, 2026
CVSS 7.8
EPSS 0.00
CVE-2026-35242 HIGH
Oracle VM VirtualBox 7.2.6 - Privilege Escalation
Apr 21, 2026
CVSS 7.5
EPSS 0.00
CVE-2026-35241 MEDIUM
Oracle PeopleSoft Enterprise CS Student Records 9.2 - Info Disclosure
Apr 21, 2026
CVSS 5.7
EPSS 0.00
CVE-2026-35240 MEDIUM
MySQL Server 8.0.0-8.0.45, 8.4.0-8.4.8, 9.0.0-9.6.0 - Authenticated Denial of Service in Server Optimizer
Apr 21, 2026
CVSS 4.9
EPSS 0.00
CVE-2026-35239 MEDIUM
MySQL Server 8.0.0-8.0.45, 8.4.0-8.4.8, 9.0.0-9.6.0 - Authenticated Denial of Service in Server: DML
Apr 21, 2026
CVSS 4.9
EPSS 0.00
CVE-2026-35238 MEDIUM
MySQL Server 8.0.0-8.0.45, 8.4.0-8.4.8, 9.0.0-9.6.0 - Authenticated Denial of Service in InnoDB
Apr 21, 2026
CVSS 4.9
EPSS 0.00
CVE-2026-35237 MEDIUM
MySQL Server 8.0.0-8.0.45, 8.4.0-8.4.8, 9.0.0-9.6.0 - Authenticated Denial of Service in InnoDB
Apr 21, 2026
CVSS 4.9
EPSS 0.00
CVE-2026-35236 MEDIUM
MySQL Server 8.0.0-8.0.45, 8.4.0-8.4.8, 9.0.0-9.6.0 - Authenticated Denial of Service in InnoDB
Apr 21, 2026
CVSS 4.9
EPSS 0.00
CVE-2026-35235 MEDIUM
MySQL Server 9.0.0-9.6.0 - Authenticated Denial of Service in GIS Component
Apr 21, 2026
CVSS 4.9
EPSS 0.00
CVE-2026-35234 MEDIUM
MySQL Server 9.0.0-9.6.0 - Authenticated Denial of Service in Server Partition Component
Apr 21, 2026
CVSS 4.9
EPSS 0.00