Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

CWE-284

MITRE ↗

CWE-284

877
CRITICAL
2,593
HIGH
2,830
MEDIUM
289
LOW
6,696 CVEs · Page 20/134
8.1
CVE-2026-58286

Improper access control in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a ne

8.1
CVE-2025-45422

Incorrect access control in Proximus b-box v8c.725A allows authenticated attackers to bypass normal restrictions and mak

8.1
CVE-2026-58617

Improper access control in Microsoft 365 Copilot for iOS allows an unauthorized attacker to elevate privileges over a ne

8.1
CVE-2026-1609

A flaw was found in Keycloak. When the JSON Web Token (JWT) authorization grant preview feature is enabled and a user ac

8.1
CVE-2026-46353

BigBlueButton is an open-source virtual classroom. Prior to 3.0.21, bbb-web checksum validation could be bypassed when a

8.1
CVE-2026-47014

Vulnerability in the Oracle Product Workbench product of Oracle E-Business Suite (component: Security). Supported versi

8.1
CVE-2026-47028

Vulnerability in the Oracle Document Management and Collaboration product of Oracle E-Business Suite (component: Attachm

8.1
CVE-2026-60192

Vulnerability in the MySQL Connectors product of Oracle MySQL (component: Connector/Net). Supported versions that are a

8.1
CVE-2026-60222

Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core). Supported versions that ar

8.1
CVE-2026-60281

Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core). Supported versions that ar

8.1
CVE-2026-60323

Vulnerability in the Oracle Identity Manager product of Oracle Fusion Middleware (component: OIM Legacy UI). Supported

8.1
CVE-2026-60520

Vulnerability in the Oracle Unified Directory product of Oracle Fusion Middleware (component: OUD Core). Supported vers

8.1
CVE-2026-60560

Vulnerability in the Oracle Identity Manager product of Oracle Fusion Middleware (component: REST WebServices). Support

8.1
CVE-2026-60599

Vulnerability in the PeopleSoft Enterprise CS Student Records product of Oracle PeopleSoft (component: Research Tracking

8.1
CVE-2026-60670

Vulnerability in the Oracle Applications Technology Stack product of Oracle E-Business Suite (component: Client System A

8.1
CVE-2026-60686

Vulnerability in the Oracle U.S. Federal Financials product of Oracle E-Business Suite (component: Internal Operations).

8.1
CVE-2026-60691

Vulnerability in the Oracle Content Manager product of Oracle E-Business Suite (component: Internal Operations). Suppor

8.1
CVE-2026-60700

Vulnerability in the Oracle Universal Work Queue product of Oracle E-Business Suite (component: UWQ Server Issues). Sup

8.1
CVE-2026-60706

Vulnerability in the Oracle Process Manufacturing Inventory product of Oracle E-Business Suite (component: Internal Oper

8.1
CVE-2026-60708

Vulnerability in the Oracle Process Manufacturing Financials product of Oracle E-Business Suite (component: Internal Ope

8.1
CVE-2026-60710

Vulnerability in the Oracle EDI Gateway product of Oracle E-Business Suite (component: Internal Operations). Supported

8.1
CVE-2026-60714

Vulnerability in the Oracle Price Protection product of Oracle E-Business Suite (component: Internal Operations). Suppo

8.1
CVE-2026-60732

Vulnerability in the Oracle iReceivables product of Oracle E-Business Suite (component: AR Web Utilities). Supported ve

8.1
CVE-2026-60735

Vulnerability in the Oracle Sales Offline product of Oracle E-Business Suite (component: Internal Operations). Supporte

8.1
CVE-2026-60736

Vulnerability in the Oracle E-Business Intelligence product of Oracle E-Business Suite (component: Definition). Support

8.1
CVE-2026-60740

Vulnerability in the Oracle Cash Management product of Oracle E-Business Suite (component: Internal Operations). Suppor

8.1
CVE-2026-60741

Vulnerability in the Oracle Cost Management product of Oracle E-Business Suite (component: Internal Operations). Suppor

8.1
CVE-2026-60749

Vulnerability in the Oracle Assets product of Oracle E-Business Suite (component: Internal Operations). Supported versi

8.1
CVE-2026-60756

Vulnerability in the Oracle EDI Gateway product of Oracle E-Business Suite (component: All Miscellaneous EDI Issues). S

8.1
CVE-2026-60764

Vulnerability in the Oracle Financials Common Modules product of Oracle E-Business Suite (component: Common Components).

8.1
CVE-2026-60768

Vulnerability in the Oracle Applications Framework product of Oracle E-Business Suite (component: Graph / Charting). Su

8.1
CVE-2026-60771

Vulnerability in the Oracle Complex Maintenance, Repair and Overhaul product of Oracle E-Business Suite (component: Inte

8.1
CVE-2026-60778

Vulnerability in the Oracle Payments product of Oracle E-Business Suite (component: File Transmission). Supported versi

8.1
CVE-2026-60780

Vulnerability in the Oracle Workflow product of Oracle E-Business Suite (component: Internal Operations). Supported ver

8.1
CVE-2026-60784

Vulnerability in the Oracle Trading Community product of Oracle E-Business Suite (component: Party Search UI). Supporte

8.1
CVE-2026-60785

Vulnerability in the Oracle iReceivables product of Oracle E-Business Suite (component: AR Web Utilities). Supported ve

8.1
CVE-2026-60793

Vulnerability in the Oracle TeleSales product of Oracle E-Business Suite (component: Internal Operations). Supported ve

8.1
CVE-2026-60817

Vulnerability in the Oracle iStore product of Oracle E-Business Suite (component: Shopping Cart). Supported versions th

8.1
CVE-2026-60840

Vulnerability in the Oracle Demand Signal Repository product of Oracle E-Business Suite (component: Internal Operations)

8.1
CVE-2026-60844

Vulnerability in the Oracle Customer Support product of Oracle E-Business Suite (component: Update Service Request). Su

8.1
CVE-2026-60848

Vulnerability in the Oracle Project Contracts product of Oracle E-Business Suite (component: Internal Operations). Supp

8.1
CVE-2026-60852

Vulnerability in the Oracle Lease and Finance Management product of Oracle E-Business Suite (component: Internal Operati

8.1
CVE-2026-60857

Vulnerability in the Oracle Contracts Integration product of Oracle E-Business Suite (component: Internal Operations).

8.1
CVE-2026-60867

Vulnerability in the Oracle Advanced Pricing product of Oracle E-Business Suite (component: Pricing Installation). Supp

8.1
CVE-2026-60871

Vulnerability in the Oracle Risk Management product of Oracle E-Business Suite (component: Internal Operations). Suppor

8.1
CVE-2026-60875

Vulnerability in the Oracle Trade Management product of Oracle E-Business Suite (component: Claim LOV). Supported versi

8.1
CVE-2026-60877

Vulnerability in the Oracle Trade Management product of Oracle E-Business Suite (component: Claim LOV). Supported versi

8.1
CVE-2026-60904

Vulnerability in the Oracle Installed Base product of Oracle E-Business Suite (component: Create Item Instance). Suppor

8.1
CVE-2026-60917

Vulnerability in the Oracle Inventory Management product of Oracle E-Business Suite (component: Core Receiving). Suppor

8.1
CVE-2026-60942

Vulnerability in the Oracle Service Fulfillment Manager product of Oracle E-Business Suite (component: Fulfillment Engin

Frequently Asked Questions

What is CWE-284?

CWE-284 (CWE-284) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.

How many CVEs are classified as CWE-284?

There are 7,306 CVE records associated with CWE-284 in our database. Of these, 877 are critical severity, 2593 are high severity, and 2830 are medium severity.

How can I protect against CWE-284 vulnerabilities?

Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-284 using AI-powered security agents.

Detect CWE-284 Vulnerabilities

CyberStrike's AI agents automatically detect cwe-284 vulnerabilities across your infrastructure.

Get Started