Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

HIGH Severity CVEs

CVSS 7.0 – 8.9

CVSS 7.0–8.9 — serious vulnerabilities that can lead to significant data exposure, privilege escalation, or service disruption

143,102
Total
363
Known Exploited
Showing 73,421 of 143,102 total · Page 115/1469
8.6
CVE-2026-65318

Verba RAG application version 2.1.3 contains an unauthenticated server-side request forgery vulnerability that allows un

8.6
CVE-2026-65317

Verba RAG application version 2.1.3 contains a server-side request forgery vulnerability combined with a same-origin mid

7.5
CVE-2026-65315

Ollama (HEAD f0078ae) contains an uncontrolled memory allocation vulnerability in the GGUF metadata parser that allows r

7.8
CVE-2026-62574

Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE

7.7
CVE-2026-62567

Vulnerability in the Oracle HRMS (UK) product of Oracle E-Business Suite (component: UK Payroll). Supported versions th

7.1
CVE-2026-62565

Vulnerability in the Oracle HRMS (US) product of Oracle E-Business Suite (component: US Payroll Year End). Supported ve

7.8
CVE-2026-62561

Vulnerability in the Oracle HRMS (US) product of Oracle E-Business Suite (component: Internal Operations). Supported ve

7.7
CVE-2026-62560

Vulnerability in the Oracle HRMS (Norway) product of Oracle E-Business Suite (component: Internal Operations). Supporte

7.1
CVE-2026-62557

Vulnerability in the Oracle HRMS (UK) product of Oracle E-Business Suite (component: UK Payroll). Supported versions th

7.2
CVE-2026-62548

Vulnerability in the Oracle HRMS (US) product of Oracle E-Business Suite (component: Internal Operations). Supported ve

8.1
CVE-2026-62547

Vulnerability in the Oracle Workflow product of Oracle E-Business Suite (component: Workflow Notification Mailer). Supp

8.8
CVE-2026-62534

Vulnerability in the Oracle Applications Framework product of Oracle E-Business Suite (component: Web Utilities). Suppo

8.1
CVE-2026-62530

Vulnerability in the Oracle HRMS (France) product of Oracle E-Business Suite (component: French HR). Supported versions

7.5
CVE-2026-62521

Vulnerability in the Oracle HRMS (US) product of Oracle E-Business Suite (component: US Payroll - General). Supported v

7.6
CVE-2026-62518

Vulnerability in the Oracle Production Scheduling product of Oracle E-Business Suite (component: Internal Operations).

8.8
CVE-2026-62516

Vulnerability in the Oracle Demantra Demand Management product of Oracle Supply Chain (component: Product Security). Su

7.6
CVE-2026-62515

Vulnerability in the Oracle Advanced Planning Command Center product of Oracle E-Business Suite (component: Internal Ope

8.1
CVE-2026-62514

Vulnerability in the Oracle Process Manufacturing Regulatory Management product of Oracle E-Business Suite (component: I

8.5
CVE-2026-62513

Vulnerability in the Oracle Process Manufacturing Regulatory Management product of Oracle E-Business Suite (component: I

8.1
CVE-2026-62504

Vulnerability in the Oracle Time and Labor product of Oracle E-Business Suite (component: Internal Operations). Support

8.8
CVE-2026-62498

Vulnerability in the Oracle Flow Manufacturing product of Oracle E-Business Suite (component: Internal Operations). Sup

8.1
CVE-2026-62497

Vulnerability in the Oracle Flow Manufacturing product of Oracle E-Business Suite (component: Internal Operations). Sup

8.8
CVE-2026-62496

Vulnerability in the Oracle Yard Management product of Oracle E-Business Suite (component: Internal Operations). Suppor

7.5
CVE-2026-62495

Vulnerability in the Oracle Process Manufacturing Process Execution product of Oracle E-Business Suite (component: Inter

8.1
CVE-2026-62494

Vulnerability in the Oracle Time and Labor product of Oracle E-Business Suite (component: Internal Operations). Support

7.5
CVE-2026-62493

Vulnerability in the Oracle Purchasing product of Oracle E-Business Suite (component: Internal Operations). Supported v

8.8
CVE-2026-62478

Vulnerability in the Oracle Public Sector Financials product of Oracle E-Business Suite (component: Internal Operations)

8.8
CVE-2026-62476

Vulnerability in the Oracle Public Sector Payroll product of Oracle E-Business Suite (component: Internal Operations).

8.3
CVE-2026-62473

Vulnerability in the Oracle Installed Base product of Oracle E-Business Suite (component: Create Item Instance). Suppor

8.1
CVE-2026-62472

Vulnerability in the Oracle Installed Base product of Oracle E-Business Suite (component: Create Item Instance). Suppor

7.1
CVE-2026-62469

Vulnerability in the Oracle Human Resources product of Oracle E-Business Suite (component: Enterprise Command Center).

8.1
CVE-2026-62468

Vulnerability in the Oracle Human Resources product of Oracle E-Business Suite (component: Enterprise Command Center).

7.2
CVE-2026-62466

Vulnerability in the Oracle Human Resources product of Oracle E-Business Suite (component: Data Removal Tool). Supporte

8.8
CVE-2026-62464

Vulnerability in the Oracle Payroll product of Oracle E-Business Suite (component: Internal Operations). Supported vers

8.2
CVE-2026-62456

Vulnerability in the Oracle HRMS (UK) product of Oracle E-Business Suite (component: Internal Operations). Supported ve

8.1
CVE-2026-62451

Vulnerability in the Oracle Work in Process product of Oracle E-Business Suite (component: Internal Operations). Suppor

8.8
CVE-2026-62447

Vulnerability in the Oracle Trade Management product of Oracle E-Business Suite (component: Claim LOV). Supported versi

8.1
CVE-2026-62445

Vulnerability in the Oracle Order Management product of Oracle E-Business Suite (component: Product Diagnostic Tools).

7.1
CVE-2026-62443

Vulnerability in the Oracle Contracts Integration product of Oracle E-Business Suite (component: Internal Operations).

8.1
CVE-2026-61338

Vulnerability in the Oracle Contracts Integration product of Oracle E-Business Suite (component: Internal Operations).

7.5
CVE-2026-61337

Vulnerability in the Oracle Lease and Finance Management product of Oracle E-Business Suite (component: Internal Operati

7.2
CVE-2026-61336

Vulnerability in the Oracle Lease and Finance Management product of Oracle E-Business Suite (component: Internal Operati

8.1
CVE-2026-61335

Vulnerability in the Oracle Product Workbench product of Oracle E-Business Suite (component: Internal Operations). Supp

7.1
CVE-2026-61334

Vulnerability in the Oracle Price Protection product of Oracle E-Business Suite (component: Internal Operations). Suppo

8.1
CVE-2026-61333

Vulnerability in the Oracle Product Workbench product of Oracle E-Business Suite (component: Internal Operations). Supp

8.1
CVE-2026-61329

Vulnerability in the Oracle Price Protection product of Oracle E-Business Suite (component: Internal Operations). Suppo

8.1
CVE-2026-61327

Vulnerability in the Oracle Bills of Material product of Oracle E-Business Suite (component: Internal Operations). Supp

7.6
CVE-2026-61325

Vulnerability in the Oracle Advanced Benefits product of Oracle E-Business Suite (component: Internal Operations). The

7.7
CVE-2026-61324

Vulnerability in the Oracle Advanced Benefits product of Oracle E-Business Suite (component: Internal Operations). The

8.8
CVE-2026-61322

Vulnerability in the TeleSales product of Oracle E-Business Suite (component: Internal Operations). Supported versions

Frequently Asked Questions

What does HIGH severity mean for CVEs?

CVSS 7.0–8.9 — serious vulnerabilities that can lead to significant data exposure, privilege escalation, or service disruption

How many high severity CVEs exist?

There are 143,102 CVE records rated HIGH in our database. Of these, 363 are listed in CISA's Known Exploited Vulnerabilities catalog.

How should I prioritize high severity vulnerabilities?

HIGH severity vulnerabilities should be patched immediately, especially if they are in the CISA KEV catalog or have a high EPSS score. Use CyberStrike to automatically detect and prioritize these vulnerabilities across your infrastructure.

Detect HIGH Vulnerabilities

CyberStrike scans your infrastructure and detects high severity vulnerabilities in real time.

Get Started