Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

Oracle

18,434 known vulnerabilities

837
CRITICAL
3,115
HIGH
3,892
MEDIUM
511
LOW

Top Products

mysql 856 vm virtualbox 407 jdk 350 solaris 338 jre 337 mysql server 311 peoplesoft enterprise peopletools 296 weblogic server 277 e-business suite 203 graalvm 193
8,355 CVEs · Page 54/168
5.3
CVE-2023-30443

IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.5, 11.1, and 11.5 is vulnerable to denial of servic

6.1
CVE-2024-9653

The Restaurant Menu – Food Ordering System – Table Reservation plugin for WordPress is vulnerable to Reflected Cross-Sit

7.5
CVE-2024-21287 KEV

Vulnerability in the Oracle Agile PLM Framework product of Oracle Supply Chain (component: Software Development Kit, Pro

5.5
CVE-2024-45072

IBM WebSphere Application Server 8.5 and 9.0 is vulnerable to an XML External Entity Injection (XXE) attack when process

5.5
CVE-2024-45071

IBM WebSphere Application Server 8.5 and 9.0 is vulnerable to stored cross-site scripting. This vulnerability allows a p

5.4
CVE-2024-21286

Vulnerability in the PeopleSoft Enterprise ELM Enterprise Learning Management product of Oracle PeopleSoft (component: E

7.1
CVE-2024-21285

Vulnerability in the Oracle Banking Liquidity Management product of Oracle Financial Services Applications (component: R

7.1
CVE-2024-21284

Vulnerability in the Oracle Banking Liquidity Management product of Oracle Financial Services Applications (component: R

8.1
CVE-2024-21283

Vulnerability in the PeopleSoft Enterprise HCM Global Payroll Core product of Oracle PeopleSoft (component: Global Payro

8.1
CVE-2024-21282

Vulnerability in the Oracle Financials product of Oracle E-Business Suite (component: Common Components). Supported ver

5.3
CVE-2024-21281

Vulnerability in the Oracle Banking Liquidity Management product of Oracle Financial Services Applications (component: I

8.1
CVE-2024-21280

Vulnerability in the Oracle Service Contracts product of Oracle E-Business Suite (component: Authoring). Supported vers

8.1
CVE-2024-21279

Vulnerability in the Oracle Sourcing product of Oracle E-Business Suite (component: Auctions). Supported versions that

8.1
CVE-2024-21278

Vulnerability in the Oracle Contract Lifecycle Management for Public Sector product of Oracle E-Business Suite (componen

8.1
CVE-2024-21277

Vulnerability in the Oracle MES for Process Manufacturing product of Oracle E-Business Suite (component: Device Integrat

8.1
CVE-2024-21276

Vulnerability in the Oracle Work in Process product of Oracle E-Business Suite (component: Messages). Supported version

8.1
CVE-2024-21275

Vulnerability in the Oracle Quoting product of Oracle E-Business Suite (component: User Interface). Supported versions

7.5
CVE-2024-21274

Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Console). Supported version

6.0
CVE-2024-21273

Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that a

7.5
CVE-2024-21272

Vulnerability in the MySQL Connectors product of Oracle MySQL (component: Connector/Python). Supported versions that ar

8.1
CVE-2024-21271

Vulnerability in the Oracle Field Service product of Oracle E-Business Suite (component: Field Service Engineer Portal).

8.1
CVE-2024-21270

Vulnerability in the Oracle Common Applications Calendar product of Oracle E-Business Suite (component: Tasks). Support

8.1
CVE-2024-21269

Vulnerability in the Oracle Incentive Compensation product of Oracle E-Business Suite (component: Compensation Plan). S

8.1
CVE-2024-21268

Vulnerability in the Oracle Applications Manager product of Oracle E-Business Suite (component: Diagnostics). Supported

8.1
CVE-2024-21267

Vulnerability in the Oracle Cost Management product of Oracle E-Business Suite (component: Cost Planning). Supported ve

8.1
CVE-2024-21266

Vulnerability in the Oracle Advanced Pricing product of Oracle E-Business Suite (component: Price List). Supported vers

8.1
CVE-2024-21265

Vulnerability in the Oracle Site Hub product of Oracle E-Business Suite (component: Site Hierarchy Flows). Supported ve

5.4
CVE-2024-21264

Vulnerability in the PeopleSoft Enterprise CC Common Application Objects product of Oracle PeopleSoft (component: Activi

6.1
CVE-2024-21263

Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that a

6.5
CVE-2024-21262

Vulnerability in the MySQL Connectors product of Oracle MySQL (component: Connector/ODBC). Supported versions that are

4.9
CVE-2024-21261

Vulnerability in Oracle Application Express (component: General). Supported versions that are affected are 23.2 and 24

7.5
CVE-2024-21260

Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). Supported versions t

7.5
CVE-2024-21259

Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that a

5.3
CVE-2024-21258

Vulnerability in the Oracle Installed Base product of Oracle E-Business Suite (component: User Interface). Supported ve

3.0
CVE-2024-21257

Vulnerability in the Oracle Hyperion BI+ product of Oracle Hyperion (component: UI and Visualization). The supported v

8.8
CVE-2024-21255

Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: XMLPublisher). Supporte

8.8
CVE-2024-21254

Vulnerability in the Oracle BI Publisher product of Oracle Analytics (component: Web Server). Supported versions that a

2.3
CVE-2024-21253

Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that a

8.1
CVE-2024-21252

Vulnerability in the Oracle Product Hub product of Oracle E-Business Suite (component: Item Catalog). Supported version

3.1
CVE-2024-21251

Vulnerability in the Java VM component of Oracle Database Server. Supported versions that are affected are 19.3-19.24,

8.1
CVE-2024-21250

Vulnerability in the Oracle Process Manufacturing Product Development product of Oracle E-Business Suite (component: Qua

4.3
CVE-2024-21249

Vulnerability in the PeopleSoft Enterprise FIN Expenses product of Oracle PeopleSoft (component: Expenses). The suppor

5.3
CVE-2024-21248

Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that a

3.8
CVE-2024-21247

Vulnerability in the MySQL Client product of Oracle MySQL (component: Client: mysqldump). Supported versions that are a

7.5
CVE-2024-21246

Vulnerability in the Oracle Service Bus product of Oracle Fusion Middleware (component: OSB Core Functionality). The s

2.2
CVE-2024-21244

Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Telemetry). Supported versions that are a

2.2
CVE-2024-21243

Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Telemetry). Supported versions that are a

3.5
CVE-2024-21242

Vulnerability in the XML Database component of Oracle Database Server. Supported versions that are affected are 19.3-19

4.9
CVE-2024-21241

Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are a

4.9
CVE-2024-21239

Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are

Frequently Asked Questions

How many CVEs affect Oracle?

Oracle has 18,434 CVE records in our database, including 1653 critical and 6617 high severity vulnerabilities. 49 of these are listed in CISA's Known Exploited Vulnerabilities catalog.

What are the most severe Oracle vulnerabilities?

Oracle has 1653 critical severity (CVSS 9.0+) and 6617 high severity (CVSS 7.0-8.9) vulnerabilities. 49 vulnerabilities are confirmed as actively exploited in the wild.

How can I scan for Oracle vulnerabilities?

CyberStrike's AI-powered security agents automatically detect vulnerabilities in Oracle products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.

Detect Oracle Vulnerabilities

CyberStrike scans your infrastructure for Oracle vulnerabilities and provides real-time remediation guidance.

Get Started