Skip to main content

CWE archive

CWE-284 CVEs

Programmatic archive

5,607 CVEs tagged with CWE-284701 Critical, 1,856 High, 2,521 Medium, 519 Low, 10 Unrated.

CVE-2026-61221

Published Jul 21, 2026

Vulnerability in the Oracle Item Master product of Oracle E-Business Suite (component: iSet-up bugs). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable…

CVSS 5.4 · Medium
evidence mentions
1
Buzz score
11.9

CVE-2026-61220

Published Jul 21, 2026

Vulnerability in the Oracle Banking Origination product of Oracle Financial Services Applications (component: Configuration). The supported version that is affected is 14.5.0.16…

CVSS 6.1 · Medium
evidence mentions
1
Buzz score
11.9

CVE-2026-61218

Published Jul 21, 2026

Vulnerability in the Oracle E-Business Suite Secure Enterprise Search product of Oracle E-Business Suite (component: Search Integration Engine). Supported versions that are affec…

CVSS 8.1 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-61217

Published Jul 21, 2026

Vulnerability in the Oracle Security Service product of Oracle Fusion Middleware (component: Oracle SSL API). The supported version that is affected is 12.2.1.4.0. Difficult to…

CVSS 6.4 · Medium
evidence mentions
1
Buzz score
11.9

CVE-2026-61216

Published Jul 21, 2026

Vulnerability in the Oracle Payroll product of Oracle E-Business Suite (component: Payroll). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerabi…

CVSS 6.3 · Medium
evidence mentions
1
Buzz score
11.9

CVE-2026-61211

Published Jul 21, 2026

Vulnerability in the RDBMS component of Oracle Database Server. Supported versions that are affected are 19.3-19.31 and 23.4.0-23.26.2. Easily exploitable vulnerability allows l…

CVSS 9.9 · Critical
evidence mentions
2
Buzz score
21.0

CVE-2026-61210

Published Jul 21, 2026

Vulnerability in the PeopleSoft Enterprise SCM Manufacturing product of Oracle PeopleSoft (component: Security). The supported version that is affected is 9.2. Difficult to expl…

CVSS 7.4 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-61207

Published Jul 21, 2026

Vulnerability in the PeopleSoft Enterprise SCM eProcurement product of Oracle PeopleSoft (component: Manage Requisition Status). The supported version that is affected is 9.2. E…

CVSS 9.3 · Critical
evidence mentions
1
Buzz score
11.9

CVE-2026-61205

Published Jul 21, 2026

Vulnerability in the PeopleSoft Enterprise SCM Purchasing product of Oracle PeopleSoft (component: Purchasing). The supported version that is affected is 9.2. Easily exploitable…

CVSS 8.2 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-61204

Published Jul 21, 2026

Vulnerability in the PeopleSoft Enterprise FIN Program Management product of Oracle PeopleSoft (component: Primavera Integration). The supported version that is affected is 9.2.…

CVSS 9.0 · Critical
evidence mentions
1
Buzz score
11.9

CVE-2026-61203

Published Jul 21, 2026

Vulnerability in the PeopleSoft Enterprise FIN Expenses product of Oracle PeopleSoft (component: Expenses). The supported version that is affected is 9.2. Easily exploitable vul…

CVSS 9.4 · Critical
evidence mentions
1
Buzz score
11.9

CVE-2026-61202

Published Jul 21, 2026

Vulnerability in the Oracle Solaris product of Oracle Systems (component: Utility). Supported versions that are affected are 11.3 and 11.4. Difficult to exploit vulnerability al…

CVSS 7.5 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-61201

Published Jul 21, 2026

Vulnerability in the PeopleSoft Enterprise CRM Common Objects product of Oracle PeopleSoft (component: Common Objects). The supported version that is affected is 9.2.23. Difficu…

CVSS 9.0 · Critical
evidence mentions
1
Buzz score
11.9

CVE-2026-61200

Published Jul 21, 2026

Vulnerability in the Oracle Labor Distribution product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affected are 12.2.3-12.2.15. Easil…

CVSS 5.4 · Medium
evidence mentions
1
Buzz score
11.9

CVE-2026-61197

Published Jul 21, 2026

Vulnerability in the Oracle Identity Manager product of Oracle Fusion Middleware (component: OIM Legacy UI). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.1.0.…

CVSS 9.1 · Critical
evidence mentions
1
Buzz score
11.9

CVE-2026-56746

Published Jul 21, 2026

Netty is a network application framework for development of protocol servers and clients. Versions 4.2.0.Final through 4.2.15.Final and 4.1.0.Final through 4.1.135.Final, are vuln…

CVSS 6.5 · Medium
evidence mentions
3
Buzz score
18.9

CVE-2026-43945

Published Jul 21, 2026

FUXA is a web-based Process Visualization (SCADA/HMI/Dashboard) software. Versions 1.2.11 until 1.3.1 allow an unauthenticated remote attacker to achieve Full Remote Code Executio…

CVSS 8.9 · High
evidence mentions
2
Buzz score
16.0

CVE-2026-47405

Published Jul 21, 2026

PraisonAI Platform is the platform layer for the PraisonAI multi-agent teams system. Versions prior to 0.1.4 have a broken workspace authorization check that allows any authentica…

CVSS 8.8 · High
evidence mentions
3
Buzz score
18.9

CVE-2026-47399

Published Jul 21, 2026

PraisonAI Platform is the platform layer for the PraisonAI multi-agent teams system. Prior to version 0.1.4, the workspace-scoped REST routes contain a systemic object-level autho…

CVSS 8.8 · High
evidence mentions
3
Buzz score
18.9

CVE-2026-16454

Published Jul 21, 2026

In Eclipse hawkBit versions 1.0.3 and prior, a privilege escalation vulnerability (CWE-284 / CWE-862) has been identified in the Direct Device Integration (DDI) Controller. Thi…

CVSS 4.3 · Medium
evidence mentions
2
Buzz score
17.5

CVE-2026-16451

Published Jul 21, 2026

A security flaw has been discovered in zsadmin2025 ZS-Admin up to b52e14536d59fda11e56e2536a1c32e82a38cead. This impacts an unknown function of the file /api/system/file/upload of…

CVSS 2.1 · Low
evidence mentions
5
Buzz score
24.4

CVE-2026-47396

Published Jul 21, 2026

PraisonAI is a multi-agent teams system. Prior to version 4.6.40, PraisonAI's call server exposes a network-facing agent control API without authentication when `CALL_SERVER_TOKEN…

CVSS 9.8 · Critical
evidence mentions
2
Buzz score
16.0

CVE-2026-28321

Published Jul 21, 2026

SolarWinds Serv-U is affected by a broken access control vulnerability that could allow arbitrary file read and write, which can then be used to escalate privileges and execute co…

CVSS 9.1 · Critical
evidence mentions
2
Buzz score
21.0

CVE-2026-28307

Published Jul 21, 2026

SolarWinds Serv-U is affected by a privilege escalation vulnerability that allows a domain user group to be elevated into an administrator group. The impact is lower in Windows de…

CVSS 9.1 · Critical
evidence mentions
2
Buzz score
21.0

CVE-2026-28306

Published Jul 21, 2026

SolarWinds Serv-U is affected by a privilege escalation vulnerability that allows a domain administrator to elevate their privileges to a system administrator. The impact is lower…

CVSS 9.1 · Critical
evidence mentions
2
Buzz score
21.0
Showing 126-150 of 5,607 CVEsPage 6 of 225