CVE Browser

Search and filter CVEs by severity, ecosystem, EPSS score, and more.

Clear
More filters (active)

Page 1 (more results available)

CVE-2026-61270 HIGH

Vulnerability in the JD Edwards EnterpriseOne Orchestrator product of Oracle JD Edwards (component: E1 IOT Orchestrator Security). Supported versions that are…

CVSS 8.1 EPSS 0.36% Aug 18, 2026
CVE-2026-61265 HIGH

Vulnerability in the JD Edwards EnterpriseOne Orchestrator product of Oracle JD Edwards (component: E1 IOT Orchestrator Security). Supported versions that are…

CVSS 8.1 EPSS 0.39% Aug 18, 2026
CVE-2025-21552 MEDIUM

Vulnerability in the JD Edwards EnterpriseOne Orchestrator product of Oracle JD Edwards (component: E1 IOT Orchestrator Security). Supported versions that are…

CVSS 6.5 EPSS 0.41% Jan 21, 2025
CVE-2024-21168 MEDIUM

Vulnerability in the JD Edwards EnterpriseOne Orchestrator product of Oracle JD Edwards (component: E1 IOT Orchestrator Security). Supported versions that are…

CVSS 6.5 EPSS 0.48% Jul 16, 2024
CVE-2023-22050 MEDIUM

Vulnerability in the JD Edwards EnterpriseOne Orchestrator product of Oracle JD Edwards (component: E1 IOT Orchestrator Security). Supported versions that are…

CVSS 5.4 EPSS 0.38% Jul 18, 2023
CVE-2022-21532 MEDIUM

Vulnerability in the JD Edwards EnterpriseOne Orchestrator product of Oracle JD Edwards (component: E1 IOT Orchestrator). Supported versions that are affected…

CVSS 4.3 EPSS 0.62% Jul 19, 2022
CVE-2021-2052 MEDIUM

Vulnerability in the JD Edwards EnterpriseOne Orchestrator product of Oracle JD Edwards (component: E1 IOT Orchestrator Security). The supported version that i…

CVSS 5.8 EPSS 1.36% Jan 20, 2021
CVE-2020-36179 HIGH

jackson-databind: mishandles the interaction between serialization gadgets and typing, related to oadd.org.apache.commons.dbcp.cpdsadapter.DriverAdapterCPDS

CVSS 8.8 EPSS 17.07% Jan 6, 2021
CVE-2020-36180 HIGH

jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.dbcp2.cpdsadapter.DriverAdapterCPDS

CVSS 8.8 EPSS 4.04% Jan 6, 2021
CVE-2020-36182 HIGH

jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.cpdsadapter.DriverAdapterCPDS

CVSS 8.8 EPSS 4.04% Jan 6, 2021
CVE-2020-36183 HIGH

jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.docx4j.org.apache.xalan.lib.sql.JNDIConnectionPool

CVSS 8.1 EPSS 4.91% Jan 6, 2021
CVE-2020-36184 HIGH

jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.datasources.PerUserPoolDataSource

CVSS 8.8 EPSS 8.36% Jan 6, 2021
CVE-2020-36185 HIGH

jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.datasources.SharedPoolDataSource

CVSS 8.1 EPSS 4.19% Jan 6, 2021
CVE-2020-36186 HIGH

jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp.datasources.PerUserPoolDataSource

CVSS 8.1 EPSS 4.19% Jan 6, 2021
CVE-2020-36187 HIGH

jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp.datasources.SharedPoolDataSource

CVSS 8.1 EPSS 4.19% Jan 6, 2021
CVE-2020-36188 HIGH

jackson-databind: mishandles the interaction between serialization gadgets and typing, related to com.newrelic.agent.deps.ch.qos.logback.core.db.JNDIConnection…

CVSS 8.1 EPSS 8.79% Jan 6, 2021
CVE-2020-36189 HIGH

jackson-databind: mishandles the interaction between serialization gadgets and typing, related to com.newrelic.agent.deps.ch.qos.logback.core.db.DriverManagerC…

CVSS 8.1 EPSS 3.94% Jan 6, 2021
CVE-2020-36181 HIGH

jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp.cpdsadapter.DriverAdapterCPDS

CVSS 8.8 EPSS 4.04% Jan 6, 2021
CVE-2020-35728 HIGH

jackson-databind: mishandles the interaction between serialization gadgets and typing, related to com.oracle.wls.shaded.org.apache.xalan.lib.sql.JNDIConnection…

CVSS 8.1 EPSS 12.50% Dec 27, 2020
CVE-2020-17521 MEDIUM

groovy: OS temporary directory leads to information disclosure

CVSS 5.5 EPSS 1.03% Dec 7, 2020
CVE-2020-25649 HIGH

jackson-databind: FasterXML DOMDeserializer insecure entity expansion is vulnerable to XML external entity (XXE)

CVSS 7.5 EPSS 17.26% Dec 3, 2020
CVE-2020-13956 MEDIUM

apache-httpclient: incorrect handling of malformed authority component in request URIs

CVSS 5.3 EPSS 9.03% Dec 2, 2020
CVE-2020-11023 KEV MEDIUM

Potential XSS vulnerability in jQuery

CVSS 6.9 EPSS 84.89% Apr 29, 2020
MavenNuGetPackagistRubyGemsnpm
CVE-2020-11620 HIGH

jackson-databind: Serialization gadgets in commons-jelly:commons-jelly

CVSS 8.1 EPSS 5.78% Apr 7, 2020
CVE-2020-11619 HIGH

jackson-databind: Serialization gadgets in org.springframework:spring-aop

CVSS 8.1 EPSS 3.71% Apr 7, 2020

Showing 1 to 25 CVEs · page 1 (more available)