Documaker

Oracle · 23 CVEs

CVE-2021-37695
HIGH

Execution of JavaScript code using malformed HTML in ckeditor

Aug 12, 2021

CVE-2021-32809
MEDIUM

Arbitrary HTML injection vulnerability in ckeditor

Aug 12, 2021

CVE-2021-32808
HIGH

Cross-site scripting in ckeditor via abuse of undo functionality

Aug 12, 2021

CVE-2021-2351
HIGH

Vulnerability in the Advanced Networking Option component of Oracle Database Server. Supported versions that are affect…

Jul 20, 2021

CVE-2021-22118
HIGH

spring-web: (re)creating the temporary storage directory could result in a privilege escalation within WebFlux applica…

May 27, 2021

CVE-2020-36180
HIGH

jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.db…

Jan 6, 2021

CVE-2020-36182
HIGH

jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbc…

Jan 6, 2021

CVE-2020-36183
HIGH

jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.docx4j.org.apache…

Jan 6, 2021

CVE-2020-36184
HIGH

jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbc…

Jan 6, 2021

CVE-2020-36185
HIGH

jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbc…

Jan 6, 2021

CVE-2020-36186
HIGH

jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbc…

Jan 6, 2021

CVE-2020-36187
HIGH

jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbc…

Jan 6, 2021

CVE-2020-36188
HIGH

jackson-databind: mishandles the interaction between serialization gadgets and typing, related to com.newrelic.agent.de…

Jan 6, 2021

CVE-2020-36189
HIGH

jackson-databind: mishandles the interaction between serialization gadgets and typing, related to com.newrelic.agent.de…

Jan 6, 2021

CVE-2020-36181
HIGH

jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbc…

Jan 6, 2021

CVE-2020-35490
HIGH

jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.db…

Dec 17, 2020

CVE-2020-35491
HIGH

jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.db…

Dec 17, 2020

CVE-2020-10683
CRITICAL

dom4j: XML External Entity vulnerability in default SAX parser

May 1, 2020

CVE-2020-5258
HIGH

Prototype pollution in dojo

Mar 10, 2020

CVE-2019-10219
MEDIUM

hibernate-validator: safeHTML validator allows XSS

Nov 8, 2019

CVE-2019-13990
CRITICAL

libquartz: XXE attacks via job description

Jul 26, 2019

CVE-2019-5427
HIGH

c3p0: loading XML configuration leads to denial of service

Apr 22, 2019

CVE-2016-0635
HIGH

Unspecified vulnerability in the Enterprise Manager Ops Center component in Oracle Enterprise Manager Grid Control 12.1…

Jul 21, 2016

Showing 1 to 23 of 23 CVEs