Oracle / Essbase
25 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2026-70689 | Vulnerability in Oracle Essbase (component: Infrastructure). The supported version that is affected is 21.8.1.0.0. Easily exploitable vulnerability allows unau… | CRITICAL | 9.8 | Aug 18, 2026 |
| CVE-2026-70688 | Vulnerability in Oracle Essbase (component: Calculator). The supported version that is affected is 21.8.1.0.0. Easily exploitable vulnerability allows low priv… | HIGH | 8.8 | Aug 18, 2026 |
| CVE-2025-61763 | Vulnerability in Oracle Essbase (component: Essbase Web Platform). The supported version that is affected is 21.7.3.0.0. Easily exploitable vulnerability allow… | HIGH | 8.1 | Oct 21, 2025 |
| CVE-2023-22010 | Vulnerability in Oracle Essbase (component: Security and Provisioning). The supported version that is affected is 21.4.3.0.0. Difficult to exploit vulnerabilit… | LOW | 2.2 | Jul 18, 2023 |
| CVE-2023-21944 | Vulnerability in Oracle Essbase (component: Security and Provisioning). The supported version that is affected is 21.4. Difficult to exploit vulnerability allo… | MEDIUM | 5.3 | Apr 18, 2023 |
| CVE-2023-21943 | Vulnerability in Oracle Essbase (component: Security and Provisioning). The supported version that is affected is 21.4. Difficult to exploit vulnerability allo… | MEDIUM | 5.3 | Apr 18, 2023 |
| CVE-2023-21942 | Vulnerability in Oracle Essbase (component: Security and Provisioning). The supported version that is affected is 21.4. Difficult to exploit vulnerability allo… | MEDIUM | 5.3 | Apr 18, 2023 |
| CVE-2022-21508 | Vulnerability in Oracle Essbase (component: Security and Provisioning). The supported version that is affected is 21.3. Easily exploitable vulnerability allows… | MEDIUM | 5.8 | Jul 19, 2022 |
| CVE-2021-3712 | Read buffer overruns processing ASN.1 strings | HIGH | 7.4 | Aug 24, 2021 |
| CVE-2021-3711 | SM2 Decryption Buffer Overflow | CRITICAL | 9.8 | Aug 24, 2021 |
| CVE-2021-22901 | curl: Use-after-free in TLS session handling when using OpenSSL TLS backend | HIGH | 8.1 | Jun 11, 2021 |
| CVE-2021-22897 | curl: Cipher settings shared for all connections when using schannel TLS backed | MEDIUM | 5.3 | Jun 11, 2021 |
| CVE-2021-22898 | curl: TELNET stack contents disclosure | LOW | 3.1 | Jun 11, 2021 |
| CVE-2021-20718 | mod_auth_openidc: DoS in oidc_util_read_post_params() in util.c | HIGH | 7.5 | May 20, 2021 |
| CVE-2021-22890 | curl: TLS 1.3 session ticket mix-up with HTTPS proxy host | MEDIUM | 4.3 | Apr 1, 2021 |
| CVE-2021-22876 | curl: Leak of authentication credentials in URL via automatic Referer | MEDIUM | 5.3 | Apr 1, 2021 |
| CVE-2021-3449 | NULL pointer deref in signature_algorithms processing | MEDIUM | 5.9 | Mar 25, 2021 |
| CVE-2021-23841 | Null pointer deref in X509_issuer_and_serial_hash() | MEDIUM | 5.9 | Feb 16, 2021 |
| CVE-2020-8286 | curl: Inferior OCSP verification | HIGH | 7.5 | Dec 14, 2020 |
| CVE-2020-8285 | curl: Malicious FTP server can trigger stack overflow when CURLOPT_CHUNK_BGN_FUNCTION is used | HIGH | 7.5 | Dec 14, 2020 |
| CVE-2020-8284 | curl: FTP PASV command response can cause curl to connect to arbitrary host | LOW | 3.7 | Dec 14, 2020 |
| CVE-2020-1971 | EDIPARTYNAME NULL pointer dereference | MEDIUM | 5.9 | Dec 8, 2020 |
| CVE-2020-7760 | Regular Expression Denial of Service (ReDoS) | HIGH | 7.5 | Oct 30, 2020 |
| CVE-2019-10219 | hibernate-validator: safeHTML validator allows XSS | MEDIUM | 6.1 | Nov 8, 2019 |
| CVE-2019-12402 | apache-commons-compress: Infinite loop in name encoding algorithm | HIGH | 7.5 | Aug 29, 2019 |
Showing 1 to 25 of 25 CVEs