Oracle / Jdeveloper
37 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2026-61061 | Vulnerability in the Oracle JDeveloper product of Oracle Fusion Middleware (component: Security Framework). Supported versions that are affected are 12.2.1.4.0… | HIGH | 7.0 | Jul 21, 2026 |
| CVE-2026-60629 | Vulnerability in the Oracle JDeveloper product of Oracle Fusion Middleware (component: Data Visualization Tools). Supported versions that are affected are 12.2… | HIGH | 7.5 | Jul 21, 2026 |
| CVE-2026-60622 | Vulnerability in the Oracle JDeveloper product of Oracle Fusion Middleware (component: Security Framework). Supported versions that are affected are 12.2.1.4.0… | HIGH | 7.5 | Jul 21, 2026 |
| CVE-2026-60354 | Vulnerability in the Oracle JDeveloper product of Oracle Fusion Middleware (component: Data Visualization Tools). Supported versions that are affected are 12.2… | LOW | 3.7 | Jul 21, 2026 |
| CVE-2026-60353 | Vulnerability in the Oracle JDeveloper product of Oracle Fusion Middleware (component: ADF Faces). Supported versions that are affected are 12.2.1.4.0 and 14.1… | LOW | 3.1 | Jul 21, 2026 |
| CVE-2026-60352 | Vulnerability in the Oracle JDeveloper product of Oracle Fusion Middleware (component: ADF Faces). Supported versions that are affected are 12.2.1.4.0 and 14.1… | LOW | 3.7 | Jul 21, 2026 |
| CVE-2026-60351 | Vulnerability in the Oracle JDeveloper product of Oracle Fusion Middleware (component: ADF Faces). Supported versions that are affected are 12.2.1.4.0 and 14.1… | MEDIUM | 4.8 | Jul 21, 2026 |
| CVE-2026-60350 | Vulnerability in the Oracle JDeveloper product of Oracle Fusion Middleware (component: ADF Faces). Supported versions that are affected are 12.2.1.4.0 and 14.1… | MEDIUM | 6.5 | Jul 21, 2026 |
| CVE-2026-60349 | Vulnerability in the Oracle JDeveloper product of Oracle Fusion Middleware (component: Java Business Objects). Supported versions that are affected are 12.2.1.… | MEDIUM | 5.9 | Jul 21, 2026 |
| CVE-2026-60348 | Vulnerability in the Oracle JDeveloper product of Oracle Fusion Middleware (component: ADF Faces). Supported versions that are affected are 12.2.1.4.0 and 14.1… | MEDIUM | 5.9 | Jul 21, 2026 |
| CVE-2026-60345 | Vulnerability in the Oracle JDeveloper product of Oracle Fusion Middleware (component: ADF Shared Components). Supported versions that are affected are 12.2.1.… | HIGH | 7.2 | Jul 21, 2026 |
| CVE-2022-21445 KEV | Vulnerability in the Oracle Application Development Framework (ADF) product of Oracle Fusion Middleware (component: ADF Faces). Supported versions that are aff… | CRITICAL | 9.8 | Apr 19, 2022 |
| CVE-2022-23307 | A deserialization flaw in the Chainsaw component of Log4j 1 can lead to malicious code execution. | CRITICAL | 9.8 | Jan 18, 2022 |
| CVE-2022-23305 | SQL injection in JDBC Appender in Apache Log4j V1 | CRITICAL | 9.8 | Jan 18, 2022 |
| CVE-2022-23302 | Deserialization of untrusted data in JMSSink in Apache Log4j 1.x | HIGH | 8.8 | Jan 18, 2022 |
| CVE-2021-45105 | Apache Log4j2 does not always protect from infinite recursion in lookup evaluation | HIGH | 8.6 | Dec 18, 2021 |
| CVE-2021-4104 | Deserialization of untrusted data in JMSAppender in Apache Log4j 1.2 | HIGH | 7.5 | Dec 14, 2021 |
| CVE-2020-10683 | dom4j: XML External Entity vulnerability in default SAX parser | CRITICAL | 9.8 | May 1, 2020 |
| CVE-2020-11022 | jQuery has a potential XSS vulnerability | MEDIUM | 6.9 | Apr 29, 2020 |
| CVE-2019-12415 | poi: a specially crafted Microsoft Excel document allows attacker to read files from the local filesystem | MEDIUM | 5.5 | Oct 23, 2019 |
| CVE-2019-2899 | Vulnerability in the Oracle JDeveloper and ADF product of Oracle Fusion Middleware (component: OAM). Supported versions that are affected are 11.1.1.9.0, 11.1.… | LOW | 2.4 | Oct 16, 2019 |
| CVE-2019-12402 | apache-commons-compress: Infinite loop in name encoding algorithm | HIGH | 7.5 | Aug 29, 2019 |
| CVE-2019-11358 | jquery: Prototype pollution in object's prototype leading to denial of service, remote code execution, or property injection | MEDIUM | 6.1 | Apr 19, 2019 |
| CVE-2018-14721 | jackson-databind: server-side request forgery (SSRF) in axis2-jaxws class | CRITICAL | 10.0 | Jan 2, 2019 |
| CVE-2018-14720 | jackson-databind: exfiltration/XXE in some JDK classes | CRITICAL | 9.8 | Jan 2, 2019 |
Showing 1 to 25 of 37 CVEs