U.S. flag   An official website of the United States government
Dot gov

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Https

Secure .gov websites use HTTPS
A lock (Dot gov) or https:// means you've safely connected to the .gov website. Share sensitive information only on official, secure websites.


The NVD is the U.S. government repository of standards based vulnerability management data represented using the Security Content Automation Protocol (SCAP). This data enables automation of vulnerability management, security measurement, and compliance. The NVD includes databases of security checklist references, security-related software flaws, product names, and impact metrics.

For information on how to cite the NVD, including the database's Digital Object Identifier (DOI), please consult NIST's Public Data Repository.

Last 20 Scored Vulnerability IDs & Summaries CVSS Severity
  • CVE-2026-60661 - Vulnerability in the Oracle Solaris product of Oracle Systems (component: Filesystems). The supported version that is affected is 11.4. Difficult to exploit vulnerability allows low privileged attacker with logon to the infrastructure where Orac... read CVE-2026-60661
    Published: July 21, 2026; 6:18:07 PM -0400

  • CVE-2026-60684 - Vulnerability in the Oracle Applications Framework product of Oracle E-Business Suite (component: Upload Attachments). Supported versions that are affected are 12.2.8-12.2.15. Easily exploitable vulnerability allows low privileged attacker with n... read CVE-2026-60684
    Published: July 21, 2026; 6:18:09 PM -0400

  • CVE-2026-60676 - Vulnerability in the Oracle Applications Framework product of Oracle E-Business Suite (component: Search Bean). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network ... read CVE-2026-60676
    Published: July 21, 2026; 6:18:08 PM -0400

  • CVE-2026-60675 - Vulnerability in the Oracle Applications Framework product of Oracle E-Business Suite (component: Search Bean). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network ... read CVE-2026-60675
    Published: July 21, 2026; 6:18:08 PM -0400

  • CVE-2026-60659 - Vulnerability in the Oracle Solaris product of Oracle Systems (component: Filesystems). The supported version that is affected is 11.4. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle... read CVE-2026-60659
    Published: July 21, 2026; 6:18:06 PM -0400

  • CVE-2026-60458 - Vulnerability in the Oracle WebCenter Enterprise Capture product of Oracle Fusion Middleware (component: Client Bundle). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Easily exploitable vulnerability allows low privileged a... read CVE-2026-60458
    Published: July 21, 2026; 6:17:48 PM -0400

  • CVE-2026-17849 - Inappropriate implementation in Chrome for iOS in Google Chrome on iOS prior to 151.0.7922.72 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via malicious network traffic. (Chromium security severity: Medium)
    Published: July 29, 2026; 9:16:48 PM -0400

  • CVE-2026-60527 - Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Console). Supported versions that are affected are 14.1.2.0.0 and 15.1.1.0.0. Easily exploitable vulnerability allows unauthenticated attacker with logon... read CVE-2026-60527
    Published: July 21, 2026; 6:17:52 PM -0400

  • CVE-2026-60528 - Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Console). Supported versions that are affected are 14.1.2.0.0 and 15.1.1.0.0. Easily exploitable vulnerability allows high privileged attacker with netwo... read CVE-2026-60528
    Published: July 21, 2026; 6:17:52 PM -0400

  • CVE-2026-60529 - Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Console). Supported versions that are affected are 14.1.2.0.0 and 15.1.1.0.0. Easily exploitable vulnerability allows high privileged attacker with netwo... read CVE-2026-60529
    Published: July 21, 2026; 6:17:52 PM -0400

  • CVE-2026-60523 - Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Content Server). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Easily exploitable vulnerability allows low privileged attacker wi... read CVE-2026-60523
    Published: July 21, 2026; 6:17:51 PM -0400

  • CVE-2026-60622 - Vulnerability in the Oracle JDeveloper product of Oracle Fusion Middleware (component: Security Framework). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Easily exploitable vulnerability allows unauthenticated attacker with... read CVE-2026-60622
    Published: July 21, 2026; 6:18:02 PM -0400

  • CVE-2026-60629 - Vulnerability in the Oracle JDeveloper product of Oracle Fusion Middleware (component: Data Visualization Tools). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Difficult to exploit vulnerability allows unauthenticated attac... read CVE-2026-60629
    Published: July 21, 2026; 6:18:03 PM -0400

  • CVE-2026-60349 - Vulnerability in the Oracle JDeveloper product of Oracle Fusion Middleware (component: Java Business Objects). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Difficult to exploit vulnerability allows low privileged attacker ... read CVE-2026-60349
    Published: July 21, 2026; 6:17:38 PM -0400

  • CVE-2026-60450 - Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Content Server). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Difficult to exploit vulnerability allows unauthenticated attacker... read CVE-2026-60450
    Published: July 21, 2026; 6:17:47 PM -0400

  • CVE-2026-60462 - Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Content Server). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Difficult to exploit vulnerability allows unauthenticated attacker... read CVE-2026-60462
    Published: July 21, 2026; 6:17:48 PM -0400

  • CVE-2026-60641 - Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Content Server). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Easily exploitable vulnerability allows unauthenticated attacker w... read CVE-2026-60641
    Published: July 21, 2026; 6:18:04 PM -0400

  • CVE-2026-60642 - Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Content Server). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Easily exploitable vulnerability allows unauthenticated attacker w... read CVE-2026-60642
    Published: July 21, 2026; 6:18:04 PM -0400

  • CVE-2026-60647 - Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Web Content Management). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Easily exploitable vulnerability allows low privileged att... read CVE-2026-60647
    Published: July 21, 2026; 6:18:05 PM -0400

  • CVE-2026-60651 - Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Web Content Management). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Easily exploitable vulnerability allows unauthenticated at... read CVE-2026-60651
    Published: July 21, 2026; 6:18:06 PM -0400

Created September 20, 2022 , Updated August 27, 2024