U.S. flag   An official website of the United States government
Dot gov

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Https

Secure .gov websites use HTTPS
A lock (Dot gov) or https:// means you've safely connected to the .gov website. Share sensitive information only on official, secure websites.

Vulnerability Change Records for CVE-2025-21526

Change History

Initial Analysis by NIST 6/18/2025 3:16:40 PM

Action Type Old Value New Value
Added CPE Configuration

								
							
							
						
OR
          *cpe:2.3:a:oracle:primavera_p6_enterprise_project_portfolio_management:*:*:*:*:*:*:*:* versions from (including) 20.12.1.0 up to (including) 20.12.21.5
          *cpe:2.3:a:oracle:primavera_p6_enterprise_project_portfolio_management:*:*:*:*:*:*:*:* versions from (including) 21.12.1.0 up to (including) 21.12.20.0
          *cpe:2.3:a:oracle:primavera_p6_enterprise_project_portfolio_management:*:*:*:*:*:*:*:* versions from (including) 22.12.1.0 up to (including) 22.12.16.0
          *cpe:2.3:a:oracle:primavera_p6_enterprise_project_portfolio_management:*:*:*:*:*:*:*:* versions from (including) 23.12.1.0 up to (including) 23.12.10.0
Added Reference Type

								
							
							
						
Oracle: https://www.oracle.com/security-alerts/cpujan2025.html Types: Vendor Advisory