Latest CVE Feed
- 
                                
                                6.1MEDIUMCVE-2025-55682Improper enforcement of behavioral workflow in Windows BitLocker allows an unauthorized attacker to bypass a security feature with a physical attack.... Read more - Published: Oct. 14, 2025
- Modified: Oct. 24, 2025
 
- 
                                
                                6.8MEDIUMCVE-2025-54288Information Spoofing in devLXD Server in Canonical LXD versions 4.0 and above on Linux container platforms allows attackers with root privileges within any container to impersonate other containers and obtain their metadata, configuration, and device info... Read more - Published: Oct. 02, 2025
- Modified: Oct. 24, 2025
- Vuln Type: Information Disclosure
 
- 
                                
                                4.9MEDIUMCVE-2025-53067Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 9.0.0-9.4.0. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to... Read more Affected Products : mysql_server- Published: Oct. 21, 2025
- Modified: Oct. 24, 2025
 
- 
                                
                                6.5MEDIUMCVE-2025-53068Vulnerability in the Oracle Solaris product of Oracle Systems (component: Kernel). The supported version that is affected is 11. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle Solaris execut... Read more - Published: Oct. 21, 2025
- Modified: Oct. 24, 2025
 
- 
                                
                                4.9MEDIUMCVE-2025-53069Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Components Services). Supported versions that are affected are 8.0.0-8.0.43, 8.4.0-8.4.6 and 9.0.0-9.4.0. Easily exploitable vulnerability allows high privileged attacker with... Read more Affected Products : mysql_server- Published: Oct. 21, 2025
- Modified: Oct. 24, 2025
 
- 
                                
                                4.3MEDIUMCVE-2025-53071Vulnerability in the Oracle Applications Framework product of Oracle E-Business Suite (component: Upload Attachments). Supported versions that are affected are 12.2.3-12.2.14. Easily exploitable vulnerability allows low privileged attacker with network a... Read more Affected Products : applications_framework- Published: Oct. 21, 2025
- Modified: Oct. 24, 2025
 
- 
                                
                                9.8CRITICALCVE-2025-53072Vulnerability in the Oracle Marketing product of Oracle E-Business Suite (component: Marketing Administration). Supported versions that are affected are 12.2.3-12.2.14. Easily exploitable vulnerability allows unauthenticated attacker with network access ... Read more Affected Products : marketing- Published: Oct. 21, 2025
- Modified: Oct. 24, 2025
 
- 
                                
                                2.7LOWCVE-2025-61749Vulnerability in the Unified Audit component of Oracle Database Server. Supported versions that are affected are 23.4-23.9. Easily exploitable vulnerability allows high privileged attacker having DBA privilege with network access via Oracle Net to compro... Read more - Published: Oct. 21, 2025
- Modified: Oct. 24, 2025
 
- 
                                
                                4.3MEDIUMCVE-2025-61750Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Query). Supported versions that are affected are 8.61 and 8.62. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP ... Read more Affected Products : peoplesoft_enterprise_peopletools- Published: Oct. 21, 2025
- Modified: Oct. 24, 2025
 
- 
                                
                                8.1HIGHCVE-2025-61751Vulnerability in the Oracle Financial Services Analytical Applications Infrastructure product of Oracle Financial Services Applications (component: Platform). Supported versions that are affected are 8.0.7.9, 8.0.8.7 and 8.1.2.5. Easily exploitable vuln... Read more Affected Products : financial_services_analytical_applications_infrastructure- Published: Oct. 21, 2025
- Modified: Oct. 24, 2025
 
- 
                                
                                6.1MEDIUMCVE-2025-61753Vulnerability in the Oracle Scripting product of Oracle E-Business Suite (component: Miscellaneous). Supported versions that are affected are 12.2.3-12.2.14. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to... Read more Affected Products : scripting- Published: Oct. 21, 2025
- Modified: Oct. 24, 2025
 
- 
                                
                                7.5HIGHCVE-2025-61752Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 14.1.1.0.0 and 14.1.2.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access v... Read more Affected Products : weblogic_server- Published: Oct. 21, 2025
- Modified: Oct. 24, 2025
 
- 
                                
                                6.5MEDIUMCVE-2025-61754Vulnerability in the Oracle BI Publisher product of Oracle Analytics (component: Web Service API). Supported versions that are affected are 7.6.0.0.0 and 8.2.0.0.0. Easily exploitable vulnerability allows low privileged attacker with network access via ... Read more Affected Products : bi_publisher- Published: Oct. 21, 2025
- Modified: Oct. 24, 2025
 
- 
                                
                                8.1HIGHCVE-2025-54289Privilege Escalation in operations API in Canonical LXD <6.5 on multiple platforms allows attacker with read permissions to hijack terminal or console sessions and execute arbitrary commands via WebSocket connection hijacking format... Read more Affected Products : lxd- Published: Oct. 02, 2025
- Modified: Oct. 24, 2025
- Vuln Type: Authorization
 
- 
                                
                                5.9MEDIUMCVE-2025-61881Vulnerability in the Java VM component of Oracle Database Server. Supported versions that are affected are 19.3-19.28, 21.3-21.19 and 23.4-23.9. Difficult to exploit vulnerability allows unauthenticated attacker with network access via Oracle Net to com... Read more - Published: Oct. 21, 2025
- Modified: Oct. 24, 2025
 
- 
                                
                                5.3MEDIUMCVE-2025-61764Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 12.2.1.4.0, 14.1.1.0.0 and 14.1.2.0.0. Easily exploitable vulnerability allows unauthenticated attacker with netw... Read more Affected Products : weblogic_server- Published: Oct. 21, 2025
- Modified: Oct. 24, 2025
 
- 
                                
                                8.1HIGHCVE-2025-61763Vulnerability in Oracle Essbase (component: Essbase Web Platform). The supported version that is affected is 21.7.3.0.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Essbase. Successf... Read more Affected Products : essbase- Published: Oct. 21, 2025
- Modified: Oct. 24, 2025
 
- 
                                
                                6.3MEDIUMCVE-2025-61762Vulnerability in the PeopleSoft Enterprise FIN Payables product of Oracle PeopleSoft (component: Payables). The supported version that is affected is 9.2. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to co... Read more Affected Products : peoplesoft_enterprise_fin_payables- Published: Oct. 21, 2025
- Modified: Oct. 24, 2025
 
- 
                                
                                6.5MEDIUMCVE-2025-61758Vulnerability in the PeopleSoft Enterprise FIN IT Asset Management product of Oracle PeopleSoft (component: IT Asset Management). The supported version that is affected is 9.2. Easily exploitable vulnerability allows low privileged attacker with network... Read more Affected Products : peoplesoft_enterprise_fin_it_asset_management- Published: Oct. 21, 2025
- Modified: Oct. 24, 2025
 
- 
                                
                                9.8CRITICALCVE-2025-61757Vulnerability in the Identity Manager product of Oracle Fusion Middleware (component: REST WebServices). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.1.0. Easily exploitable vulnerability allows unauthenticated attacker with network ac... Read more Affected Products : identity_manager- Published: Oct. 21, 2025
- Modified: Oct. 24, 2025
 
 
                         
                         
                         
                                             
                                            