6

CVSS3.1

CVE-2026-21985 - Local Privileged Escalation in Oracle VM VirtualBox Core Component

Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are 7.1.14 and 7.2.4. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to comprom…

πŸ“… Published: Jan. 20, 2026, 9:56 p.m. πŸ”„ Last Modified: April 18, 2026, 3:45 p.m.

7.5

CVSS3.1

CVE-2026-21984 - Privilege Escalation and Scope Change Exploit in Oracle VM VirtualBox Core

Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are 7.1.14 and 7.2.4. Difficult to exploit vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compr…

πŸ“… Published: Jan. 20, 2026, 9:56 p.m. πŸ”„ Last Modified: April 18, 2026, 4:30 a.m.

7.5

CVSS3.1

CVE-2026-21983 - Privileged Access Escalation in Oracle VM VirtualBox 7.1.14/7.2.4

Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are 7.1.14 and 7.2.4. Difficult to exploit vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compr…

πŸ“… Published: Jan. 20, 2026, 9:56 p.m. πŸ”„ Last Modified: April 18, 2026, 4:30 a.m.

7.5

CVSS3.1

CVE-2026-21982 - Access Control Vulnerability in Oracle VM VirtualBox Allows Full System Compromise

Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are 7.1.14 and 7.2.4. Difficult to exploit vulnerability allows unauthenticated attacker with access to the physical communication segment attached to the hardware wh…

πŸ“… Published: Jan. 20, 2026, 9:56 p.m. πŸ”„ Last Modified: April 18, 2026, 4:30 a.m.

4.6

CVSS3.1

CVE-2026-21981 - High-Privilege Unauthorized Read and Partial Denial of Service in Oracle VM VirtualBox

Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are 7.1.14 and 7.2.4. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to comprom…

πŸ“… Published: Jan. 20, 2026, 9:56 p.m. πŸ”„ Last Modified: April 18, 2026, 4:30 a.m.

6.5

CVSS3.1

CVE-2026-21980 - Unauthenticated HTTP Data Modification and Disclosure in Oracle Life Sciences Central Coding

Vulnerability in the Oracle Life Sciences Central Coding product of Oracle Health Sciences Applications (component: Platform). The supported version that is affected is 7.0.1.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Life…

πŸ“… Published: Jan. 20, 2026, 9:56 p.m. πŸ”„ Last Modified: April 18, 2026, 4:30 a.m.

4.2

CVSS3.1

CVE-2026-21979 - High Privileged Local Data Access Vulnerability in Oracle Planning and Budgeting Cloud Service

Vulnerability in the Oracle Planning and Budgeting Cloud Service product of Oracle Hyperion (component: EPM Agent). The supported version that is affected is 25.04.07. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle Planning and Budge…

πŸ“… Published: Jan. 20, 2026, 9:56 p.m. πŸ”„ Last Modified: April 18, 2026, 3:45 p.m.

6.5

CVSS3.1

CVE-2026-21978 - Unauthorized Data Access via HTTP in Oracle FLEXCUBE Relationship Pricing

Vulnerability in the Oracle FLEXCUBE Universal Banking product of Oracle Financial Services Applications (component: Relationship Pricing). Supported versions that are affected are 14.0.0.0.0-14.8.0.0.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP t…

πŸ“… Published: Jan. 20, 2026, 9:56 p.m. πŸ”„ Last Modified: April 18, 2026, 4:30 a.m.

3.1

CVSS3.1

CVE-2026-21977 - Unauthenticated Network Access Leading to Unauthorized Data Read in Oracle Zero Data Loss Recovery …

Vulnerability in the Oracle Zero Data Loss Recovery Appliance Software product of Oracle Zero Data Loss Recovery Appliance (component: Security). Supported versions that are affected are 23.1.0-23.1.202509. Difficult to exploit vulnerability allows unauthenticated attacker with network access via …

πŸ“… Published: Jan. 20, 2026, 9:56 p.m. πŸ”„ Last Modified: April 18, 2026, 3:45 p.m.

7.1

CVSS3.1

CVE-2026-21976 - Unauthorized Local Privilege Escalation in Oracle Business Intelligence Enterprise Edition

Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: Oracle Analytics Cloud). Supported versions that are affected are 7.6.0.0.0 and 8.2.0.0.0. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure …

πŸ“… Published: Jan. 20, 2026, 9:56 p.m. πŸ”„ Last Modified: April 18, 2026, 4:30 a.m.
Total resulsts: 346120
Page 1742 of 34,612
Β« previous page Β» next page
Filters