Oracle vulnerabilities
67 CVEs tracked
Oracle appears in our reporting within the context of massive quarterly security updates and active exploitation campaigns. The July 2026 Critical Patch Update is a record release with 1449 patches addressing 1235 CVEs, 261 of which are critical. A key event is the ShinyHunters (UNC6240) group targeting the education sector by exploiting Oracle PeopleSoft for extortion, actively using CVE-2026-0265 in this campaign. Defenders should prioritize easily exploitable critical vulnerabilities like CVE-2026-46817 (improper privilege management in Oracle E-Business Suite) and other targeted products such as Oracle Retail Integration Bus (CVE-2026-46983, CVE-2026-46982), and immediately inspect their Oracle PeopleSoft infrastructure.
Azərbaycanca: Oracle hesabatlarımızda iri həcmli kritik yenilənmələr və aktiv istismar edilən zəifliklər kontekstində görünür. Şirkətin İyul 2026 Kritik Patch Yeniləməsi rekord sayda – 1449 patch və 1235 CVE ilə buraxılıb, bunlardan 261-i kritikdir. Əsas hadisə kimi, ShinyHunters (UNC6240) qrupu təhsil sektorunu hədəf alaraq Oracle PeopleSoft sistemlərini sındırıb və şantaj edir, bu kampaniyada CVE-2026-0265 aktiv şəkildə istifadə olunur. Müdafiəçilər diqqəti CVE-2026-46817 (Oracle E-Business Suite-də imtiyaz idarəetməsi) kimi asanlıqla istismar olunan kritik zəifliklərə, eləcə də Oracle Retail Integration Bus (CVE-2026-46983, CVE-2026-46982) kimi digər hədəflərə yönəltməli, Oracle PeopleSoft mühitlərinin təcili yoxlanılmasını təmin etməlidirlər.
This vendor's CVEs60
- CVE-2026-50751KEVEPSS 84%
- CVE-2026-46817KEVEPSS 13%
- CVE-2026-41940KEVEPSS 99%
- CVE-2026-35273KEVEPSS 95%
- CVE-2026-10520KEVEPSS 100%
- CVE-2025-61882KEVEPSS 100%
- CVE-2026-72853EPSS 0.24%
- CVE-2026-67620EPSS 0.32%
- CVE-2026-61246EPSS 0.47%
- CVE-2026-60672EPSS 0.51%
- CVE-2026-60592EPSS 0.36%
- CVE-2026-60591EPSS 0.41%
- CVE-2026-60590EPSS 0.38%
- CVE-2026-60589EPSS 0.27%
- CVE-2026-60455EPSS 0.43%
- CVE-2026-60439EPSS 0.47%
- CVE-2026-60415EPSS 0.40%
- CVE-2026-60414EPSS 0.18%
- CVE-2026-60413EPSS 0.18%
- CVE-2026-60412EPSS 0.30%
- CVE-2026-60393EPSS 0.42%
- CVE-2026-60392EPSS 0.30%
- CVE-2026-60391EPSS 0.40%
- CVE-2026-60373EPSS 0.47%
- CVE-2026-60372EPSS 0.55%
- CVE-2026-60371EPSS 0.27%
- CVE-2026-60370EPSS 0.33%
- CVE-2026-60369EPSS 0.47%
- CVE-2026-60368EPSS 0.55%
- CVE-2026-60367EPSS 0.55%
- CVE-2026-60366EPSS 0.55%
- CVE-2026-60206EPSS 0.54%
- CVE-2026-46993EPSS 0.29%
- CVE-2026-46992EPSS 0.43%
- CVE-2026-46991EPSS 0.14%
- CVE-2026-46990EPSS 0.31%
- CVE-2026-46989EPSS 0.24%
- CVE-2026-46988EPSS 0.49%
- CVE-2026-46987EPSS 0.35%
- CVE-2026-46986EPSS 0.32%
- CVE-2026-46985EPSS 0.32%
- CVE-2026-46984EPSS 0.32%
- CVE-2026-46983EPSS 0.51%
- CVE-2026-46982EPSS 0.51%
- CVE-2026-46981EPSS 0.27%
- CVE-2026-46980EPSS 0.27%
- CVE-2026-46975EPSS 0.30%
- CVE-2026-46968EPSS 0.29%
- CVE-2026-46954EPSS 0.49%
- CVE-2026-46948EPSS 0.21%
- CVE-2026-46943EPSS 0.34%
- CVE-2026-46941EPSS 0.33%
- CVE-2026-46936EPSS 0.25%
- CVE-2026-46924EPSS 0.51%
- CVE-2026-46923EPSS 0.38%
- CVE-2026-46917EPSS 0.29%
- CVE-2026-46876EPSS 0.51%
- CVE-2026-35290EPSS 0.51%
- CVE-2026-35287EPSS 0.41%
- CVE-2026-34316EPSS 0.24%
Showing the top 60 of 67 — known-exploited and newest first.
This hub is built from skopnix's own reporting on Oracle: the overview is AI-written from that coverage and every CVE links to its grounded explainer. KEV status comes from CISA's Known Exploited Vulnerabilities catalog and EPSS from FIRST — vendor, version and score details are never invented.