Oracle

Agile Product Lifecycle Management

153 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Warnung
  • EPSS 1.5%
  • Veröffentlicht 18.11.2024 22:15:05
  • Zuletzt bearbeitet 27.10.2025 17:08:39

Vulnerability in the Oracle Agile PLM Framework product of Oracle Supply Chain (component: Software Development Kit, Process Extension). The supported version that is affected is 9.3.6. Easily exploitable vulnerability allows unauthenticated attack...

  • EPSS 0.45%
  • Veröffentlicht 16.04.2024 22:15:29
  • Zuletzt bearbeitet 29.05.2025 19:22:56

Vulnerability in the Oracle Agile Product Lifecycle Management for Process product of Oracle Supply Chain (component: Data Import). The supported version that is affected is 6.2.4.2. Easily exploitable vulnerability allows low privileged attacker w...

Warnung
  • EPSS 3.93%
  • Veröffentlicht 17.02.2024 02:15:49
  • Zuletzt bearbeitet 27.10.2025 17:08:41

Vulnerability in the Oracle Agile PLM product of Oracle Supply Chain (component: Export). The supported version that is affected is 9.3.6. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Or...

  • EPSS 0.36%
  • Veröffentlicht 18.07.2023 21:15:13
  • Zuletzt bearbeitet 25.08.2026 16:28:27

Vulnerability in the Oracle Agile PLM product of Oracle Supply Chain (component: WebClient). The supported version that is affected is 9.3.6. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise...

  • EPSS 8.41%
  • Veröffentlicht 13.05.2022 08:15:06
  • Zuletzt bearbeitet 08.10.2026 22:17:19

If a web application sends a WebSocket message concurrently with the WebSocket connection closing when running on Apache Tomcat 8.5.0 to 8.5.75 or Apache Tomcat 9.0.0.M1 to 9.0.20, it is possible that the application will continue to use the socket a...

  • EPSS 0.9%
  • Veröffentlicht 19.04.2022 21:15:17
  • Zuletzt bearbeitet 25.08.2026 16:28:27

Vulnerability in the Oracle Agile PLM product of Oracle Supply Chain (component: Attachments). The supported version that is affected is 9.3.6. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise...

  • EPSS 4.44%
  • Veröffentlicht 24.01.2022 15:15:09
  • Zuletzt bearbeitet 08.10.2026 22:17:16

There's a vulnerability within the Apache Xerces Java (XercesJ) XML parser when handling specially crafted XML document payloads. This causes, the XercesJ XML parser to wait in an infinite loop, which may sometimes consume system resources for prolon...

Warnung
  • EPSS 100%
  • Veröffentlicht 18.12.2021 12:15:07
  • Zuletzt bearbeitet 25.08.2026 16:28:27

Apache Log4j2 versions 2.0-alpha1 through 2.16.0 (excluding 2.12.3 and 2.3.1) did not protect from uncontrolled recursion from self-referential lookups. This allows an attacker with control over Thread Context Map data to cause a denial of service wh...

  • EPSS 1.47%
  • Veröffentlicht 17.11.2021 20:15:10
  • Zuletzt bearbeitet 21.11.2024 06:25:38

CKEditor4 is an open source WYSIWYG HTML editor. In affected version a vulnerability has been discovered in the core HTML processing module and may affect all plugins used by CKEditor 4. The vulnerability allowed to inject malformed comments HTML byp...

  • EPSS 1.26%
  • Veröffentlicht 17.11.2021 19:15:08
  • Zuletzt bearbeitet 25.08.2026 16:28:27

CKEditor4 is an open source WYSIWYG HTML editor. In affected versions a vulnerability has been discovered in the Advanced Content Filter (ACF) module and may affect all plugins used by CKEditor 4. The vulnerability allowed to inject malformed HTML by...