Known vulnerabilities in Hyperion Planning
Vendor:
Oracle
Software:
Hyperion Planning
Software CPE:
cpe:2.3:a:oracle:hyperion_planning:*:*:*:*:*:*:*:*
Website:
https://www.oracle.com
Total vulnerabilities:
11
Public exploits:
1
Known exploited (KEV):
0
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
Vulnerabilities (11)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU113607 - Uncontrolled Recursion CVE-2025-48924 |
CWE-674 | Medium | - | 04.08.2025 | - | ||
| #VU111165 - Improper Access Control CVE-2025-48734 |
CWE-284 | Medium | - | 16.06.2025 | - | ||
| #VU82276 - Allocation of Resources Without Limits or Throttling CVE-2023-5072 |
CWE-770 | Medium | - | 20.10.2023 | - | ||
| #VU59936 - Improper input validation CVE-2021-42575 |
CWE-20 | High | - | 23.01.2022 | - | ||
| #VU59098 - Improper Control of Generation of Code ('Code Injection') CVE-2021-44832 |
CWE-94 | Medium | 11.2.8.0 | 28.12.2021 |
SB2021122816 SB2021123002 SB2022010601 and 197 more |
||
| #VU52252 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') CVE-2021-29425 |
CWE-22 | Low | - | 15.04.2021 | - | ||
| #VU48046 - Improper input validation CVE-2020-14764 |
CWE-20 | Low | - | 30.10.2020 | - | ||
| #VU24597 - Improper input validation CVE-2019-2904 |
CWE-20 | High | - | 25.01.2020 | - | ||
| #VU20844 - Protection Mechanism Failure CVE-2019-10086 |
CWE-693 | Low | - | 04.09.2019 | - | ||
| #VU35669 - Improper Access Control CVE-2019-2770 |
CWE-284 | Low | - | 24.07.2019 | - | ||
| #VU35685 - Improper Access Control CVE-2019-2861 |
CWE-284 | Low | - | 24.07.2019 | - |