Known vulnerabilities in Oracle Configurator
Vendor:
Oracle
Software:
Oracle Configurator
Software CPE:
cpe:2.3:a:oracle:oracle_configurator:*:*:*:*:*:*:*:*
Website:
https://www.oracle.com
Total vulnerabilities:
10
Public exploits:
0
Known exploited (KEV):
1
Highest CVSSv4 Score:
8.8
Breakdown by Severity Chart
Vulnerabilities (10)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU126723 - Out-of-bounds read CVE-2026-34274 |
CWE-125 | Medium | - | 22.04.2026 |
SB2026042249 |
||
| #VU121712 - Improper input validation CVE-2026-21972 |
CWE-20 | Medium | - | 20.01.2026 |
SB20260120146 |
||
| #VU116909 - Server-Side Request Forgery (SSRF) CVE-2025-61884 |
CWE-918 | High | - | 12.10.2025 |
SB2025101201 |
||
| #VU107508 - Out-of-bounds read CVE-2025-30720 |
CWE-125 | Medium | - | 16.04.2025 |
SB2025041681 |
||
| #VU107502 - Out-of-bounds read CVE-2025-30728 |
CWE-125 | Medium | - | 16.04.2025 |
SB2025041681 |
||
| #VU60042 - Improper input validation CVE-2022-21255 |
CWE-20 | High | - | 26.01.2022 |
SB2022012651 |
||
| #VU49933 - Improper input validation CVE-2021-2078 |
CWE-20 | High | - | 22.01.2021 |
SB2021012229 |
||
| #VU49934 - Improper input validation CVE-2021-2079 |
CWE-20 | High | - | 22.01.2021 |
SB2021012229 |
||
| #VU49935 - Improper input validation CVE-2021-2080 |
CWE-20 | High | - | 22.01.2021 |
SB2021012229 |
||
| #VU27270 - Improper input validation CVE-2020-2865 |
CWE-20 | Medium | - | 23.04.2020 |
SB2020042368 |