| CVE-2026-73390 | 9.8 | — | — | — | — | Unauthenticated Privilege Escalation in Total Donations <= 2.0.5 versions. | 17d ago |
| CVE-2026-73389 | 9.8 | — | — | — | — | Unauthenticated PHP Object Injection in Kalles Addons <= 1.0.6 versions. | 17d ago |
| CVE-2026-73364 | 9.8 | — | — | — | — | Customer PHP Object Injection in Flexible Subscriptions <= 1.8.1 versions. | 17d ago |
| CVE-2026-73347 | 9.8 | — | — | — | — | Unauthenticated Privilege Escalation in TrueBooker <= 1.2.6 versions. | 17d ago |
| CVE-2026-66613 | 9.8 | — | — | — | — | Unauthenticated Remote Code Execution (RCE) in JetEngine <= 3.8.14 versions. | 17d ago |
| CVE-2026-72889 | 9.8 | — | — | — | — | Net::OAuth versions before 0.33 for Perl allow the sender to choose the signature algorithm in verify. | 18d ago |
| CVE-2026-58082 | 9.8 | — | — | — | freebsd / freebsd | The ISO-2022 encoding module used a stack buffer sized to MB_LEN_MAX (6 bytes) for intermediate character output. | 18d ago |
| CVE-2026-58081 | 9.8 | — | — | — | freebsd / freebsd | Several encoding modules, including HZ, UTF-7, VIQR, and ZW, did not properly check the size of the caller-supplie | 18d ago |
| CVE-2026-18776 | 9.8 | — | — | — | — | The TrueBooker WordPress plugin before 1.2.7 does not have proper authorisation checks in some of its AJAX actions | 18d ago |
| CVE-2026-18031 | 9.8 | — | — | — | — | The TabaPay Gateway WordPress plugin through 1.4.0 does not validate the payment callback before establishing a se | 18d ago |
| CVE-2026-73921 | 9.8 | — | — | — | oracle / helidon | Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server). | 18d ago |
| CVE-2026-73912 | 9.8 | — | — | — | oracle / helidon | Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server). | 18d ago |
| CVE-2026-73905 | 9.8 | — | — | — | oracle / helidon | Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server). | 18d ago |
| CVE-2026-71164 | 9.8 | — | — | — | oracle / helidon | Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server). | 18d ago |
| CVE-2026-71152 | 9.8 | — | — | — | oracle / helidon | Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server). | 18d ago |
| CVE-2026-71074 | 9.8 | — | — | — | oracle / helidon | Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server). | 18d ago |
| CVE-2026-71040 | 9.8 | — | — | — | oracle / agile product lifecycle management | Vulnerability in the Oracle Agile PLM product of Oracle Supply Chain (component: Security). | 18d ago |
| CVE-2026-70995 | 9.8 | — | — | — | oracle / commerce experience manager | Vulnerability in the Oracle Commerce Guided Search / Oracle Commerce Experience Manager product of Oracle Commerce | 18d ago |
| CVE-2026-70970 | 9.8 | — | — | — | oracle / webcenter portal | Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion Middleware (component: Runtime Tools). | 18d ago |
| CVE-2026-70954 | 9.8 | — | — | — | oracle / commerce platform | Vulnerability in the Oracle Commerce Platform product of Oracle Commerce (component: Dynamo Application Framework) | 18d ago |
| CVE-2026-70953 | 9.8 | — | — | — | oracle / commerce platform | Vulnerability in the Oracle Commerce Platform product of Oracle Commerce (component: Dynamo Application Framework) | 18d ago |
| CVE-2026-70926 | 9.8 | — | — | — | oracle / workflow | Vulnerability in the Oracle Workflow product of Oracle E-Business Suite (component: Workflow Notification Mailer). | 18d ago |
| CVE-2026-70905 | 9.8 | — | — | — | oracle / access manager | Vulnerability in the Oracle Access Manager product of Oracle Fusion Middleware (component: Agent infrastructure). | 18d ago |
| CVE-2026-70873 | 9.8 | — | — | — | oracle / hyperion data relationship management | Vulnerability in the Oracle Hyperion Data Relationship Management product of Oracle Hyperion (component: Access an | 18d ago |
| CVE-2026-70871 | 9.8 | — | — | — | oracle / hyperion data relationship management | Vulnerability in the Oracle Hyperion Data Relationship Management product of Oracle Hyperion (component: Access an | 18d ago |
| CVE-2026-70817 | 9.8 | — | — | — | oracle / hyperion financial management | Vulnerability in the Oracle Hyperion Financial Management product of Oracle Hyperion (component: Security). | 18d ago |
| CVE-2026-70745 | 9.8 | — | — | — | oracle / hyperion financial reporting | Vulnerability in the Oracle Hyperion Financial Reporting product of Oracle Hyperion (component: Server). | 18d ago |
| CVE-2026-70740 | 9.8 | — | — | — | oracle / hyperion financial reporting | Vulnerability in the Oracle Hyperion Financial Reporting product of Oracle Hyperion (component: Server). | 18d ago |
| CVE-2026-70739 | 9.8 | — | — | — | oracle / hyperion financial reporting | Vulnerability in the Oracle Hyperion Financial Reporting product of Oracle Hyperion (component: Server). | 18d ago |
| CVE-2026-70689 | 9.8 | — | — | — | oracle / essbase | Vulnerability in Oracle Essbase (component: Infrastructure). | 18d ago |
| CVE-2026-70669 | 9.8 | — | — | — | oracle / reports developer | Vulnerability in the Oracle Reports Developer product of Oracle Fusion Middleware (component: Security and Authent | 18d ago |
| CVE-2026-62640 | 9.8 | — | — | — | oracle / reports developer | Vulnerability in the Oracle Reports Developer product of Oracle Fusion Middleware (component: Security and Authent | 18d ago |
| CVE-2026-62639 | 9.8 | — | — | — | oracle / reports developer | Vulnerability in the Oracle Reports Developer product of Oracle Fusion Middleware (component: Security and Authent | 18d ago |
| CVE-2026-62635 | 9.8 | — | — | — | oracle / reports developer | Vulnerability in the Oracle Reports Developer product of Oracle Fusion Middleware (component: Security and Authent | 18d ago |
| CVE-2026-62634 | 9.8 | — | — | — | oracle / reports developer | Vulnerability in the Oracle Reports Developer product of Oracle Fusion Middleware (component: Security and Authent | 18d ago |
| CVE-2026-62633 | 9.8 | — | — | — | oracle / reports developer | Vulnerability in the Oracle Reports Developer product of Oracle Fusion Middleware (component: Security and Authent | 18d ago |
| CVE-2026-62632 | 9.8 | — | — | — | oracle / reports developer | Vulnerability in the Oracle Reports Developer product of Oracle Fusion Middleware (component: Security and Authent | 18d ago |
| CVE-2026-62630 | 9.8 | — | — | — | oracle / reports developer | Vulnerability in the Oracle Reports Developer product of Oracle Fusion Middleware (component: Security and Authent | 18d ago |
| CVE-2026-62626 | 9.8 | — | — | — | oracle / reports developer | Vulnerability in the Oracle Reports Developer product of Oracle Fusion Middleware (component: Security and Authent | 18d ago |
| CVE-2026-62624 | 9.8 | — | — | — | oracle / reports developer | Vulnerability in the Oracle Reports Developer product of Oracle Fusion Middleware (component: Security and Authent | 18d ago |
| CVE-2026-62622 | 9.8 | — | — | — | oracle / reports developer | Vulnerability in the Oracle Reports Developer product of Oracle Fusion Middleware (component: Security and Authent | 18d ago |
| CVE-2026-62621 | 9.8 | — | — | — | oracle / reports developer | Vulnerability in the Oracle Reports Developer product of Oracle Fusion Middleware (component: Security and Authent | 18d ago |
| CVE-2026-62617 | 9.8 | — | — | — | oracle / reports developer | Vulnerability in the Oracle Reports Developer product of Oracle Fusion Middleware (component: Security and Authent | 18d ago |
| CVE-2026-62614 | 9.8 | — | — | — | oracle / reports developer | Vulnerability in the Oracle Reports Developer product of Oracle Fusion Middleware (component: Security and Authent | 18d ago |
| CVE-2026-62611 | 9.8 | — | — | — | oracle / reports developer | Vulnerability in the Oracle Reports Developer product of Oracle Fusion Middleware (component: Security and Authent | 18d ago |
| CVE-2026-62609 | 9.8 | — | — | — | oracle / reports developer | Vulnerability in the Oracle Reports Developer product of Oracle Fusion Middleware (component: Security and Authent | 18d ago |
| CVE-2026-62592 | 9.8 | — | — | — | oracle / siebel crm | Vulnerability in the Siebel CRM Integration product of Oracle Siebel CRM (component: Open Integration). | 18d ago |
| CVE-2026-62585 | 9.8 | — | — | — | oracle / siebel crm | Vulnerability in the Siebel CRM Administration product of Oracle Siebel CRM (component: Data Archival). | 18d ago |
| CVE-2026-62544 | 9.8 | — | — | — | oracle / hyperion infrastructure technology | Vulnerability in the Oracle Hyperion Infrastructure Technology product of Oracle Hyperion (component: Installation | 18d ago |
| CVE-2026-62543 | 9.8 | — | — | — | oracle / hyperion infrastructure technology | Vulnerability in the Oracle Hyperion Infrastructure Technology product of Oracle Hyperion (component: Installation | 18d ago |
| CVE-2026-62541 | 9.8 | — | — | — | oracle / hyperion infrastructure technology | Vulnerability in the Oracle Hyperion Infrastructure Technology product of Oracle Hyperion (component: Installation | 18d ago |
| CVE-2026-62539 | 9.8 | — | — | — | oracle / hyperion infrastructure technology | Vulnerability in the Oracle Hyperion Infrastructure Technology product of Oracle Hyperion (component: Installation | 18d ago |
| CVE-2026-62457 | 9.8 | — | — | — | oracle / hyperion infrastructure technology | Vulnerability in the Oracle Hyperion Infrastructure Technology product of Oracle Hyperion (component: Common Event | 18d ago |
| CVE-2026-61318 | 9.8 | — | — | — | oracle / siebel crm | Vulnerability in the Siebel CRM Cloud Applications product of Oracle Siebel CRM (component: Siebel Cloud Manager). | 18d ago |
| CVE-2026-61272 | 9.8 | — | — | — | oracle / jd edwards enterpriseone tools | Vulnerability in the JD Edwards EnterpriseOne Tools product of Oracle JD Edwards (component: Web Runtime SEC). | 18d ago |
| CVE-2026-61258 | 9.8 | — | — | — | oracle / internet directory | Vulnerability in the Oracle Internet Directory product of Oracle Fusion Middleware (component: OID LDAP Server). | 18d ago |
| CVE-2026-61018 | 9.8 | — | — | — | oracle / webcenter sites | Vulnerability in the Oracle WebCenter Sites product of Oracle Fusion Middleware (component: WebCenter Sites). | 18d ago |
| CVE-2026-60977 | 9.8 | — | — | — | oracle / weblogic server | Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: WLS Core Components). | 18d ago |
| CVE-2026-60971 | 9.8 | — | — | — | oracle / webcenter enterprise capture | Vulnerability in the Oracle WebCenter Enterprise Capture product of Oracle Fusion Middleware (component: Client Bu | 18d ago |
| CVE-2026-60970 | 9.8 | — | — | — | oracle / webcenter enterprise capture | Vulnerability in the Oracle WebCenter Enterprise Capture product of Oracle Fusion Middleware (component: Client Bu | 18d ago |