[NEW] [high] Oracle SQL Developer: Multiple vulnerabilities
A remote, anonymous attacker can exploit multiple vulnerabilities in Oracle SQL Developer to compromise confidentiality, integrity, and availability.
● Live advisory feed
Security advisories from 24 sources — CISA, CERT-EU, NCSC-UK, BSI, CERT-FR, NCSC-NL, JPCERT/CC, JVN, HKCERT, the Canadian Cyber Centre, NVD, GitHub, Microsoft, Cisco, Fortinet, Palo Alto Networks and more — normalized, translated to English and flagged against the CISA KEV catalog. One global feed for CSIRTs, SOCs and defenders.
A remote, anonymous attacker can exploit multiple vulnerabilities in Oracle SQL Developer to compromise confidentiality, integrity, and availability.
An attacker with physical access can exploit multiple vulnerabilities in OpenSC to conduct an unspecified attack.
An attacker can exploit multiple vulnerabilities in IBM WebSphere Application Server to bypass security measures and execute arbitrary code.
A remote, anonymous attacker can exploit multiple vulnerabilities in jq to conduct a Denial of Service attack.
An attacker can exploit multiple vulnerabilities in Roundcube Webmail to conduct SQL injection attacks, bypass security measures, manipulate data, disclose confidential information, gain elevated privileges, execute arbitrary code, or conduct cross-site scripting attacks.
A remote, anonymous attacker can exploit multiple vulnerabilities in Red Hat Enterprise Linux to execute arbitrary program code or cause a Denial-of-Service condition.
A remote, anonymous attacker can exploit a vulnerability in LangChain to manipulate files and disclose information.
A local attacker can exploit a vulnerability in jq to bypass security measures.
A remote, anonymous attacker can exploit a vulnerability in Red Hat Enterprise Linux (openEXR) to execute arbitrary code.
An attacker can exploit multiple vulnerabilities in IBM App Connect Enterprise Certified Container to execute arbitrary code, bypass security measures, conduct Cross-Site Scripting attacks, manipulate data, disclose confidential information, or cause a Denial of Service condition…
A local attacker can exploit a vulnerability in jq to conduct a denial of service attack.
An attacker can exploit multiple vulnerabilities in Mozilla Firefox and Mozilla Firefox ESR to potentially execute arbitrary code, bypass security measures, disclose confidential information, or carry out other unspecified attacks.
A remote, anonymous or authenticated attacker can exploit multiple vulnerabilities in Oracle Database Server to compromise confidentiality, integrity, and availability.
A remote, anonymous attacker can exploit a vulnerability in Perl to conduct a denial of service attack.
An attacker can exploit multiple vulnerabilities in Red Hat Enterprise Linux (openexr) to execute arbitrary code, disclose information, and conduct a denial of service attack.
An attacker can exploit multiple vulnerabilities in Checkmk to elevate their privileges and bypass security measures.
A local attacker can exploit a vulnerability in libarchive to cause a Denial-of-Service condition or potentially execute arbitrary code.
A remote, anonymous attacker can exploit a vulnerability in libarchive to conduct a denial of service attack.
A remote attacker can exploit multiple vulnerabilities in OpenSSH to execute code, escalate privileges, bypass security mechanisms, or achieve unspecified impacts.
An attacker can exploit multiple vulnerabilities in X.Org X11 and Xwayland to cause a denial of service or potentially execute arbitrary program code.
A remote, anonymous attacker can exploit a vulnerability in xz to execute arbitrary code.
An attacker can exploit a vulnerability in Python to execute arbitrary code.
An attacker can exploit multiple vulnerabilities in Roundcube to manipulate files, bypass security measures, conduct a cross-site scripting attack, and disclose information.
A remote, anonymous attacker can exploit multiple vulnerabilities in ClamAV to conduct a denial of service attack or disclose confidential information.
A remote, anonymous attacker can exploit multiple vulnerabilities in HAProxy Enterprise, Community and ALOHA to conduct a Denial of Service attack.
A remote, anonymous attacker can exploit multiple vulnerabilities in GnuTLS to conduct a Denial of Service attack.
A remote, authenticated attacker can exploit a vulnerability in ProFTPD to bypass security measures and manipulate files.
A remote, anonymous attacker can exploit a vulnerability in Keycloak to manipulate files.
A local attacker can exploit multiple vulnerabilities in libexpat to conduct an unspecified attack, potentially including arbitrary code execution, data manipulation, bypassing security measures, disclosing confidential information, or causing a Denial of Service condition.
A local attacker can exploit multiple vulnerabilities in expat to conduct a denial of service attack or potentially execute code.
An attacker can exploit these vulnerabilities to conduct unspecified attacks that may lead to denial-of-service, memory corruption, or other undefined impacts.
An attacker from an adjacent network can exploit a vulnerability in Red Hat Enterprise Linux to execute arbitrary code with administrator rights.
A remote, anonymous attacker can exploit a vulnerability in vllm to bypass security measures.
An attacker can exploit multiple vulnerabilities in vim to conduct a denial of service attack or execute arbitrary code.
A remote, anonymous attacker can exploit a vulnerability in Python to conduct a denial of service attack.
A remote, anonymous attacker can exploit multiple vulnerabilities in Red Hat Virtualization to conduct a Denial of Service attack.
Multiple vulnerabilities have been discovered in HPE Aruba Networking products. They allow an attacker to cause remote arbitrary code execution, a breach of data confidentiality, and a bypass of security policy.
Multiple vulnerabilities have been discovered in Elastic products. Some of them allow an attacker to cause a remote denial of service, a breach of data confidentiality, and a breach of data integrity.
Multiple vulnerabilities have been discovered in Mozilla products. Some of them allow an attacker to cause remote arbitrary code execution, privilege escalation, and a remote denial of service.
On July 14, 2026, during its monthly update, Microsoft released, among other things, patches for two critical vulnerabilities affecting SharePoint. The vulnerabilities CVE-2026-50522 and CVE-2026-58644 allow an unauthenticated attacker to execute arbitrary code at...
Security issues were discovered in Chromium which could result in the execution of arbitrary code, denial of service, or information disclosure. https://security-tracker.debian.org/tracker/DSA-6396-1
Several vulnerabilities were discovered in BIND, a DNS server implementation, which may result in bypass of DNSSEC validation, RPZ policy bypass, cache poisoning or denial of service. https://security-tracker.debian.org/tracker/DSA-6395-1
Microsoft SharePoint contains a deserialization of untrusted data vulnerability which could allow an unauthorized attacker to execute code over a network.
Multiple vulnerabilities have been discovered in Google Chrome. They allow an attacker to cause an unspecified security issue by the vendor.
Multiple vulnerabilities have been discovered in GLPI. They allow an attacker to cause a breach of data confidentiality, a breach of data integrity, and a bypass of security policy.
Check Point SmartConsole contains an improper authentication vulnerability which could allow an unauthenticated remote attacker to obtain an application login token and use it to authenticate with full administrative privileges.
Multiple security issues have been found in the Mozilla Firefox web browser, which could potentially result in the execution of arbitrary code, bypass of the same-origin policy, privilege escalation, information disclosure, spoofing or sandbox escape. https://security-tracker.deb…