Known Exploited Vulnerabilities (KEV)

ID Title Severity CVSS EPSS Source Updated
cve-2026-61117 PUBLISHED MEDIUM 6.3 N/A cvelistv5 2026-07-23
cve-2026-61116 PUBLISHED HIGH 7.5 N/A cvelistv5 2026-08-05
cve-2026-61115 PUBLISHED HIGH 7.2 N/A cvelistv5 2026-07-23
cve-2026-61114 PUBLISHED HIGH 7.5 N/A cvelistv5 2026-08-01
cve-2026-61113 PUBLISHED HIGH 7.4 N/A cvelistv5 2026-08-01
cve-2026-61112 PUBLISHED MEDIUM 6.5 N/A cvelistv5 2026-07-23
cve-2026-61111 PUBLISHED MEDIUM 6.5 N/A cvelistv5 2026-08-05
cve-2026-61110 PUBLISHED HIGH 8.8 N/A cvelistv5 2026-08-01
cve-2026-61109 mysql: JSON unspecified vulnerability (CPU Jul 2026) MEDIUM 6.5 N/A cvelistv5 2026-08-19
cve-2026-61108 mysql: GIS unspecified vulnerability (CPU Jul 2026) MEDIUM 6.5 N/A cvelistv5 2026-07-26
cve-2026-61107 PUBLISHED HIGH 7.2 N/A cvelistv5 2026-08-01
cve-2026-61106 PUBLISHED HIGH 8.1 N/A cvelistv5 2026-07-23
cve-2026-61105 Vulnerability in the Oracle Banking Trade Finance product of Oracle Financial Services Applications (component: Infra... HIGH 8.1 N/A cvelistv5 2026-08-17
cve-2026-61104 PUBLISHED LOW 3.7 N/A cvelistv5 2026-07-23
cve-2026-61103 Vulnerability in the PeopleSoft Enterprise CS Campus Community product of Oracle PeopleSoft (component: Security). The supported version that is affected is 9.2.38. Difficult to exploit vulnerability allows unauthenticated attacker with access to the physical communication segment attached to the hardware where the PeopleSoft Enterprise CS Campus Community executes to compromise PeopleSoft Enterprise CS Campus Community. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all PeopleSoft Enterprise CS Campus Community accessible data as well as unauthorized update, insert or delete access to some of PeopleSoft Enterprise CS Campus Community accessible data. CVSS 3.1 Base Score 5.9 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:L/A:N). MEDIUM 5.9 N/A cvelistv5 2026-07-31
cve-2026-61102 Vulnerability in the Oracle Banking Trade Finance product of Oracle Financial Services Applications (component: Infra... HIGH 8.1 N/A cvelistv5 2026-08-17
cve-2026-61101 PUBLISHED HIGH 8.2 N/A cvelistv5 2026-07-23
cve-2026-61100 PUBLISHED CRITICAL 9.8 N/A cvelistv5 2026-07-23
cve-2026-61099 PUBLISHED HIGH 8.8 N/A cvelistv5 2026-07-23
cve-2026-61098 PUBLISHED HIGH 8.8 N/A cvelistv5 2026-07-23
cve-2026-61097 Vulnerability in the Oracle Banking Trade Finance Process Management product of Oracle Financial Services Application... CRITICAL 9.6 N/A cvelistv5 2026-08-17
cve-2026-61096 mysql: Pluggable Auth unspecified vulnerability (CPU Jul 2026) LOW 2.9 N/A cvelistv5 2026-08-19
cve-2026-61095 Vulnerability in the Oracle Communications Unified Inventory Management product of Oracle Communications (component: ... HIGH 7.1 N/A cvelistv5 2026-08-17
cve-2026-61094 SUSE CVE CVE-2026-61094 UNKNOWN N/A N/A cvelistv5 2026-08-25
cve-2026-61093 mysql: Optimizer unspecified vulnerability (CPU Jul 2026) MEDIUM 6.5 N/A cvelistv5 2026-07-26
cve-2026-61092 PUBLISHED HIGH 8.1 N/A cvelistv5 2026-07-23
cve-2026-61091 Vulnerability in the Oracle Communications Billing and Revenue Management product of Oracle Communications (component: BRM Server). Supported versions that are affected are 15.0.0.0.0, 15.0.1.0.0, 15.1.0.0.0 and 15.2.0.0.0. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle Communications Billing and Revenue Management executes to compromise Oracle Communications Billing and Revenue Management. Successful attacks of this vulnerability can result in takeover of Oracle Communications Billing and Revenue Management. CVSS 3.1 Base Score 7.8 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H). HIGH 7.8 N/A cvelistv5 2026-08-17
cve-2026-61090 Vulnerability in the Oracle Project Foundation product of Oracle E-Business Suite (component: Miscellaneous). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle Project Foundation executes to compromise Oracle Project Foundation. Successful attacks of this vulnerability can result in takeover of Oracle Project Foundation. CVSS 3.1 Base Score 7.8 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H). HIGH 7.8 N/A cvelistv5 2026-08-06
cve-2026-61089 Vulnerability in the PeopleSoft Enterprise SCM Inventory product of Oracle PeopleSoft (component: Security). The supported version that is affected is 9.2. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise PeopleSoft Enterprise SCM Inventory. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all PeopleSoft Enterprise SCM Inventory accessible data as well as unauthorized update, insert or delete access to some of PeopleSoft Enterprise SCM Inventory accessible data. CVSS 3.1 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:N). HIGH 8.2 N/A cvelistv5 2026-08-06
cve-2026-61088 PUBLISHED HIGH 7.5 N/A cvelistv5 2026-07-23