threat
engine
.sh
Back
·
··:··
Home
/
Product
/
oracle goldengate
Product
oracle goldengate
22 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
Sort
Newest first
Oldest first
Highest CVSS
Lowest CVSS
Min CVSS
Any
4.0+
7.0+ (High)
9.0+ (Critical)
Published since
Reset
CVE-2026-34273
>= 23.4 and <= 23.10
Vulnerability in Oracle GoldenGate (component: Libraries). Supported versions that are affected are 23.4-23.10. Easily exploitabl
5.3
MEDIUM
CVE-2022-21551
>= 19.1.0.0.0 and < 19.1.0.0.220719
Vulnerability in Oracle GoldenGate (component: Oracle GoldenGate). The supported version that is affected is 21c: prior to 21.7.0.
6.8
MEDIUM
CVE-2022-21442
< 23.1
Vulnerability in Oracle GoldenGate (component: OGG Core Library). The supported version that is affected is Prior to 23.1. Easily
8.8
HIGH
CVE-2021-4104
all versions
JMSAppender in Log4j 1.2 is vulnerable to deserialization of untrusted data when the attacker has write access to the Log4j config
7.5
HIGH
CVE-2021-3749
>= 21.1 and < 21.7.0.0.0
axios is vulnerable to Inefficient Regular Expression Complexity
7.5
HIGH
CVE-2021-2351
< 12.3.0.1.0
Vulnerability in the Advanced Networking Option component of Oracle Database Server. Supported versions that are affected are 12.1
8.3
HIGH
CVE-2021-23017
< 21.4.0.0.0
A security issue in nginx resolver was identified, which might allow an attacker who is able to forge UDP packets from the DNS ser
7.7
HIGH
CVE-2020-14705
< 19.1.0.0.0
Vulnerability in the Oracle GoldenGate product of Oracle GoldenGate (component: Process Management). The supported version that is
9.6
CRITICAL
CVE-2019-14862
all versions
There is a vulnerability in knockout before version 3.5.0-beta, where after escaping the context of the web application, the web a
6.1
MEDIUM
CVE-2018-1311
< 21.4.0.0.0
The Apache Xerces-C 3.0.0 to 3.2.3 XML parser contains a use-after-free error triggered during the scanning of external DTDs. This
8.1
HIGH
CVE-2019-10219
< 12.3.0.1
A vulnerability was found in Hibernate-Validator. The SafeHtml validator annotation fails to properly sanitize payloads consisting
6.1
MEDIUM
CVE-2019-3740
< 19.1.0.0.0.210420
RSA BSAFE Crypto-J versions prior to 6.2.5 are vulnerable to an Information Exposure Through Timing Discrepancy vulnerabilities du
6.5
MEDIUM
CVE-2019-3739
< 19.1.0.0.0.210420
RSA BSAFE Crypto-J versions prior to 6.2.5 are vulnerable to Information Exposure Through Timing Discrepancy vulnerabilities durin
6.5
MEDIUM
CVE-2019-3738
< 19.1.0.0.0.210420
RSA BSAFE Crypto-J versions prior to 6.2.5 are vulnerable to a Missing Required Cryptographic Step vulnerability. A malicious remo
6.5
MEDIUM
CVE-2018-2914
all versions
Vulnerability in the Oracle GoldenGate component of Oracle GoldenGate (subcomponent: Manager). Supported versions that are affecte
7.5
HIGH
CVE-2018-2913
all versions
Vulnerability in the Oracle GoldenGate component of Oracle GoldenGate (subcomponent: Monitoring Manager). Supported versions that
10.0
CRITICAL
CVE-2018-2912
all versions
Vulnerability in the Oracle GoldenGate component of Oracle GoldenGate (subcomponent: Manager). Supported versions that are affecte
7.5
HIGH
CVE-2018-2832
all versions
Vulnerability in the Oracle GoldenGate component of Oracle GoldenGate. The supported version that is affected is 12.2.0.1. Easily
8.6
HIGH
CVE-2017-5645
all versions
In Apache Log4j 2.x before 2.8.2, when using the TCP socket server or UDP socket server to receive serialized log events from anot
9.8
CRITICAL
CVE-2016-0452
all versions
Unspecified vulnerability in the Oracle GoldenGate component in Oracle GoldenGate 11.2 and 12.1.2 allows remote attackers to affec
CVE-2016-0451
all versions
Unspecified vulnerability in the Oracle GoldenGate component in Oracle GoldenGate 11.2 and 12.1.2 allows remote attackers to affec
CVE-2016-0450
all versions
Unspecified vulnerability in the Oracle GoldenGate component in Oracle GoldenGate 11.2 and 12.1.2 allows remote attackers to affec
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh · Open-source threat intelligence platform · 100+ authoritative sources · Every fact traces to its origin