Home/Product/oracle workflow
Product

oracle workflow

17 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2026-34302
>= 12.2.3 and <= 12.2.15
Vulnerability in the Oracle Workflow product of Oracle E-Business Suite (component: Workflow Loader). Supported versions that are
5.5MEDIUM
CVE-2026-21959
>= 12.2.3 and <= 12.2.15
Vulnerability in the Oracle Workflow product of Oracle E-Business Suite (component: Workflow Loader). Supported versions that are
4.9MEDIUM
CVE-2025-53052
>= 12.2.3 and <= 12.2.14
Vulnerability in the Oracle Workflow product of Oracle E-Business Suite (component: Workflow Notification Mailer). Supported vers
6.1MEDIUM
CVE-2025-21541
>= 12.2.3 and <= 12.2.14
Vulnerability in the Oracle Workflow product of Oracle E-Business Suite (component: Admin Screens and Grants UI). Supported versi
5.4MEDIUM
CVE-2024-21071
>= 12.2.3 and <= 12.2.13
Vulnerability in the Oracle Workflow product of Oracle E-Business Suite (component: Admin Screens and Grants UI). Supported versi
9.1CRITICAL
CVE-2022-38167
all versions
The Nintex Workflow plugin 5.2.2.30 for SharePoint allows XSS.
6.1MEDIUM
CVE-2022-21567
>= 12.2.3 and <= 12.2.11
Vulnerability in the Oracle Workflow product of Oracle E-Business Suite (component: Worklist). Supported versions that are affecte
7.5HIGH
CVE-2021-2343
>= 12.2.3 and <= 12.2.10
Vulnerability in the Oracle Workflow product of Oracle E-Business Suite (component: Workflow Notification Mailer). Supported versi
4.3MEDIUM
CVE-2021-2015
>= 12.2.3 and <= 12.2.10
Vulnerability in the Oracle Workflow product of Oracle E-Business Suite (component: Worklist). Supported versions that are affecte
8.2HIGH
CVE-2020-2753
>= 12.2.3 and <= 12.2.9
Vulnerability in the Oracle Workflow product of Oracle E-Business Suite (component: Workflow Notification Mailer). Supported versi
5.3MEDIUM
CVE-2015-0102
all versions
IBM Workflow for Bluemix does not set the secure flag for the session cookie in an https session, which makes it easier for remote
8.1HIGH
CVE-2019-2925
>= 12.2.3 and <= 12.2.8
Vulnerability in the Oracle Workflow product of Oracle E-Business Suite (component: Worklist). Supported versions that are affecte
4.3MEDIUM
CVE-2010-1539
all versions
Cross-site scripting (XSS) vulnerability in the Workflow module 5.x-2.x before 5.x-2.6 and 6.x-1.x before 6.x-1.4 for Drupal, when
CVE-2009-4513
<= 5.x-2.3
Multiple cross-site scripting (XSS) vulnerabilities in the Workflow module 5.x before 5.x-2.4 and 6.x before 6.x-1.2, a module for
CVE-2008-0463
<= 4.7.x-1.1
Cross-site scripting (XSS) vulnerability in the Workflow 4.7.x before 4.7.x-1.2 and 5.x before 5.x-1.2 module for Drupal allows re
CVE-2006-1884
all versions
Unspecified vulnerability in the Oracle Thesaurus Management System component in Oracle E-Business Suite and OPA 4.5.2 Application
CVE-2006-0552
all versions
Unspecified vulnerability in the Net Listener component of Oracle Database server 8.1.7.4, 9.0.1.5, 9.0.1.5 FIPS, and 9.2.0.7 has
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh  ·  Open-source threat intelligence platform  ·  100+ authoritative sources  ·  Every fact traces to its origin