Vulnerabilities > Oracle > Coherence > 14.1.1.0.0

DATE CVE VULNERABILITY TITLE RISK
2022-04-19 CVE-2022-21420 Unspecified vulnerability in Oracle Coherence 12.2.1.3.0/12.2.1.4.0/14.1.1.0.0
Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core).
network
low complexity
oracle
7.5
2022-03-11 CVE-2020-36518 Out-of-bounds Write vulnerability in multiple products
jackson-databind before 2.13.0 allows a Java StackOverflow exception and denial of service via a large depth of nested objects.
network
low complexity
fasterxml oracle debian netapp CWE-787
7.5
2021-12-09 CVE-2021-43797 HTTP Request Smuggling vulnerability in multiple products
Netty is an asynchronous event-driven network application framework for rapid development of maintainable high performance protocol servers & clients.
network
low complexity
netty quarkus netapp oracle debian CWE-444
6.5
2021-10-19 CVE-2021-37136 Resource Exhaustion vulnerability in multiple products
The Bzip2 decompression decoder function doesn't allow setting size restrictions on the decompressed output data (which affects the allocation size used during decompression).
network
low complexity
netty quarkus oracle netapp debian CWE-400
7.5
2021-07-21 CVE-2021-2428 Unspecified vulnerability in Oracle Coherence
Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core).
network
oracle
6.8
2021-07-21 CVE-2021-2344 Unspecified vulnerability in Oracle Coherence
Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core).
network
low complexity
oracle
5.0
2021-07-21 CVE-2021-2371 Unspecified vulnerability in Oracle Coherence
Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core).
network
low complexity
oracle
5.0
2021-04-22 CVE-2021-2277 Unspecified vulnerability in Oracle Coherence
Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core).
network
low complexity
oracle
5.0
2021-03-30 CVE-2021-21409 HTTP Request Smuggling vulnerability in multiple products
Netty is an open-source, asynchronous event-driven network application framework for rapid development of maintainable high performance protocol servers & clients.
network
high complexity
netty debian netapp oracle quarkus CWE-444
5.9
2021-01-20 CVE-2020-14756 Unspecified vulnerability in Oracle Coherence and Utilities Framework
Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core Components).
network
low complexity
oracle
7.5