Vulnerabilities > Oracle > Coherence > High

DATE CVE VULNERABILITY TITLE RISK
2022-07-19 CVE-2022-21570 Unspecified vulnerability in Oracle Coherence
Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core).
network
low complexity
oracle
7.5
2022-03-11 CVE-2020-36518 Out-of-bounds Write vulnerability in multiple products
jackson-databind before 2.13.0 allows a Java StackOverflow exception and denial of service via a large depth of nested objects.
network
low complexity
fasterxml oracle debian netapp CWE-787
7.5
2021-10-19 CVE-2021-37136 Resource Exhaustion vulnerability in multiple products
The Bzip2 decompression decoder function doesn't allow setting size restrictions on the decompressed output data (which affects the allocation size used during decompression).
network
low complexity
netty quarkus oracle netapp debian CWE-400
7.5
2021-07-21 CVE-2021-2344 Unspecified vulnerability in Oracle Coherence
Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core).
network
low complexity
oracle
7.5
2021-07-21 CVE-2021-2371 Unspecified vulnerability in Oracle Coherence
Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core).
network
low complexity
oracle
7.5
2021-04-22 CVE-2021-2277 Unspecified vulnerability in Oracle Coherence
Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core).
network
low complexity
oracle
7.5
2020-12-03 CVE-2020-25649 XXE vulnerability in multiple products
A flaw was found in FasterXML Jackson Databind, where it did not have entity expansion secured properly.
7.5
2020-07-15 CVE-2020-14642 Improper Resource Shutdown or Release vulnerability in Oracle Coherence
Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: CacheStore).
network
low complexity
oracle CWE-404
7.5