Vulnerabilities > Oracle > Utilities Framework

DATE CVE VULNERABILITY TITLE RISK
2022-03-11 CVE-2020-36518 Out-of-bounds Write vulnerability in multiple products
jackson-databind before 2.13.0 allows a Java StackOverflow exception and denial of service via a large depth of nested objects.
network
low complexity
fasterxml oracle debian netapp CWE-787
7.5
2021-12-18 CVE-2021-45105 Uncontrolled Recursion vulnerability in multiple products
Apache Log4j2 versions 2.0-alpha1 through 2.16.0 (excluding 2.12.3 and 2.3.1) did not protect from uncontrolled recursion from self-referential lookups.
network
high complexity
apache netapp debian sonicwall oracle CWE-674
5.9
2021-08-23 CVE-2021-39140 XStream is a simple library to serialize objects to XML and back again. 6.3
2021-08-23 CVE-2021-39150 XStream is a simple library to serialize objects to XML and back again. 8.5
2021-08-23 CVE-2021-39152 XStream is a simple library to serialize objects to XML and back again. 8.5
2021-08-23 CVE-2021-39139 XStream is a simple library to serialize objects to XML and back again. 8.8
2021-08-23 CVE-2021-39141 XStream is a simple library to serialize objects to XML and back again. 8.5
2021-08-23 CVE-2021-39144 Deserialization of Untrusted Data vulnerability in multiple products
XStream is a simple library to serialize objects to XML and back again.
8.5
2021-08-23 CVE-2021-39145 XStream is a simple library to serialize objects to XML and back again. 8.5
2021-08-23 CVE-2021-39146 XStream is a simple library to serialize objects to XML and back again. 8.5