SOC status:Duty analyst on shift

UK Cyber Defence

Tools / CVE Explorer

Which vulnerabilities actually matter?

Every CVE with its CVSS severity, EPSS probability of exploitation and CISA KEV status side by side, refreshed daily from NVD, FIRST and CISA — plus a plain-English verdict on whether it needs an emergency change or the normal patch cycle.

395,656 CVEs1,716 in CISA KEV17,391 with EPSS ≥ 10%25,049 with a public exploitUpdated 20 September 2026

39,245 results · page 38 of 785

CVESummaryPriorityPublished
CVE-2026-70926Vulnerability in the Oracle Workflow product of Oracle E-Business Suite (component: Workflow Notification Mailer).CRITICAL 9.8EPSS 0.51%18 August 2026
CVE-2026-70921Vulnerability in the Oracle Hyperion Financial Management product of Oracle Hyperion (component: Security).CRITICAL 10.0EPSS 0.43%18 August 2026
CVE-2026-70920Vulnerability in the Oracle Hyperion Financial Management product of Oracle Hyperion (component: Security).CRITICAL 9.9EPSS 0.43%18 August 2026
CVE-2026-70905Vulnerability in the Oracle Access Manager product of Oracle Fusion Middleware (component: Agent infrastructure).CRITICAL 9.8EPSS 0.47%18 August 2026
CVE-2026-70884Vulnerability in the Oracle Hyperion Data Relationship Management product of Oracle Hyperion (component: Access and security).CRITICAL 9.1EPSS 0.40%18 August 2026
CVE-2026-70883Vulnerability in the Oracle Hyperion Data Relationship Management product of Oracle Hyperion (component: Access and security).CRITICAL 9.1EPSS 0.33%18 August 2026
CVE-2026-70880Vulnerability in the Oracle Hyperion Data Relationship Management product of Oracle Hyperion (component: Access and security).CRITICAL 10.0EPSS 0.35%18 August 2026
CVE-2026-70876Vulnerability in the Oracle Hyperion Data Relationship Management product of Oracle Hyperion (component: Access and security).CRITICAL 9.1EPSS 0.45%18 August 2026
CVE-2026-70873Vulnerability in the Oracle Hyperion Data Relationship Management product of Oracle Hyperion (component: Access and security).CRITICAL 9.8EPSS 0.47%18 August 2026
CVE-2026-70872Vulnerability in the Oracle Hyperion Data Relationship Management product of Oracle Hyperion (component: Access and security).CRITICAL 9.1EPSS 0.33%18 August 2026
CVE-2026-70871Vulnerability in the Oracle Hyperion Data Relationship Management product of Oracle Hyperion (component: Access and security).CRITICAL 9.8EPSS 0.35%18 August 2026
CVE-2026-70862Vulnerability in Oracle Application Testing Suite.CRITICAL 9.1EPSS 0.33%18 August 2026
CVE-2026-70855Vulnerability in the Siebel Apps - Self Service product of Oracle Siebel CRM (component: Helpdesk/Training).CRITICAL 9.3EPSS 0.33%18 August 2026
CVE-2026-70854Vulnerability in the Oracle Hyperion Financial Management product of Oracle Hyperion (component: Security).CRITICAL 9.1EPSS 0.45%18 August 2026
CVE-2026-70846Vulnerability in the Oracle Demand Planning product of Oracle Supply Chain (component: Internal Operations).CRITICAL 9.6EPSS 0.34%18 August 2026
CVE-2026-70817Vulnerability in the Oracle Hyperion Financial Management product of Oracle Hyperion (component: Security).CRITICAL 9.8EPSS 0.47%18 August 2026
CVE-2026-70745Vulnerability in the Oracle Hyperion Financial Reporting product of Oracle Hyperion (component: Server).CRITICAL 9.8EPSS 0.47%18 August 2026
CVE-2026-70741Vulnerability in the Oracle Hyperion Financial Reporting product of Oracle Hyperion (component: Server).CRITICAL 9.1EPSS 0.40%18 August 2026
CVE-2026-70740Vulnerability in the Oracle Hyperion Financial Reporting product of Oracle Hyperion (component: Server).CRITICAL 9.8EPSS 0.47%18 August 2026
CVE-2026-70739Vulnerability in the Oracle Hyperion Financial Reporting product of Oracle Hyperion (component: Server).CRITICAL 9.8EPSS 0.47%18 August 2026
CVE-2026-70730Vulnerability in the Oracle Hyperion Profitability and Cost Management product of Oracle Hyperion (component: Deployment).CRITICAL 9.1EPSS 0.40%18 August 2026
CVE-2026-70689Vulnerability in Oracle Essbase (component: Infrastructure).CRITICAL 9.8EPSS 0.49%18 August 2026
CVE-2026-70673Vulnerability in the Oracle Reports Developer product of Oracle Fusion Middleware (component: Security and Authentication).CRITICAL 9.3EPSS 0.34%18 August 2026
CVE-2026-70669Vulnerability in the Oracle Reports Developer product of Oracle Fusion Middleware (component: Security and Authentication).CRITICAL 9.8EPSS 0.38%18 August 2026
CVE-2026-70668Vulnerability in the Oracle Reports Developer product of Oracle Fusion Middleware (component: Security and Authentication).CRITICAL 9.1EPSS 0.31%18 August 2026
CVE-2026-62988Exposure of both values for an account can enable takeover of the hosting panel or hosted resources and can defeat both authentication factors.CRITICAL 9.0EPSS 0.68%18 August 2026
CVE-2026-62640Vulnerability in the Oracle Reports Developer product of Oracle Fusion Middleware (component: Security and Authentication).CRITICAL 9.8EPSS 0.47%18 August 2026
CVE-2026-62639Vulnerability in the Oracle Reports Developer product of Oracle Fusion Middleware (component: Security and Authentication).CRITICAL 9.8EPSS 0.47%18 August 2026
CVE-2026-62638Vulnerability in the Oracle Reports Developer product of Oracle Fusion Middleware (component: Security and Authentication).CRITICAL 9.1EPSS 0.42%18 August 2026
CVE-2026-62635Vulnerability in the Oracle Reports Developer product of Oracle Fusion Middleware (component: Security and Authentication).CRITICAL 9.8EPSS 0.51%18 August 2026
CVE-2026-62634Vulnerability in the Oracle Reports Developer product of Oracle Fusion Middleware (component: Security and Authentication).CRITICAL 9.8EPSS 0.47%18 August 2026
CVE-2026-62633Vulnerability in the Oracle Reports Developer product of Oracle Fusion Middleware (component: Security and Authentication).CRITICAL 9.8EPSS 0.51%18 August 2026
CVE-2026-62632Vulnerability in the Oracle Reports Developer product of Oracle Fusion Middleware (component: Security and Authentication).CRITICAL 9.8EPSS 0.51%18 August 2026
CVE-2026-62630Vulnerability in the Oracle Reports Developer product of Oracle Fusion Middleware (component: Security and Authentication).CRITICAL 9.8EPSS 0.47%18 August 2026
CVE-2026-62629Vulnerability in the Oracle Reports Developer product of Oracle Fusion Middleware (component: Security and Authentication).CRITICAL 9.4EPSS 0.39%18 August 2026
CVE-2026-62626Vulnerability in the Oracle Reports Developer product of Oracle Fusion Middleware (component: Security and Authentication).CRITICAL 9.8EPSS 0.51%18 August 2026
CVE-2026-62624Vulnerability in the Oracle Reports Developer product of Oracle Fusion Middleware (component: Security and Authentication).CRITICAL 9.8EPSS 0.47%18 August 2026
CVE-2026-62622Vulnerability in the Oracle Reports Developer product of Oracle Fusion Middleware (component: Security and Authentication).CRITICAL 9.8EPSS 0.47%18 August 2026
CVE-2026-62621Vulnerability in the Oracle Reports Developer product of Oracle Fusion Middleware (component: Security and Authentication).CRITICAL 9.8EPSS 0.47%18 August 2026
CVE-2026-62618Vulnerability in the Oracle Reports Developer product of Oracle Fusion Middleware (component: Security and Authentication).CRITICAL 9.3EPSS 0.26%18 August 2026
CVE-2026-62617Vulnerability in the Oracle Reports Developer product of Oracle Fusion Middleware (component: Security and Authentication).CRITICAL 9.8EPSS 0.47%18 August 2026
CVE-2026-62614Vulnerability in the Oracle Reports Developer product of Oracle Fusion Middleware (component: Security and Authentication).CRITICAL 9.8EPSS 0.47%18 August 2026
CVE-2026-62611Vulnerability in the Oracle Reports Developer product of Oracle Fusion Middleware (component: Security and Authentication).CRITICAL 9.8EPSS 0.47%18 August 2026
CVE-2026-62610Vulnerability in the Oracle Reports Developer product of Oracle Fusion Middleware (component: Security and Authentication).CRITICAL 9.1EPSS 0.31%18 August 2026
CVE-2026-62609Vulnerability in the Oracle Reports Developer product of Oracle Fusion Middleware (component: Security and Authentication).CRITICAL 9.8EPSS 0.47%18 August 2026
CVE-2026-62608Vulnerability in the Oracle Reports Developer product of Oracle Fusion Middleware (component: Security and Authentication).CRITICAL 9.9EPSS 0.40%18 August 2026
CVE-2026-62592Vulnerability in the Siebel CRM Integration product of Oracle Siebel CRM (component: Open Integration).CRITICAL 9.8EPSS 0.48%18 August 2026
CVE-2026-62588Vulnerability in the Siebel CRM Integration product of Oracle Siebel CRM (component: Open Integration).CRITICAL 9.9EPSS 0.41%18 August 2026
CVE-2026-62585Vulnerability in the Siebel CRM Administration product of Oracle Siebel CRM (component: Data Archival).CRITICAL 9.8EPSS 0.35%18 August 2026
CVE-2026-62582Vulnerability in the Oracle Hyperion Calculation Manager product of Oracle Hyperion (component: Security).CRITICAL 9.6EPSS 0.28%18 August 2026

How to read this

CVSS measures how bad a vulnerability could be if exploited. EPSS (from FIRST) estimates the probability it will actually be exploited in the next thirty days. KEV is CISA’s list of vulnerabilities that are being exploited right now. EXPLOIT means a working exploit is published in Exploit-DB, so the technical barrier is gone. Patch KEV entries first, then anything with a public exploit or an EPSS above 10 per cent, then work down by CVSS in your normal cycle.

Data is refreshed daily from the NVD, FIRST EPSS, the CISA KEV catalogue and the Exploit-DB repository. Every record can be downloaded as JSON from its page. Our SOC uses the same table to prioritise patching for clients; the verdict on each page is the rule of thumb our analysts apply.