Tools / CVE Explorer
Which vulnerabilities actually matter?
Every CVE with its CVSS severity, EPSS probability of exploitation and CISA KEV status side by side, refreshed daily from NVD, FIRST and CISA — plus a plain-English verdict on whether it needs an emergency change or the normal patch cycle.
395,656 CVEs1,716 in CISA KEV17,391 with EPSS ≥ 10%25,049 with a public exploitUpdated 20 September 2026
39,245 results · page 39 of 785
| CVE | Summary | Priority | Published |
|---|---|---|---|
| CVE-2026-62544 | Vulnerability in the Oracle Hyperion Infrastructure Technology product of Oracle Hyperion (component: Installation and Configuration). | CRITICAL 9.8EPSS 0.47% | 18 August 2026 |
| CVE-2026-62543 | Vulnerability in the Oracle Hyperion Infrastructure Technology product of Oracle Hyperion (component: Installation and Configuration). | CRITICAL 9.8EPSS 0.35% | 18 August 2026 |
| CVE-2026-62541 | Vulnerability in the Oracle Hyperion Infrastructure Technology product of Oracle Hyperion (component: Installation and Configuration). | CRITICAL 9.8EPSS 0.35% | 18 August 2026 |
| CVE-2026-62539 | Vulnerability in the Oracle Hyperion Infrastructure Technology product of Oracle Hyperion (component: Installation and Configuration). | CRITICAL 9.8EPSS 0.35% | 18 August 2026 |
| CVE-2026-62512 | Vulnerability in the Siebel CRM Cloud Applications product of Oracle Siebel CRM (component: Siebel Cloud Manager). | CRITICAL 9.9EPSS 0.40% | 18 August 2026 |
| CVE-2026-62463 | Vulnerability in the Oracle Hyperion Infrastructure Technology product of Oracle Hyperion (component: Lifecycle Management). | CRITICAL 9.6EPSS 0.36% | 18 August 2026 |
| CVE-2026-62457 | Vulnerability in the Oracle Hyperion Infrastructure Technology product of Oracle Hyperion (component: Common Events). | CRITICAL 9.8EPSS 0.47% | 18 August 2026 |
| CVE-2026-62452 | Vulnerability in the Siebel CRM Cloud Applications product of Oracle Siebel CRM (component: Siebel Cloud Manager). | CRITICAL 9.9EPSS 0.38% | 18 August 2026 |
| CVE-2026-61318 | Vulnerability in the Siebel CRM Cloud Applications product of Oracle Siebel CRM (component: Siebel Cloud Manager). | CRITICAL 9.8EPSS 0.51% | 18 August 2026 |
| CVE-2026-61317 | Vulnerability in the Siebel CRM Cloud Applications product of Oracle Siebel CRM (component: Siebel Cloud Manager). | CRITICAL 9.9EPSS 0.43% | 18 August 2026 |
| CVE-2026-61272 | Vulnerability in the JD Edwards EnterpriseOne Tools product of Oracle JD Edwards (component: Web Runtime SEC). | CRITICAL 9.8EPSS 0.35% | 18 August 2026 |
| CVE-2026-61258 | Vulnerability in the Oracle Internet Directory product of Oracle Fusion Middleware (component: OID LDAP Server). | CRITICAL 9.8EPSS 0.38% | 18 August 2026 |
| CVE-2026-61248 | Vulnerability in the Oracle Internet Directory product of Oracle Fusion Middleware (component: OID LDAP Server). | CRITICAL 9.9EPSS 0.33% | 18 August 2026 |
| CVE-2026-61241 | Vulnerability in the Oracle Internet Directory product of Oracle Fusion Middleware (component: OID LDAP Server). | CRITICAL 10.0EPSS 0.51% | 18 August 2026 |
| CVE-2026-61206 | Vulnerability in the Oracle Hyperion Calculation Manager product of Oracle Hyperion (component: Security). | CRITICAL 9.9EPSS 0.43% | 18 August 2026 |
| CVE-2026-61066 | Vulnerability in the Oracle Identity Manager product of Oracle Fusion Middleware (component: OIM Legacy UI). | CRITICAL 9.9EPSS 0.33% | 18 August 2026 |
| CVE-2026-61034 | Vulnerability in the Oracle WebCenter Sites product of Oracle Fusion Middleware (component: WebCenter Sites). | CRITICAL 9.1EPSS 0.34% | 18 August 2026 |
| CVE-2026-61029 | Vulnerability in the Oracle WebCenter Sites product of Oracle Fusion Middleware (component: WebCenter Sites). | CRITICAL 9.0EPSS 0.37% | 18 August 2026 |
| CVE-2026-61021 | Vulnerability in the Oracle WebCenter Sites product of Oracle Fusion Middleware (component: WebCenter Sites). | CRITICAL 9.9EPSS 0.31% | 18 August 2026 |
| CVE-2026-61018 | Vulnerability in the Oracle WebCenter Sites product of Oracle Fusion Middleware (component: WebCenter Sites). | CRITICAL 9.8EPSS 0.36% | 18 August 2026 |
| CVE-2026-61008 | Vulnerability in the Oracle WebCenter Sites product of Oracle Fusion Middleware (component: WebCenter Sites). | CRITICAL 9.1EPSS 0.40% | 18 August 2026 |
| CVE-2026-61003 | Vulnerability in the Oracle Managed File Transfer product of Oracle Fusion Middleware (component: MFT Runtime Server). | CRITICAL 9.9EPSS 0.44% | 18 August 2026 |
| CVE-2026-61001 | Vulnerability in the Oracle Web Services Manager product of Oracle Fusion Middleware (component: Web Services Security). | CRITICAL 9.6EPSS 0.34% | 18 August 2026 |
| CVE-2026-60995 | Vulnerability in the Oracle Identity Manager Connector product of Oracle Fusion Middleware (component: Core). | CRITICAL 9.9EPSS 0.32% | 18 August 2026 |
| CVE-2026-60990 | Vulnerability in the Oracle Identity Manager Connector product of Oracle Fusion Middleware (component: Core). | CRITICAL 9.9EPSS 0.33% | 18 August 2026 |
| CVE-2026-60977 | Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: WLS Core Components). | CRITICAL 9.8EPSS 0.51% | 18 August 2026 |
| CVE-2026-60971 | Vulnerability in the Oracle WebCenter Enterprise Capture product of Oracle Fusion Middleware (component: Client Bundle). | CRITICAL 9.8EPSS 0.36% | 18 August 2026 |
| CVE-2026-60970 | Vulnerability in the Oracle WebCenter Enterprise Capture product of Oracle Fusion Middleware (component: Client Bundle). | CRITICAL 9.8EPSS 0.47% | 18 August 2026 |
| CVE-2026-60958 | Vulnerability in the Oracle WebCenter Enterprise Capture product of Oracle Fusion Middleware (component: Client Bundle). | CRITICAL 9.8EPSS 0.48% | 18 August 2026 |
| CVE-2026-60947 | Vulnerability in the Oracle WebCenter Enterprise Capture product of Oracle Fusion Middleware (component: Client Bundle). | CRITICAL 9.8EPSS 0.47% | 18 August 2026 |
| CVE-2026-60946 | Vulnerability in the Oracle WebCenter Enterprise Capture product of Oracle Fusion Middleware (component: Client Bundle). | CRITICAL 9.8EPSS 0.47% | 18 August 2026 |
| CVE-2026-60921 | Vulnerability in the Oracle WebCenter Enterprise Capture product of Oracle Fusion Middleware (component: Client Bundle). | CRITICAL 9.8EPSS 0.47% | 18 August 2026 |
| CVE-2026-60916 | Vulnerability in the Oracle WebCenter Enterprise Capture product of Oracle Fusion Middleware (component: Client Bundle). | CRITICAL 9.9EPSS 0.35% | 18 August 2026 |
| CVE-2026-60905 | Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Content Server). | CRITICAL 9.6EPSS 0.38% | 18 August 2026 |
| CVE-2026-60861 | Vulnerability in the Service Delivery Platform product of Oracle Fusion Middleware (component: Messaging Enabler). | CRITICAL 9.6EPSS 0.34% | 18 August 2026 |
| CVE-2026-60858 | Vulnerability in the Oracle Hyperion Calculation Manager product of Oracle Hyperion (component: Security). | CRITICAL 9.8EPSS 0.51% | 18 August 2026 |
| CVE-2026-60821 | Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Business Interlink). | CRITICAL 9.8EPSS 0.47% | 18 August 2026 |
| CVE-2026-60782 | Vulnerability in the Oracle Payments product of Oracle E-Business Suite (component: File Transmission). | CRITICAL 9.8EPSS 0.47% | 18 August 2026 |
| CVE-2026-60754 | Vulnerability in the Siebel Apps - Marketing product of Oracle Siebel CRM (component: Marketing). | CRITICAL 9.1EPSS 0.47% | 18 August 2026 |
| CVE-2026-60737 | Vulnerability in the Oracle Web Services Manager product of Oracle Fusion Middleware (component: Web Services Security). | CRITICAL 9.1EPSS 0.43% | 18 August 2026 |
| CVE-2026-60730 | Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion Middleware (component: Composer). | CRITICAL 9.9EPSS 0.40% | 18 August 2026 |
| CVE-2026-60728 | Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion Middleware (component: Portlet Services). | CRITICAL 9.1EPSS 0.51% | 18 August 2026 |
| CVE-2026-60727 | Vulnerability in the Oracle Identity Manager product of Oracle Fusion Middleware (component: OIM Legacy UI). | CRITICAL 9.8EPSS 0.47% | 18 August 2026 |
| CVE-2026-60721 | Vulnerability in the Oracle Identity Manager product of Oracle Fusion Middleware (component: OIM Legacy UI). | CRITICAL 9.8EPSS 0.47% | 18 August 2026 |
| CVE-2026-60720 | Vulnerability in the Oracle Identity Manager product of Oracle Fusion Middleware (component: OIM Legacy UI). | CRITICAL 9.9EPSS 0.40% | 18 August 2026 |
| CVE-2026-60702 | Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). | CRITICAL 9.9EPSS 0.40% | 18 August 2026 |
| CVE-2026-60698 | Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). | CRITICAL 9.8EPSS 0.51% | 18 August 2026 |
| CVE-2026-60696 | Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). | CRITICAL 9.8EPSS 0.51% | 18 August 2026 |
| CVE-2026-60672 | Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). | CRITICAL 9.8EPSS 0.51% | 18 August 2026 |
| CVE-2026-60591 | Vulnerability in the Oracle Hospitality Simphony product of Oracle Food and Beverage Applications (component: POS). | CRITICAL 9.1EPSS 0.42% | 18 August 2026 |
How to read this
CVSS measures how bad a vulnerability could be if exploited. EPSS (from FIRST) estimates the probability it will actually be exploited in the next thirty days. KEV is CISA’s list of vulnerabilities that are being exploited right now. EXPLOIT means a working exploit is published in Exploit-DB, so the technical barrier is gone. Patch KEV entries first, then anything with a public exploit or an EPSS above 10 per cent, then work down by CVSS in your normal cycle.
Data is refreshed daily from the NVD, FIRST EPSS, the CISA KEV catalogue and the Exploit-DB repository. Every record can be downloaded as JSON from its page. Our SOC uses the same table to prioritise patching for clients; the verdict on each page is the rule of thumb our analysts apply.