SOC status:Duty analyst on shift

UK Cyber Defence

Tools / CVE Explorer

Which vulnerabilities actually matter?

Every CVE with its CVSS severity, EPSS probability of exploitation and CISA KEV status side by side, refreshed daily from NVD, FIRST and CISA — plus a plain-English verdict on whether it needs an emergency change or the normal patch cycle.

395,947 CVEs1,717 in CISA KEV17,392 with EPSS ≥ 10%25,049 with a public exploitUpdated 21 September 2026

39,283 results · page 96 of 786

CVESummaryPriorityPublished
CVE-2026-46918Vulnerability in the Oracle Process Manufacturing Product Development product of Oracle E-Business Suite (component: Internal Operations).CRITICAL 9.9EPSS 0.41%17 June 2026
CVE-2026-46913Vulnerability in the JD Edwards EnterpriseOne Tools product of Oracle JD Edwards (component: Installation Security).CRITICAL 9.3EPSS 0.14%17 June 2026
CVE-2026-46912Vulnerability in the JD Edwards EnterpriseOne Tools product of Oracle JD Edwards (component: Web Runtime Security).CRITICAL 9.3EPSS 0.27%17 June 2026
CVE-2026-46911Vulnerability in the JD Edwards EnterpriseOne Project Costing product of Oracle JD Edwards (component: Job Costing).CRITICAL 9.6EPSS 0.27%17 June 2026
CVE-2026-46910Vulnerability in the JD Edwards EnterpriseOne Tools product of Oracle JD Edwards (component: Enterprise Infrastructure Security).CRITICAL 9.1EPSS 0.35%17 June 2026
CVE-2026-46909Vulnerability in the JD Edwards EnterpriseOne Tools product of Oracle JD Edwards (component: Enterprise Infrastructure Security).CRITICAL 9.8EPSS 0.48%17 June 2026
CVE-2026-46908Vulnerability in the JD Edwards EnterpriseOne Accounts Payable product of Oracle JD Edwards (component: Accounts Payable).CRITICAL 9.9EPSS 0.41%17 June 2026
CVE-2026-46907Vulnerability in the JD Edwards EnterpriseOne Order Promising product of Oracle JD Edwards (component: Order Promising Integration).CRITICAL 9.9EPSS 0.41%17 June 2026
CVE-2026-46906Vulnerability in the JD Edwards EnterpriseOne Tools product of Oracle JD Edwards (component: Enterprise Infrastructure Security).CRITICAL 9.6EPSS 0.34%17 June 2026
CVE-2026-46905Vulnerability in the JD Edwards EnterpriseOne Tools product of Oracle JD Edwards (component: Web Runtime Security).CRITICAL 9.8EPSS 0.48%17 June 2026
CVE-2026-46904Vulnerability in the JD Edwards EnterpriseOne Tools product of Oracle JD Edwards (component: Enterprise Infrastructure Security).CRITICAL 9.8EPSS 0.47%17 June 2026
CVE-2026-46902Vulnerability in the Oracle Enterprise Command Center Framework product of Oracle E-Business Suite (component: Core).CRITICAL 9.8EPSS 0.47%17 June 2026
CVE-2026-46901Vulnerability in the Oracle Enterprise Command Center Framework product of Oracle E-Business Suite (component: Core).CRITICAL 9.9EPSS 0.37%17 June 2026
CVE-2026-46900Vulnerability in the Oracle Enterprise Command Center Framework product of Oracle E-Business Suite (component: Core).CRITICAL 9.9EPSS 0.40%17 June 2026
CVE-2026-46899Vulnerability in the Oracle Enterprise Command Center Framework product of Oracle E-Business Suite (component: Core).CRITICAL 9.6EPSS 0.34%17 June 2026
CVE-2026-46897Vulnerability in the Oracle Enterprise Command Center Framework product of Oracle E-Business Suite (component: Core).CRITICAL 9.9EPSS 0.37%17 June 2026
CVE-2026-46896Vulnerability in the Oracle Enterprise Command Center Framework product of Oracle E-Business Suite (component: Core).CRITICAL 9.1EPSS 0.46%17 June 2026
CVE-2026-46895Vulnerability in the Oracle Enterprise Command Center Framework product of Oracle E-Business Suite (component: Core).CRITICAL 9.9EPSS 0.41%17 June 2026
CVE-2026-46893Vulnerability in the JD Edwards EnterpriseOne General Ledger product of Oracle JD Edwards (component: E1 Foundation).CRITICAL 9.9EPSS 0.30%17 June 2026
CVE-2026-46892Vulnerability in the JD Edwards EnterpriseOne Human Resources Management product of Oracle JD Edwards (component: Human Resources).CRITICAL 9.1EPSS 0.40%17 June 2026
CVE-2026-46890Vulnerability in the Siebel Apps - Marketing product of Oracle Siebel CRM (component: Marketing).CRITICAL 9.8EPSS 0.48%17 June 2026
CVE-2026-46889Vulnerability in the Siebel Apps - Marketing product of Oracle Siebel CRM (component: Marketing).CRITICAL 9.8EPSS 0.47%17 June 2026
CVE-2026-46887Vulnerability in the Siebel Apps - Marketing product of Oracle Siebel CRM (component: Marketing).CRITICAL 9.8EPSS 0.47%17 June 2026
CVE-2026-46884Vulnerability in the Siebel Apps - Marketing product of Oracle Siebel CRM (component: Marketing).CRITICAL 9.8EPSS 0.47%17 June 2026
CVE-2026-46883Vulnerability in the JD Edwards EnterpriseOne Tools product of Oracle JD Edwards (component: Enterprise Infrastructure Security).CRITICAL 9.8EPSS 0.47%17 June 2026
CVE-2026-46882Vulnerability in the JD Edwards EnterpriseOne Tools product of Oracle JD Edwards (component: Enterprise Infrastructure Security).CRITICAL 9.8EPSS 0.47%17 June 2026
CVE-2026-46881Vulnerability in the JD Edwards EnterpriseOne Tools product of Oracle JD Edwards (component: Enterprise Infrastructure Security).CRITICAL 9.8EPSS 0.47%17 June 2026
CVE-2026-46880Vulnerability in the JD Edwards EnterpriseOne Tools product of Oracle JD Edwards (component: Enterprise Infrastructure Security).CRITICAL 9.8EPSS 0.48%17 June 2026
CVE-2026-46879Vulnerability in the JD Edwards EnterpriseOne Tools product of Oracle JD Edwards (component: Enterprise Infrastructure Security).CRITICAL 9.8EPSS 0.48%17 June 2026
CVE-2026-46878Vulnerability in the JD Edwards EnterpriseOne Tools product of Oracle JD Edwards (component: Enterprise Infrastructure Security).CRITICAL 9.8EPSS 0.48%17 June 2026
CVE-2026-46875Vulnerability in the Oracle Enterprise Manager Base Platform product of Oracle Enterprise Manager (component: Deployment Library).CRITICAL 9.1EPSS 0.46%17 June 2026
CVE-2026-46872Vulnerability in the Oracle Enterprise Manager Base Platform product of Oracle Enterprise Manager (component: Install).CRITICAL 9.0EPSS 0.28%17 June 2026
CVE-2026-46861Vulnerability in the MySQL NDB Cluster product of Oracle MySQL (component: Cluster: NDB Operator).CRITICAL 9.6EPSS 0.36%17 June 2026
CVE-2026-46860Vulnerability in the MySQL Router product of Oracle MySQL (component: Router: General).CRITICAL 9.8EPSS 0.47%17 June 2026
CVE-2026-46859Vulnerability in the Oracle Agile PLM product of Oracle Supply Chain (component: Security).CRITICAL 9.8EPSS 0.51%17 June 2026
CVE-2026-46858Vulnerability in the APM - Application Performance Management product of Oracle Enterprise Manager (component: JADM, JVM Diagnostics).CRITICAL 9.1EPSS 0.45%17 June 2026
CVE-2026-46857Vulnerability in the Oracle Enterprise Manager Base Platform product of Oracle Enterprise Manager (component: Oracle Management Service).CRITICAL 9.8EPSS 0.51%17 June 2026
CVE-2026-46856Vulnerability in the Oracle Enterprise Manager Base Platform product of Oracle Enterprise Manager (component: Metadata Plugin).CRITICAL 9.6EPSS 0.47%17 June 2026
CVE-2026-46855Vulnerability in the Oracle Enterprise Manager Base Platform product of Oracle Enterprise Manager (component: Metadata Plugin).CRITICAL 9.9EPSS 0.44%17 June 2026
CVE-2026-46854Vulnerability in the Oracle Enterprise Manager Base Platform product of Oracle Enterprise Manager (component: Target Management).CRITICAL 9.9EPSS 0.41%17 June 2026
CVE-2026-46853Vulnerability in the Oracle Enterprise Manager Base Platform product of Oracle Enterprise Manager (component: Metadata Plugin).CRITICAL 9.6EPSS 0.48%17 June 2026
CVE-2026-46852Vulnerability in the Oracle Enterprise Manager Base Platform product of Oracle Enterprise Manager (component: Metadata Plugin).CRITICAL 9.9EPSS 0.40%17 June 2026
CVE-2026-46850Vulnerability in the MySQL Shell product of Oracle MySQL (component: Shell for VS Code).CRITICAL 9.9EPSS 0.52%17 June 2026
CVE-2026-46847Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion Middleware (component: Runtime Tools).CRITICAL 9.9EPSS 0.41%17 June 2026
CVE-2026-46846Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion Middleware (component: Security Framework).CRITICAL 10.0EPSS 0.36%17 June 2026
CVE-2026-46845Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion Middleware (component: Security Framework).CRITICAL 9.8EPSS 0.47%17 June 2026
CVE-2026-46844Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion Middleware (component: Security Framework).CRITICAL 9.9EPSS 0.40%17 June 2026
CVE-2026-46838Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion Middleware (component: Security Framework).CRITICAL 9.9EPSS 0.41%17 June 2026
CVE-2026-46832Vulnerability in the Oracle Enterprise Manager Base Platform product of Oracle Enterprise Manager (component: Discovery Framework).CRITICAL 9.9EPSS 0.41%17 June 2026
CVE-2026-46814Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion Middleware (component: Security Framework).CRITICAL 9.9EPSS 0.40%17 June 2026

How to read this

CVSS measures how bad a vulnerability could be if exploited. EPSS (from FIRST) estimates the probability it will actually be exploited in the next thirty days. KEV is CISA’s list of vulnerabilities that are being exploited right now. EXPLOIT means a working exploit is published in Exploit-DB, so the technical barrier is gone. Patch KEV entries first, then anything with a public exploit or an EPSS above 10 per cent, then work down by CVSS in your normal cycle.

Data is refreshed daily from the NVD, FIRST EPSS, the CISA KEV catalogue and the Exploit-DB repository. Every record can be downloaded as JSON from its page. Our SOC uses the same table to prioritise patching for clients; the verdict on each page is the rule of thumb our analysts apply.