Vulnerabilities (CVE)

Filtered by vendor Oracle Subscribe
Filtered by product Commerce Guided Search And Experience Manager
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-20190 5 Apache, Debian, Fasterxml and 2 more 8 Nifi, Debian Linux, Jackson-databind and 5 more 2024-02-28 8.3 HIGH 8.1 HIGH
A flaw was found in jackson-databind before 2.9.10.7. FasterXML mishandles the interaction between serialization gadgets and typing. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.
CVE-2015-0495 1 Oracle 1 Commerce Guided Search And Experience Manager 2024-02-28 7.5 HIGH N/A
Unspecified vulnerability in the Oracle Commerce Guided Search / Oracle Commerce Experience Manager component in Oracle Commerce Platform 3.x and 11.x allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Workbench.