Skip to main content

Threat Intelligence Database

Comprehensive database of the latest cyber threats affecting organizations worldwide. Filter and search to find specific threat intelligence relevant to your organization.

Pro Console Lifetime

Stop chasing alerts. Route them.

Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.

Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)

View Plans & Pricing

API access activates after upgrading in Console -> Billing.

Breach by OffSeqOFFSEQFRIENDS — 25% OFF

Check if your credentials are on the dark web

Instant breach scanning across billions of leaked records. Free tier available.

Scan now

Filter Threats

Narrow down the results by type, severity, or affected countries

Search threats by title, CVE ID, or description. Maximum 100 characters.
Active filters (1):Package: pkg:maven/com.oracle/OraclePurchasing

Threat Intelligence

Click on any threat for detailed analysis and mitigation recommendations

Vulnerability in the Oracle Purchasing product of Oracle E-Business Suite (component: Other issue). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Purchasing. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Oracle Purchasing accessible data as well as unauthorized access to critical data or complete access to all Oracle Purchasing accessible data. CVSS 3.1 Base Score 8.1 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N).

Join the discussion

CVE-2026-87168 is a high-severity vulnerability in Oracle Purchasing, part of Oracle E-Business Suite. It affects versions 12.2.10 through 12.2.15. The flaw allows a low-privileged attacker with network access via HTTP to gain unauthorized creation, deletion, or modification capabilities on critical data within Oracle Purchasing. The vulnerability has a CVSS 3.1 base score of 8.1, indicating significant confidentiality and integrity impacts without affecting availability. Oracle has released a Critical Security Patch Update addressing this and many other vulnerabilities, strongly recommending patch application.

Join the discussion

CVE-2026-87167 is a high-severity vulnerability in Oracle Purchasing, part of Oracle E-Business Suite. It affects versions 12.2.11 through 12.2.15. A low privileged attacker with network access via HTTP can exploit this flaw to gain unauthorized creation, deletion, or modification access to critical data within Oracle Purchasing. The vulnerability has a CVSS 3.1 base score of 8.1, indicating significant confidentiality and integrity impacts but no availability impact. Oracle has included this vulnerability in its September 2026 Critical Security Patch Update, which contains numerous security fixes across multiple products.

Join the discussion

CVE-2026-87166 is a high-severity vulnerability in Oracle Purchasing, part of the Oracle E-Business Suite. It affects versions 12.2.3 through 12.2.15 and allows a low privileged attacker with network access via HTTP to compromise the application. Successful exploitation can lead to unauthorized creation, deletion, or modification of critical data, or unauthorized access to all data accessible through Oracle Purchasing. The vulnerability has a CVSS 3.1 base score of 8.1, indicating high impact on confidentiality and integrity without affecting availability. Oracle has released a Critical Security Patch Update in September 2026 addressing this and other vulnerabilities. Customers are strongly advised to apply the available patches promptly to mitigate risk.

Join the discussion

CVE-2026-87163 is a high-severity vulnerability in Oracle Purchasing, part of Oracle E-Business Suite versions 12.2.3 through 12.2.15. It allows a low-privileged attacker with network access via HTTP to compromise the Oracle Purchasing component, potentially leading to full takeover. The vulnerability has a CVSS 3.1 base score of 8.8, indicating high impact on confidentiality, integrity, and availability. Oracle has released security patches addressing this and many other vulnerabilities in their September 2026 Critical Security Patch Update. Customers are strongly advised to apply these patches promptly to mitigate the risk.

Join the discussion

CVE-2026-87127 is a high-severity vulnerability in Oracle Purchasing component of Oracle E-Business Suite versions 12.2.10 through 12.2.15. It allows a low privileged attacker with network access via HTTP to compromise Oracle Purchasing, potentially impacting additional products. Successful exploitation can lead to unauthorized access to critical data or complete access to all data accessible by Oracle Purchasing. The vulnerability has a CVSS 3.1 base score of 7.7, indicating significant confidentiality impact without affecting integrity or availability.

Join the discussion

CVE-2026-70947 is a vulnerability in Oracle Purchasing, part of Oracle E-Business Suite versions 12.2.3 through 12.2.15. It allows an unauthenticated attacker with network access via HTTP to gain unauthorized access to critical data or potentially all data accessible through Oracle Purchasing. The vulnerability has a CVSS 3.1 base score of 7.5, indicating a high severity with a significant confidentiality impact. Oracle has included this vulnerability in its August 2026 Critical Security Patch Update, which provides targeted security fixes across multiple Oracle products.

Join the discussion

CVE-2026-70811 is a high-severity vulnerability in Oracle Purchasing, part of the Oracle E-Business Suite. It affects versions 12.2.5 through 12.2.15. The flaw allows a low-privileged attacker with network access via HTTP to gain unauthorized creation, deletion, or modification access to critical data within Oracle Purchasing. The vulnerability has a CVSS 3.1 base score of 8.1, indicating high impact on confidentiality and integrity. Oracle has published a Critical Security Patch Update advisory addressing multiple vulnerabilities, including this one, and strongly recommends applying patches promptly.

Join the discussion

CVE-2026-70798 is a vulnerability in Oracle Purchasing, part of Oracle E-Business Suite versions 12.2.3 through 12.2.15. It allows a low privileged attacker with logon access to the infrastructure where Oracle Purchasing runs to compromise the product, potentially leading to full takeover. The vulnerability has a CVSS 3.1 base score of 7.8, indicating high severity with impacts on confidentiality, integrity, and availability.

Join the discussion

CVE-2026-70797 is a vulnerability in Oracle Purchasing, part of Oracle E-Business Suite versions 12.2.3 through 12.2.15. It allows a high privileged attacker with network access via HTTP to compromise Oracle Purchasing, potentially leading to full takeover of the product. The vulnerability has a CVSS 3.1 base score of 7.2, indicating high severity with impacts on confidentiality, integrity, and availability. Oracle has included this vulnerability in its August 2026 Critical Security Patch Update, which provides patches for affected versions.

Join the discussion

Showing 1 to 10 of 12 results

Filters:Package: pkg:maven/com.oracle/OraclePurchasing
Page 1 of 2
OffSeq TrainingCredly Certified

Lead Pen Test Professional

Technical5-day eLearningPECB Accredited
View courses