Skip to main content

Threat Intelligence Database

Comprehensive database of the latest cyber threats affecting organizations worldwide. Filter and search to find specific threat intelligence relevant to your organization.

Pro Console Lifetime

Stop chasing alerts. Route them.

Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.

Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)

View Plans & Pricing

API access activates after upgrading in Console -> Billing.

Breach by OffSeqOFFSEQFRIENDS — 25% OFF

Check if your credentials are on the dark web

Instant breach scanning across billions of leaked records. Free tier available.

Scan now

Filter Threats

Narrow down the results by type, severity, or affected countries

Search threats by title, CVE ID, or description. Maximum 100 characters.
Active filters (1):Package: pkg:maven/com.oracle.oraclewebservices/manager

Threat Intelligence

Click on any threat for detailed analysis and mitigation recommendations

A vulnerability in Oracle Access Manager (component: Access SDK) affects versions 12.2.1.4.0 and 14.1.2.1.0. The flaw allows a low privileged attacker with network access via HTTP to cause a partial denial of service. The vulnerability has a low CVSS score of 3.1, indicating limited impact on availability without confidentiality or integrity compromise. Oracle has released security patches addressing this and many other vulnerabilities in their September 2026 Critical Security Patch Update.

Join the discussion

A critical vulnerability exists in Oracle Access Manager (component: Authentication Engine) versions 12.2.1.4.0 and 14.1.2.1.0. This vulnerability allows a high privileged attacker with network access via HTTP to compromise Oracle Access Manager, potentially leading to a full takeover of the product. The vulnerability impacts confidentiality, integrity, and availability with a CVSS 3.1 base score of 9.1. Oracle has released security patches addressing this issue in their September 2026 Critical Security Patch Update.

Join the discussion

CVE-2026-83002 is a vulnerability in Oracle Access Manager's Authentication Engine affecting versions 12.2.1.4.0 and 14.1.2.1.0. It allows a low privileged attacker with network access via HTTP to potentially take over Oracle Access Manager. The vulnerability has a high CVSS score of 8.5, impacting confidentiality, integrity, and availability. Successful exploitation could also affect additional Oracle products due to scope change. Oracle has released patches for this vulnerability as part of its September 2026 Critical Security Patch Update.

Join the discussion

A critical vulnerability exists in Oracle Access Manager (component: Authentication Engine) affecting versions 12.2.1.4.0 and 14.1.2.1.0. This vulnerability allows a low privileged attacker with network access via HTTPS to compromise Oracle Access Manager, potentially leading to unauthorized creation, deletion, or modification of critical data. The vulnerability has a CVSS 3.1 base score of 9.6, indicating high confidentiality and integrity impacts. Oracle has released security patches addressing this vulnerability as part of its September 2026 Critical Security Patch Update.

Join the discussion

A vulnerability in Oracle Access Manager's Authentication Engine affects versions 12.2.1.4.0 and 14.1.2.0.0. It allows an unauthenticated attacker with network access via HTTP to potentially take over Oracle Access Manager. The vulnerability has a high CVSS score of 8.1, indicating significant confidentiality, integrity, and availability impacts. Oracle has released security patches addressing this issue in their September 2026 Critical Security Patch Update.

Join the discussion

A critical vulnerability exists in Oracle Access Manager's Authentication Engine affecting versions 12.2.1.4.0 and 14.1.2.1.0. This vulnerability allows a highly privileged attacker with network access via HTTP to potentially take over Oracle Access Manager, impacting confidentiality, integrity, and availability. The vulnerability has a CVSS 3.1 base score of 9.1. Oracle has released a Critical Security Patch Update in September 2026 addressing this and many other vulnerabilities. Customers are strongly advised to apply the available patches promptly to mitigate the risk.

Join the discussion

A vulnerability exists in the Oracle Access Manager component of Oracle Fusion Middleware affecting versions 12.2.1.4.0 and 14.1.2.1.0. This vulnerability allows a high privileged attacker with network access via HTTP to compromise Oracle Access Manager, potentially leading to unauthorized creation, deletion, or modification of critical data. The vulnerability has a CVSS 3.1 base score of 8.7, indicating high severity with significant confidentiality and integrity impacts. Oracle has released security patches addressing this vulnerability as part of its September 2026 Critical Security Patch Update.

Join the discussion

A vulnerability exists in the Oracle Access Manager component of Oracle Fusion Middleware (Authentication Engine) affecting versions 12.2.1.4.0 and 14.1.2.1.0. This vulnerability allows an unauthenticated attacker with network access via HTTP to compromise Oracle Access Manager, potentially leading to unauthorized access to critical data. The vulnerability has a CVSS 3.1 base score of 8.6, indicating high severity with a significant confidentiality impact. Oracle has released security patches addressing this and many other vulnerabilities in their September 2026 Critical Security Patch Update. Customers are strongly advised to apply these patches promptly to mitigate the risk.

Join the discussion

A critical vulnerability exists in Oracle Access Manager's Authentication Engine affecting versions 12.2.1.4.0 and 14.1.2.1.0. This vulnerability allows a low-privileged attacker with network access via HTTP to compromise the system, potentially leading to unauthorized creation, deletion, or modification of critical data, unauthorized access to all accessible data, and partial denial of service. The vulnerability has a CVSS 3.1 base score of 9.9, indicating severe confidentiality, integrity, and availability impacts. Oracle has released security patches addressing this issue as part of its September 2026 Critical Security Patch Update. Customers are strongly advised to apply these patches promptly to mitigate the risk.

Join the discussion

Vulnerability in the Oracle Access Manager product of Oracle Fusion Middleware (component: Access SDK). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.1.0. Difficult to exploit vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Access Manager. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Oracle Access Manager. CVSS 3.1 Base Score 3.1 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:L).

Join the discussion

Showing 1 to 10 of 48 results

Filters:Package: pkg:maven/com.oracle.oraclewebservices/manager
Page 1 of 5
OffSeq TrainingCredly Certified

Lead Pen Test Professional

Technical5-day eLearningPECB Accredited
View courses