VDB
GCVE-110-NCSC-2026-23
GCVE-110-NCSC-2026-23
Advisory PublishedCVSS 9.8/10
Critical vulnerabilities in Oracle Communications Cloud Native Core and Siebel CRM allow unauthenticated access, while SQLite versions prior to 3.50.2 face memory corruption risks and other security issues.
Weaknesses (CWE)
CWE-197Numeric Truncation ErrorCWE-125Out-of-bounds ReadCWE-22Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')CWE-674Uncontrolled RecursionCWE-770Allocation of Resources Without Limits or ThrottlingCWE-611Improper Restriction of XML External Entity Reference
Risk Scores
CVSS 3.1
9.8/10
Critical · CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Affected Products
| Vendor | Product | Versions | Platforms |
|---|---|---|---|
| Oracle | vers:unknown/* | — | — |
Browse GCVE Records
74,608 records in the GCVE database · Updated July 24, 2026
No matching records found.
Explore Further
Investigate this vulnerability in the interactive console or download the raw GCVE record.