VDB

GCVE-110-NCSC-2026-374

GCVE-110-NCSC-2026-374
Advisory PublishedCVSS 7.5/10
Vulnetix · Advisory published September 16, 2026
A vulnerability in Oracle Commerce Guided Search and Experience Manager 11.4.0 allows unauthenticated network attackers to potentially take over the system, impacting confidentiality, integrity, and availability with a CVSS 3.1 score of 7.5.

Risk Scores

CVSS 3.1
7.5/10
High · CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H

Affected Products

VendorProductVersionsPlatforms
Oracle Corporationvers:unknown/*
Oraclevers:unknown/*

References

advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory

Browse GCVE Records

406 records in the GCVE database · Updated September 17, 2026

No matching records found.

Explore Further

Investigate this vulnerability in the interactive console or download the raw GCVE record.

$ Console Community · 100/wk Open console ›