{"schema_version":1,"title":"Oracle JDeveloper vulnerabilities","summary":"Junglewise Threat Intelligence has tracked 19 vulnerabilities in Oracle JDeveloper: 0 in the last 7 days and 17 in the last 90 days, 2 of them critical and 1 exploited in the wild. The most recent, CVE-2026-83424, was published on 15 September 2026.","url":"https://junglewise.ai/threats/technologies/jdeveloper","json_url":"https://junglewise.ai/threats/technologies/jdeveloper.json","publisher":"Junglewise Threat Intelligence","license":"CC-BY-4.0","license_url":"https://creativecommons.org/licenses/by/4.0/","attribution":"Junglewise Threat Intelligence, https://junglewise.ai/threats/technologies/jdeveloper","sources":"NVD, GitHub Security Advisories, OSV, the CISA Known Exploited Vulnerabilities catalog, FIRST EPSS and vendor advisories","kind":"technology","counts":{"high":9,"all_time":19,"critical":2,"exploited":1,"last_7_days":0,"last_30_days":6,"last_90_days":17,"last_365_days":17},"latest":[{"cve":"CVE-2026-83424","cvss":7.5,"epss":0.0042,"slug":"cve-2026-83424-oracle-jdeveloper-unauthorized-information-disclosure","title":"Oracle JDeveloper unauthorized information disclosure","severity":"high","exploited":false,"published_at":"2026-09-15T20:18:51.02+00:00","url":"https://junglewise.ai/threats/cve-2026-83424-oracle-jdeveloper-unauthorized-information-disclosure"},{"cve":"CVE-2026-83423","cvss":8.8,"epss":0.0042,"slug":"cve-2026-83423-oracle-jdeveloper-authentication-bypass-in-security-framework","title":"Oracle JDeveloper authentication bypass in Security Framework","severity":"high","exploited":false,"published_at":"2026-09-15T20:18:50.907+00:00","url":"https://junglewise.ai/threats/cve-2026-83423-oracle-jdeveloper-authentication-bypass-in-security-framework"},{"cve":"CVE-2026-83306","cvss":8.8,"epss":0.0042,"slug":"cve-2026-83306-oracle-jdeveloper-privilege-escalation-in-resource-catalog","title":"Oracle JDeveloper privilege escalation in Resource Catalog Services","severity":"high","exploited":false,"published_at":"2026-09-15T20:18:43.53+00:00","url":"https://junglewise.ai/threats/cve-2026-83306-oracle-jdeveloper-privilege-escalation-in-resource-catalog"},{"cve":"CVE-2026-83266","cvss":8.2,"epss":0.0042,"slug":"cve-2026-83266-oracle-jdeveloper-authentication-bypass-in-resource-catalog","title":"Oracle JDeveloper authentication bypass in Resource Catalog Services","severity":"high","exploited":false,"published_at":"2026-09-15T20:18:38.957+00:00","url":"https://junglewise.ai/threats/cve-2026-83266-oracle-jdeveloper-authentication-bypass-in-resource-catalog"},{"cve":"CVE-2026-83067","cvss":8.1,"epss":0.0038,"slug":"cve-2026-83067-oracle-jdeveloper-data-manipulation-and-denial-of-service-in-adf","title":"Oracle JDeveloper data manipulation and denial of service in ADF Shared Components","severity":"high","exploited":false,"published_at":"2026-09-15T20:18:15.55+00:00","url":"https://junglewise.ai/threats/cve-2026-83067-oracle-jdeveloper-data-manipulation-and-denial-of-service-in-adf"},{"cve":"CVE-2026-73961","cvss":9.8,"epss":0.0048,"slug":"cve-2026-73961-oracle-jdeveloper-remote-code-execution-in-adf-faces","title":"Oracle JDeveloper remote code execution in ADF Faces","severity":"critical","exploited":false,"published_at":"2026-09-15T20:17:47.32+00:00","url":"https://junglewise.ai/threats/cve-2026-73961-oracle-jdeveloper-remote-code-execution-in-adf-faces"},{"cve":"CVE-2026-61061","cvss":7,"slug":"cve-2026-61061-oracle-jdeveloper-compromise-in-security-framework","title":"Oracle JDeveloper compromise in Security Framework","severity":"high","exploited":false,"published_at":"2026-07-21T22:18:36.843+00:00","url":"https://junglewise.ai/threats/cve-2026-61061-oracle-jdeveloper-compromise-in-security-framework"},{"cve":"CVE-2026-60629","cvss":7.5,"slug":"cve-2026-60629-oracle-jdeveloper-data-access-vulnerability-in-data-visualization","title":"Oracle JDeveloper data access vulnerability in Data Visualization Tools","severity":"high","exploited":false,"published_at":"2026-07-21T22:18:03.51+00:00","url":"https://junglewise.ai/threats/cve-2026-60629-oracle-jdeveloper-data-access-vulnerability-in-data-visualization"},{"cve":"CVE-2026-60622","cvss":7.5,"slug":"cve-2026-60622-oracle-jdeveloper-information-disclosure-in-security-framework","title":"Oracle JDeveloper information disclosure in Security Framework","severity":"high","exploited":false,"published_at":"2026-07-21T22:18:02.717+00:00","url":"https://junglewise.ai/threats/cve-2026-60622-oracle-jdeveloper-information-disclosure-in-security-framework"},{"cve":"CVE-2026-60354","cvss":3.7,"slug":"cve-2026-60354-oracle-jdeveloper-information-disclosure-in-data-visualization","title":"Oracle JDeveloper information disclosure in Data Visualization Tools","severity":"low","exploited":false,"published_at":"2026-07-21T22:17:38.59+00:00","url":"https://junglewise.ai/threats/cve-2026-60354-oracle-jdeveloper-information-disclosure-in-data-visualization"},{"cve":"CVE-2026-60353","cvss":3.1,"slug":"cve-2026-60353-oracle-jdeveloper-information-disclosure-in-adf-faces","title":"Oracle JDeveloper information disclosure in ADF Faces","severity":"low","exploited":false,"published_at":"2026-07-21T22:17:38.48+00:00","url":"https://junglewise.ai/threats/cve-2026-60353-oracle-jdeveloper-information-disclosure-in-adf-faces"},{"cve":"CVE-2026-60352","cvss":3.7,"slug":"cve-2026-60352-oracle-jdeveloper-information-disclosure-in-adf-faces","title":"Oracle JDeveloper information disclosure in ADF Faces","severity":"low","exploited":false,"published_at":"2026-07-21T22:17:38.363+00:00","url":"https://junglewise.ai/threats/cve-2026-60352-oracle-jdeveloper-information-disclosure-in-adf-faces"},{"cve":"CVE-2026-60351","cvss":4.8,"slug":"cve-2026-60351-oracle-jdeveloper-unauthorized-data-access-in-adf-faces","title":"Oracle JDeveloper unauthorized data access in ADF Faces","severity":"medium","exploited":false,"published_at":"2026-07-21T22:17:38.25+00:00","url":"https://junglewise.ai/threats/cve-2026-60351-oracle-jdeveloper-unauthorized-data-access-in-adf-faces"},{"cve":"CVE-2026-60350","cvss":6.5,"slug":"cve-2026-60350-oracle-jdeveloper-information-disclosure-in-adf-faces","title":"Oracle JDeveloper information disclosure in ADF Faces","severity":"medium","exploited":false,"published_at":"2026-07-21T22:17:38.143+00:00","url":"https://junglewise.ai/threats/cve-2026-60350-oracle-jdeveloper-information-disclosure-in-adf-faces"},{"cve":"CVE-2026-60349","cvss":5.9,"slug":"cve-2026-60349-oracle-jdeveloper-information-disclosure-in-java-business-objects","title":"Oracle JDeveloper information disclosure in Java Business Objects","severity":"medium","exploited":false,"published_at":"2026-07-21T22:17:38.03+00:00","url":"https://junglewise.ai/threats/cve-2026-60349-oracle-jdeveloper-information-disclosure-in-java-business-objects"},{"cve":"CVE-2026-60348","cvss":5.9,"slug":"cve-2026-60348-oracle-jdeveloper-information-disclosure-in-adf-faces","title":"Oracle JDeveloper information disclosure in ADF Faces","severity":"medium","exploited":false,"published_at":"2026-07-21T22:17:37.92+00:00","url":"https://junglewise.ai/threats/cve-2026-60348-oracle-jdeveloper-information-disclosure-in-adf-faces"},{"cve":"CVE-2026-60345","cvss":7.2,"slug":"cve-2026-60345-oracle-jdeveloper-takeover-in-adf-shared-components","title":"Oracle JDeveloper takeover in ADF Shared Components","severity":"high","exploited":false,"published_at":"2026-07-21T22:17:37.577+00:00","url":"https://junglewise.ai/threats/cve-2026-60345-oracle-jdeveloper-takeover-in-adf-shared-components"},{"cve":"CVE-2022-21445","cvss":9.8,"slug":"cve-2022-21445-oracle-adf-faces-deserialization-of-untrusted-data-vulnerability","title":"Oracle ADF Faces Deserialization of Untrusted Data Vulnerability","severity":"critical","exploited":true,"published_at":"2024-09-18T00:00:00+00:00","url":"https://junglewise.ai/threats/cve-2022-21445-oracle-adf-faces-deserialization-of-untrusted-data-vulnerability"},{"cve":"CVE-2017-3255","cvss":5.8,"slug":"cve-2017-3255-oracle-jdeveloper-information-disclosure-in-adf-faces","title":"Oracle JDeveloper information disclosure in ADF Faces","severity":"medium","exploited":false,"published_at":"2017-01-27T22:59:02.757+00:00","url":"https://junglewise.ai/threats/cve-2017-3255-oracle-jdeveloper-information-disclosure-in-adf-faces"}],"weekly":[{"week":"2026-07-06","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-13","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-20","critical":0,"exploited":0,"vulnerabilities":11},{"week":"2026-07-27","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-03","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-10","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-17","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-24","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-31","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-07","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-14","critical":1,"exploited":0,"vulnerabilities":6},{"week":"2026-09-21","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-28","critical":0,"exploited":0,"vulnerabilities":0}],"related":[{"name":"Oracle Hyperion Financial Management","slug":"hyperion-financial-management","vulnerabilities":129,"url":"https://junglewise.ai/threats/technologies/hyperion-financial-management"},{"name":"Oracle Coherence","slug":"coherence","vulnerabilities":113,"url":"https://junglewise.ai/threats/technologies/coherence"},{"name":"Oracle E-Business Suite","slug":"e-business-suite","vulnerabilities":83,"url":"https://junglewise.ai/threats/technologies/e-business-suite"},{"name":"Oracle Commerce Guided Search","slug":"commerce-guided-search","vulnerabilities":82,"url":"https://junglewise.ai/threats/technologies/commerce-guided-search"},{"name":"Oracle Commerce Experience Manager","slug":"commerce-experience-manager","vulnerabilities":81,"url":"https://junglewise.ai/threats/technologies/commerce-experience-manager"},{"name":"Oracle WebCenter Content","slug":"webcenter-content","vulnerabilities":73,"url":"https://junglewise.ai/threats/technologies/webcenter-content"},{"name":"Oracle VirtualBox","slug":"virtualbox","vulnerabilities":70,"url":"https://junglewise.ai/threats/technologies/virtualbox"},{"name":"Oracle Helidon","slug":"helidon","vulnerabilities":68,"url":"https://junglewise.ai/threats/technologies/helidon"},{"name":"Oracle MySQL Server","slug":"mysql-server","vulnerabilities":60,"url":"https://junglewise.ai/threats/technologies/mysql-server"},{"name":"Oracle Hyperion Data Relationship Management","slug":"hyperion-data-relationship-management","vulnerabilities":56,"url":"https://junglewise.ai/threats/technologies/hyperion-data-relationship-management"},{"name":"Oracle WebLogic Server","slug":"weblogic-server","vulnerabilities":55,"url":"https://junglewise.ai/threats/technologies/weblogic-server"},{"name":"Oracle Java SE","slug":"java-se","vulnerabilities":52,"url":"https://junglewise.ai/threats/technologies/java-se"}],"technology":{"hub":true,"name":"Oracle JDeveloper","slug":"jdeveloper","vendor":{"name":"Oracle","slug":"oracle","url":"https://junglewise.ai/threats/vendors/oracle"},"aliases":[],"category":"IDE","homepage":"https://www.oracle.com/application-development/technologies/jdeveloper.html","description":"An integrated development environment for building service-oriented applications using Java and XML.","url":"https://junglewise.ai/threats/technologies/jdeveloper"},"most_severe":[{"cve":"CVE-2022-21445","cvss":9.8,"slug":"cve-2022-21445-oracle-adf-faces-deserialization-of-untrusted-data-vulnerability","title":"Oracle ADF Faces Deserialization of Untrusted Data Vulnerability","severity":"critical","exploited":true,"published_at":"2024-09-18T00:00:00+00:00","url":"https://junglewise.ai/threats/cve-2022-21445-oracle-adf-faces-deserialization-of-untrusted-data-vulnerability"},{"cve":"CVE-2026-73961","cvss":9.8,"epss":0.0048,"slug":"cve-2026-73961-oracle-jdeveloper-remote-code-execution-in-adf-faces","title":"Oracle JDeveloper remote code execution in ADF Faces","severity":"critical","exploited":false,"published_at":"2026-09-15T20:17:47.32+00:00","url":"https://junglewise.ai/threats/cve-2026-73961-oracle-jdeveloper-remote-code-execution-in-adf-faces"},{"cve":"CVE-2026-83423","cvss":8.8,"epss":0.0042,"slug":"cve-2026-83423-oracle-jdeveloper-authentication-bypass-in-security-framework","title":"Oracle JDeveloper authentication bypass in Security Framework","severity":"high","exploited":false,"published_at":"2026-09-15T20:18:50.907+00:00","url":"https://junglewise.ai/threats/cve-2026-83423-oracle-jdeveloper-authentication-bypass-in-security-framework"},{"cve":"CVE-2026-83306","cvss":8.8,"epss":0.0042,"slug":"cve-2026-83306-oracle-jdeveloper-privilege-escalation-in-resource-catalog","title":"Oracle JDeveloper privilege escalation in Resource Catalog Services","severity":"high","exploited":false,"published_at":"2026-09-15T20:18:43.53+00:00","url":"https://junglewise.ai/threats/cve-2026-83306-oracle-jdeveloper-privilege-escalation-in-resource-catalog"},{"cve":"CVE-2026-83266","cvss":8.2,"epss":0.0042,"slug":"cve-2026-83266-oracle-jdeveloper-authentication-bypass-in-resource-catalog","title":"Oracle JDeveloper authentication bypass in Resource Catalog Services","severity":"high","exploited":false,"published_at":"2026-09-15T20:18:38.957+00:00","url":"https://junglewise.ai/threats/cve-2026-83266-oracle-jdeveloper-authentication-bypass-in-resource-catalog"},{"cve":"CVE-2026-83067","cvss":8.1,"epss":0.0038,"slug":"cve-2026-83067-oracle-jdeveloper-data-manipulation-and-denial-of-service-in-adf","title":"Oracle JDeveloper data manipulation and denial of service in ADF Shared Components","severity":"high","exploited":false,"published_at":"2026-09-15T20:18:15.55+00:00","url":"https://junglewise.ai/threats/cve-2026-83067-oracle-jdeveloper-data-manipulation-and-denial-of-service-in-adf"},{"cve":"CVE-2026-83424","cvss":7.5,"epss":0.0042,"slug":"cve-2026-83424-oracle-jdeveloper-unauthorized-information-disclosure","title":"Oracle JDeveloper unauthorized information disclosure","severity":"high","exploited":false,"published_at":"2026-09-15T20:18:51.02+00:00","url":"https://junglewise.ai/threats/cve-2026-83424-oracle-jdeveloper-unauthorized-information-disclosure"},{"cve":"CVE-2026-60629","cvss":7.5,"slug":"cve-2026-60629-oracle-jdeveloper-data-access-vulnerability-in-data-visualization","title":"Oracle JDeveloper data access vulnerability in Data Visualization Tools","severity":"high","exploited":false,"published_at":"2026-07-21T22:18:03.51+00:00","url":"https://junglewise.ai/threats/cve-2026-60629-oracle-jdeveloper-data-access-vulnerability-in-data-visualization"},{"cve":"CVE-2026-60622","cvss":7.5,"slug":"cve-2026-60622-oracle-jdeveloper-information-disclosure-in-security-framework","title":"Oracle JDeveloper information disclosure in Security Framework","severity":"high","exploited":false,"published_at":"2026-07-21T22:18:02.717+00:00","url":"https://junglewise.ai/threats/cve-2026-60622-oracle-jdeveloper-information-disclosure-in-security-framework"},{"cve":"CVE-2026-60345","cvss":7.2,"slug":"cve-2026-60345-oracle-jdeveloper-takeover-in-adf-shared-components","title":"Oracle JDeveloper takeover in ADF Shared Components","severity":"high","exploited":false,"published_at":"2026-07-21T22:17:37.577+00:00","url":"https://junglewise.ai/threats/cve-2026-60345-oracle-jdeveloper-takeover-in-adf-shared-components"}],"generated_at":"2026-09-28T03:07:00.154823+00:00"}