{"schema_version":1,"title":"Oracle WebCenter Portal vulnerabilities","summary":"Junglewise Threat Intelligence has tracked 41 vulnerabilities in Oracle WebCenter Portal: 0 in the last 7 days and 31 in the last 90 days, 26 of them critical and 0 exploited in the wild. The most recent, CVE-2026-83065, was published on 15 September 2026.","url":"https://junglewise.ai/threats/technologies/webcenter-portal","json_url":"https://junglewise.ai/threats/technologies/webcenter-portal.json","publisher":"Junglewise Threat Intelligence","license":"CC-BY-4.0","license_url":"https://creativecommons.org/licenses/by/4.0/","attribution":"Junglewise Threat Intelligence, https://junglewise.ai/threats/technologies/webcenter-portal","sources":"NVD, GitHub Security Advisories, OSV, the CISA Known Exploited Vulnerabilities catalog, FIRST EPSS and vendor advisories","kind":"technology","counts":{"high":15,"all_time":41,"critical":26,"exploited":0,"last_7_days":0,"last_30_days":24,"last_90_days":31,"last_365_days":41},"latest":[{"cve":"CVE-2026-83065","cvss":7.5,"epss":0.0024,"slug":"cve-2026-83065-oracle-webcenter-portal-compromise-via-adjacent-network-access","title":"Oracle WebCenter Portal compromise via adjacent network access","severity":"high","exploited":false,"published_at":"2026-09-15T20:18:15.323+00:00","url":"https://junglewise.ai/threats/cve-2026-83065-oracle-webcenter-portal-compromise-via-adjacent-network-access"},{"cve":"CVE-2026-83064","cvss":9.1,"epss":0.0046,"slug":"cve-2026-83064-oracle-webcenter-portal-privilege-escalation-in-runtime-tools","title":"Oracle WebCenter Portal privilege escalation in Runtime Tools","severity":"critical","exploited":false,"published_at":"2026-09-15T20:18:15.15+00:00","url":"https://junglewise.ai/threats/cve-2026-83064-oracle-webcenter-portal-privilege-escalation-in-runtime-tools"},{"cve":"CVE-2026-83053","cvss":8.8,"epss":0.0042,"slug":"cve-2026-83053-oracle-webcenter-portal-privilege-escalation-in-runtime-tools","title":"Oracle WebCenter Portal privilege escalation in Runtime Tools","severity":"high","exploited":false,"published_at":"2026-09-15T20:18:13.89+00:00","url":"https://junglewise.ai/threats/cve-2026-83053-oracle-webcenter-portal-privilege-escalation-in-runtime-tools"},{"cve":"CVE-2026-83052","cvss":7.6,"epss":0.0034,"slug":"cve-2026-83052-oracle-webcenter-portal-privilege-escalation-in-runtime-tools","title":"Oracle WebCenter Portal privilege escalation in Runtime Tools","severity":"high","exploited":false,"published_at":"2026-09-15T20:18:13.77+00:00","url":"https://junglewise.ai/threats/cve-2026-83052-oracle-webcenter-portal-privilege-escalation-in-runtime-tools"},{"cve":"CVE-2026-83051","cvss":7.5,"epss":0.0041,"slug":"cve-2026-83051-oracle-webcenter-portal-unauthorized-data-access-in-runtime-tools","title":"Oracle WebCenter Portal unauthorized data access in Runtime Tools","severity":"high","exploited":false,"published_at":"2026-09-15T20:18:13.657+00:00","url":"https://junglewise.ai/threats/cve-2026-83051-oracle-webcenter-portal-unauthorized-data-access-in-runtime-tools"},{"cve":"CVE-2026-83050","cvss":7.1,"epss":0.003,"slug":"cve-2026-83050-oracle-webcenter-portal-authentication-bypass-in-runtime-tools","title":"Oracle WebCenter Portal authentication bypass in Runtime Tools","severity":"high","exploited":false,"published_at":"2026-09-15T20:18:13.54+00:00","url":"https://junglewise.ai/threats/cve-2026-83050-oracle-webcenter-portal-authentication-bypass-in-runtime-tools"},{"cve":"CVE-2026-83049","cvss":8.5,"epss":0.003,"slug":"cve-2026-83049-oracle-webcenter-portal-authentication-bypass-in-security","title":"Oracle WebCenter Portal authentication bypass in Security Framework","severity":"high","exploited":false,"published_at":"2026-09-15T20:18:13.427+00:00","url":"https://junglewise.ai/threats/cve-2026-83049-oracle-webcenter-portal-authentication-bypass-in-security"},{"cve":"CVE-2026-83048","cvss":7.7,"epss":0.0035,"slug":"cve-2026-83048-oracle-webcenter-portal-privilege-escalation-in-runtime-tools","title":"Oracle WebCenter Portal privilege escalation in Runtime Tools","severity":"high","exploited":false,"published_at":"2026-09-15T20:18:13.313+00:00","url":"https://junglewise.ai/threats/cve-2026-83048-oracle-webcenter-portal-privilege-escalation-in-runtime-tools"},{"cve":"CVE-2026-83047","cvss":8.2,"epss":0.0035,"slug":"cve-2026-83047-oracle-webcenter-portal-authentication-bypass-via-http","title":"Oracle WebCenter Portal authentication bypass via HTTP","severity":"high","exploited":false,"published_at":"2026-09-15T20:18:13.203+00:00","url":"https://junglewise.ai/threats/cve-2026-83047-oracle-webcenter-portal-authentication-bypass-via-http"},{"cve":"CVE-2026-83046","cvss":7.1,"epss":0.0038,"slug":"cve-2026-83046-oracle-webcenter-portal-privilege-escalation-in-runtime-tools","title":"Oracle WebCenter Portal privilege escalation in Runtime Tools","severity":"high","exploited":false,"published_at":"2026-09-15T20:18:13.087+00:00","url":"https://junglewise.ai/threats/cve-2026-83046-oracle-webcenter-portal-privilege-escalation-in-runtime-tools"},{"cve":"CVE-2026-83045","cvss":8.5,"epss":0.003,"slug":"cve-2026-83045-oracle-webcenter-portal-privilege-escalation-in-runtime-tools","title":"Oracle WebCenter Portal privilege escalation in Runtime Tools","severity":"high","exploited":false,"published_at":"2026-09-15T20:18:12.973+00:00","url":"https://junglewise.ai/threats/cve-2026-83045-oracle-webcenter-portal-privilege-escalation-in-runtime-tools"},{"cve":"CVE-2026-83043","cvss":9.6,"epss":0.0042,"slug":"cve-2026-83043-oracle-webcenter-portal-remote-code-execution-in-composer","title":"Oracle WebCenter Portal remote code execution in Composer","severity":"critical","exploited":false,"published_at":"2026-09-15T20:18:12.743+00:00","url":"https://junglewise.ai/threats/cve-2026-83043-oracle-webcenter-portal-remote-code-execution-in-composer"},{"cve":"CVE-2026-83041","cvss":7.7,"epss":0.0035,"slug":"cve-2026-83041-oracle-webcenter-portal-unauthorized-data-access-in-portlet","title":"Oracle WebCenter Portal unauthorized data access in Portlet Services","severity":"high","exploited":false,"published_at":"2026-09-15T20:18:12.52+00:00","url":"https://junglewise.ai/threats/cve-2026-83041-oracle-webcenter-portal-unauthorized-data-access-in-portlet"},{"cve":"CVE-2026-83040","cvss":9.6,"epss":0.0042,"slug":"cve-2026-83040-oracle-webcenter-portal-rce-in-portlet-services-via-soap","title":"Oracle WebCenter Portal RCE in Portlet Services via SOAP","severity":"critical","exploited":false,"published_at":"2026-09-15T20:18:12.41+00:00","url":"https://junglewise.ai/threats/cve-2026-83040-oracle-webcenter-portal-rce-in-portlet-services-via-soap"},{"cve":"CVE-2026-83039","cvss":9.9,"epss":0.0043,"slug":"cve-2026-83039-oracle-webcenter-portal-privilege-escalation-in-composer","title":"Oracle WebCenter Portal privilege escalation in Composer","severity":"critical","exploited":false,"published_at":"2026-09-15T20:18:12.297+00:00","url":"https://junglewise.ai/threats/cve-2026-83039-oracle-webcenter-portal-privilege-escalation-in-composer"},{"cve":"CVE-2026-73963","cvss":9.8,"epss":0.0051,"slug":"cve-2026-73963-oracle-webcenter-portal-remote-code-execution-in-portlet-services","title":"Oracle WebCenter Portal remote code execution in Portlet Services","severity":"critical","exploited":false,"published_at":"2026-09-15T20:17:47.55+00:00","url":"https://junglewise.ai/threats/cve-2026-73963-oracle-webcenter-portal-remote-code-execution-in-portlet-services"},{"cve":"CVE-2026-73959","cvss":8.8,"epss":0.0043,"slug":"cve-2026-73959-oracle-webcenter-portal-privilege-escalation-in-composer","title":"Oracle WebCenter Portal privilege escalation in Composer","severity":"high","exploited":false,"published_at":"2026-09-15T20:17:47.1+00:00","url":"https://junglewise.ai/threats/cve-2026-73959-oracle-webcenter-portal-privilege-escalation-in-composer"},{"cve":"CVE-2026-73957","cvss":9.3,"epss":0.0038,"slug":"cve-2026-73957-oracle-webcenter-portal-xss-or-authentication-bypass-in-portlet","title":"Oracle WebCenter Portal XSS or authentication bypass in Portlet Services","severity":"critical","exploited":false,"published_at":"2026-09-15T20:17:46.887+00:00","url":"https://junglewise.ai/threats/cve-2026-73957-oracle-webcenter-portal-xss-or-authentication-bypass-in-portlet"},{"cve":"CVE-2026-73956","cvss":9.8,"epss":0.0051,"slug":"cve-2026-73956-oracle-webcenter-portal-remote-code-execution-in-composer","title":"Oracle WebCenter Portal remote code execution in Composer","severity":"critical","exploited":false,"published_at":"2026-09-15T20:17:46.78+00:00","url":"https://junglewise.ai/threats/cve-2026-73956-oracle-webcenter-portal-remote-code-execution-in-composer"},{"cve":"CVE-2026-73953","cvss":9.8,"epss":0.0051,"slug":"cve-2026-73953-oracle-webcenter-portal-remote-code-execution-in-portlet-services","title":"Oracle WebCenter Portal remote code execution in Portlet Services","severity":"critical","exploited":false,"published_at":"2026-09-15T20:17:46.457+00:00","url":"https://junglewise.ai/threats/cve-2026-73953-oracle-webcenter-portal-remote-code-execution-in-portlet-services"},{"cve":"CVE-2026-73952","cvss":9.1,"epss":0.0043,"slug":"cve-2026-73952-oracle-webcenter-portal-unauthenticated-access-vulnerability-in","title":"Oracle WebCenter Portal unauthenticated access vulnerability in Portlet Services","severity":"critical","exploited":false,"published_at":"2026-09-15T20:17:46.347+00:00","url":"https://junglewise.ai/threats/cve-2026-73952-oracle-webcenter-portal-unauthenticated-access-vulnerability-in"},{"cve":"CVE-2026-73951","cvss":8.1,"epss":0.0039,"slug":"cve-2026-73951-oracle-webcenter-portal-authentication-bypass-in-portlet-services","title":"Oracle WebCenter Portal authentication bypass in Portlet Services","severity":"high","exploited":false,"published_at":"2026-09-15T20:17:46.24+00:00","url":"https://junglewise.ai/threats/cve-2026-73951-oracle-webcenter-portal-authentication-bypass-in-portlet-services"},{"cve":"CVE-2026-73949","cvss":8.8,"epss":0.0043,"slug":"cve-2026-73949-oracle-webcenter-portal-privilege-escalation-in-portlet-services","title":"Oracle WebCenter Portal privilege escalation in Portlet Services","severity":"high","exploited":false,"published_at":"2026-09-15T20:17:46.023+00:00","url":"https://junglewise.ai/threats/cve-2026-73949-oracle-webcenter-portal-privilege-escalation-in-portlet-services"},{"cve":"CVE-2026-73948","cvss":9.9,"epss":0.0043,"slug":"cve-2026-73948-oracle-webcenter-portal-privilege-escalation-in-composer","title":"Oracle WebCenter Portal privilege escalation in Composer","severity":"critical","exploited":false,"published_at":"2026-09-15T20:17:45.913+00:00","url":"https://junglewise.ai/threats/cve-2026-73948-oracle-webcenter-portal-privilege-escalation-in-composer"},{"cve":"CVE-2026-60568","cvss":9.9,"slug":"cve-2026-60568-oracle-webcenter-portal-takeover-via-runtime-tools","title":"Oracle WebCenter Portal takeover via Runtime Tools","severity":"critical","exploited":false,"published_at":"2026-07-21T22:17:57.033+00:00","url":"https://junglewise.ai/threats/cve-2026-60568-oracle-webcenter-portal-takeover-via-runtime-tools"}],"weekly":[{"week":"2026-06-29","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-06","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-13","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-20","critical":6,"exploited":0,"vulnerabilities":7},{"week":"2026-07-27","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-03","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-10","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-17","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-24","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-31","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-07","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-14","critical":10,"exploited":0,"vulnerabilities":24},{"week":"2026-09-21","critical":0,"exploited":0,"vulnerabilities":0}],"related":[{"name":"Oracle Hyperion Financial Management","slug":"hyperion-financial-management","vulnerabilities":129,"url":"https://junglewise.ai/threats/technologies/hyperion-financial-management"},{"name":"Oracle Coherence","slug":"coherence","vulnerabilities":113,"url":"https://junglewise.ai/threats/technologies/coherence"},{"name":"Oracle E-Business Suite","slug":"e-business-suite","vulnerabilities":83,"url":"https://junglewise.ai/threats/technologies/e-business-suite"},{"name":"Oracle Commerce Guided Search","slug":"commerce-guided-search","vulnerabilities":82,"url":"https://junglewise.ai/threats/technologies/commerce-guided-search"},{"name":"Oracle Commerce Experience Manager","slug":"commerce-experience-manager","vulnerabilities":81,"url":"https://junglewise.ai/threats/technologies/commerce-experience-manager"},{"name":"Oracle WebCenter Content","slug":"webcenter-content","vulnerabilities":73,"url":"https://junglewise.ai/threats/technologies/webcenter-content"},{"name":"Oracle VirtualBox","slug":"virtualbox","vulnerabilities":70,"url":"https://junglewise.ai/threats/technologies/virtualbox"},{"name":"Oracle Helidon","slug":"helidon","vulnerabilities":68,"url":"https://junglewise.ai/threats/technologies/helidon"},{"name":"Oracle MySQL Server","slug":"mysql-server","vulnerabilities":60,"url":"https://junglewise.ai/threats/technologies/mysql-server"},{"name":"Oracle Hyperion Data Relationship Management","slug":"hyperion-data-relationship-management","vulnerabilities":56,"url":"https://junglewise.ai/threats/technologies/hyperion-data-relationship-management"},{"name":"Oracle WebLogic Server","slug":"weblogic-server","vulnerabilities":55,"url":"https://junglewise.ai/threats/technologies/weblogic-server"},{"name":"Oracle Java SE","slug":"java-se","vulnerabilities":52,"url":"https://junglewise.ai/threats/technologies/java-se"}],"technology":{"hub":true,"name":"Oracle WebCenter Portal","slug":"webcenter-portal","vendor":{"name":"Oracle","slug":"oracle","url":"https://junglewise.ai/threats/vendors/oracle"},"aliases":[],"category":"web-server","homepage":"https://www.oracle.com/middleware/technologies/webcenter/portal.html","repo_url":"https://www.oracle.com/middleware/technologies/webcenter-portal.html","description":"A platform for building enterprise portals, composite applications, and self-service websites.","url":"https://junglewise.ai/threats/technologies/webcenter-portal"},"most_severe":[{"cve":"CVE-2026-46846","cvss":10,"epss":0.0052,"slug":"cve-2026-46846-oracle-webcenter-portal-authentication-bypass-in-security","title":"Oracle WebCenter Portal authentication bypass in Security Framework","severity":"critical","exploited":false,"published_at":"2026-06-17T10:54:02.14+00:00","url":"https://junglewise.ai/threats/cve-2026-46846-oracle-webcenter-portal-authentication-bypass-in-security"},{"cve":"CVE-2026-46803","cvss":10,"epss":0.0052,"slug":"cve-2026-46803-oracle-webcenter-portal-auth-bypass-in-security-framework","title":"Oracle WebCenter Portal auth bypass in Security Framework","severity":"critical","exploited":false,"published_at":"2026-06-17T10:53:57.947+00:00","url":"https://junglewise.ai/threats/cve-2026-46803-oracle-webcenter-portal-auth-bypass-in-security-framework"},{"cve":"CVE-2026-46847","cvss":9.9,"epss":0.0048,"slug":"cve-2026-46847-oracle-webcenter-portal-compromise-in-runtime-tools","title":"Oracle WebCenter Portal compromise in Runtime Tools","severity":"critical","exploited":false,"published_at":"2026-06-17T10:54:02.28+00:00","url":"https://junglewise.ai/threats/cve-2026-46847-oracle-webcenter-portal-compromise-in-runtime-tools"},{"cve":"CVE-2026-46844","cvss":9.9,"epss":0.0048,"slug":"cve-2026-46844-oracle-webcenter-portal-improper-access-control-in-security","title":"Oracle WebCenter Portal improper access control in Security Framework","severity":"critical","exploited":false,"published_at":"2026-06-17T10:54:01.917+00:00","url":"https://junglewise.ai/threats/cve-2026-46844-oracle-webcenter-portal-improper-access-control-in-security"},{"cve":"CVE-2026-46838","cvss":9.9,"epss":0.0048,"slug":"cve-2026-46838-oracle-webcenter-portal-improper-access-control-in-security","title":"Oracle WebCenter Portal improper access control in Security Framework","severity":"critical","exploited":false,"published_at":"2026-06-17T10:54:01.293+00:00","url":"https://junglewise.ai/threats/cve-2026-46838-oracle-webcenter-portal-improper-access-control-in-security"},{"cve":"CVE-2026-46814","cvss":9.9,"epss":0.0048,"slug":"cve-2026-46814-oracle-webcenter-portal-improper-access-control-in-security","title":"Oracle WebCenter Portal improper access control in Security Framework","severity":"critical","exploited":false,"published_at":"2026-06-17T10:53:58.983+00:00","url":"https://junglewise.ai/threats/cve-2026-46814-oracle-webcenter-portal-improper-access-control-in-security"},{"cve":"CVE-2026-46802","cvss":9.9,"epss":0.0048,"slug":"cve-2026-46802-oracle-webcenter-portal-improper-access-control-in-security","title":"Oracle WebCenter Portal improper access control in Security Framework","severity":"critical","exploited":false,"published_at":"2026-06-17T10:53:57.843+00:00","url":"https://junglewise.ai/threats/cve-2026-46802-oracle-webcenter-portal-improper-access-control-in-security"},{"cve":"CVE-2026-46767","cvss":9.9,"epss":0.0048,"slug":"cve-2026-46767-oracle-webcenter-portal-improper-access-control-in-composer","title":"Oracle WebCenter Portal improper access control in Composer","severity":"critical","exploited":false,"published_at":"2026-06-17T10:53:54.2+00:00","url":"https://junglewise.ai/threats/cve-2026-46767-oracle-webcenter-portal-improper-access-control-in-composer"},{"cve":"CVE-2026-46765","cvss":9.9,"epss":0.0048,"slug":"cve-2026-46765-oracle-webcenter-portal-improper-access-control-in-composer","title":"Oracle WebCenter Portal improper access control in Composer","severity":"critical","exploited":false,"published_at":"2026-06-17T10:53:53.887+00:00","url":"https://junglewise.ai/threats/cve-2026-46765-oracle-webcenter-portal-improper-access-control-in-composer"},{"cve":"CVE-2026-83039","cvss":9.9,"epss":0.0043,"slug":"cve-2026-83039-oracle-webcenter-portal-privilege-escalation-in-composer","title":"Oracle WebCenter Portal privilege escalation in Composer","severity":"critical","exploited":false,"published_at":"2026-09-15T20:18:12.297+00:00","url":"https://junglewise.ai/threats/cve-2026-83039-oracle-webcenter-portal-privilege-escalation-in-composer"}],"generated_at":"2026-09-26T09:11:00.170868+00:00"}