Oracle Hyperion Data Relationship Management vulnerabilities
47 known vulnerabilities affecting oracle/hyperion_data_relationship_management.
Total CVEs
47
CISA KEV
0
Public exploits
2
Exploited in wild
2
Severity breakdown
CRITICAL8HIGH31MEDIUM8
Vulnerabilities
Page 2 of 3
CVE-2026-70897P3HIGHCVSS 8.2v11.2.25.0.0002026-08-18
CVE-2026-70897 [HIGH] CWE-284 CVE-2026-70897: Vulnerability in the Oracle Hyperion Data Relationship Management product of Oracle Hyperion (compon
Vulnerability in the Oracle Hyperion Data Relationship Management product of Oracle Hyperion (component: Access and security). The supported version that is affected is 11.2.25.0.000. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTPS to compromise Oracle Hyperion Data Relationship Management. Successful att
nvd
CVE-2026-70887P3HIGHCVSS 8.2v11.2.25.0.0002026-08-18
CVE-2026-70887 [HIGH] CWE-284 CVE-2026-70887: Vulnerability in the Oracle Hyperion Data Relationship Management product of Oracle Hyperion (compon
Vulnerability in the Oracle Hyperion Data Relationship Management product of Oracle Hyperion (component: Access and security). The supported version that is affected is 11.2.25.0.000. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Hyperion Data Relationship Management. Successful atta
nvd
CVE-2026-70870P3HIGHCVSS 8.2v11.2.25.0.0002026-08-18
CVE-2026-70870 [HIGH] CWE-284 CVE-2026-70870: Vulnerability in the Oracle Hyperion Data Relationship Management product of Oracle Hyperion (compon
Vulnerability in the Oracle Hyperion Data Relationship Management product of Oracle Hyperion (component: Web Client - Unicode). The supported version that is affected is 11.2.23.0.000. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Hyperion Data Relationship Management. Successful att
nvd
CVE-2026-70903P3HIGHCVSS 8.7v11.2.25.0.0002026-08-18
CVE-2026-70903 [HIGH] CWE-284 CVE-2026-70903: Vulnerability in the Oracle Hyperion Data Relationship Management product of Oracle Hyperion (compon
Vulnerability in the Oracle Hyperion Data Relationship Management product of Oracle Hyperion (component: Access and security). The supported version that is affected is 11.2.25.0.000. Easily exploitable vulnerability allows low privileged attacker with network access via HTTPS to compromise Oracle Hyperion Data Relationship Management. Successful atta
nvd
CVE-2026-70882P3HIGHCVSS 8.7v11.2.25.0.0002026-08-18
CVE-2026-70882 [HIGH] CWE-284 CVE-2026-70882: Vulnerability in the Oracle Hyperion Data Relationship Management product of Oracle Hyperion (compon
Vulnerability in the Oracle Hyperion Data Relationship Management product of Oracle Hyperion (component: Access and security). The supported version that is affected is 11.2.25.0.000. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Hyperion Data Relationship Management. Successful attac
nvd
CVE-2026-70893P3HIGHCVSS 8.2v11.2.25.0.0002026-08-18
CVE-2026-70893 [HIGH] CWE-284 CVE-2026-70893: Vulnerability in the Oracle Hyperion Data Relationship Management product of Oracle Hyperion (compon
Vulnerability in the Oracle Hyperion Data Relationship Management product of Oracle Hyperion (component: Access and security). The supported version that is affected is 11.2.25.0.000. Difficult to exploit vulnerability allows low privileged attacker with network access via SQL to compromise Oracle Hyperion Data Relationship Management. While the vulne
nvd
CVE-2026-70892P3HIGHCVSS 8.2v11.2.25.0.0002026-08-18
CVE-2026-70892 [HIGH] CWE-284 CVE-2026-70892: Vulnerability in the Oracle Hyperion Data Relationship Management product of Oracle Hyperion (compon
Vulnerability in the Oracle Hyperion Data Relationship Management product of Oracle Hyperion (component: Access and security). The supported version that is affected is 11.2.25.0.000. Difficult to exploit vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Hyperion Data Relationship Management. While the vuln
nvd
CVE-2026-70891P3HIGHCVSS 7.5v11.2.25.0.0002026-08-18
CVE-2026-70891 [HIGH] CWE-284 CVE-2026-70891: Vulnerability in the Oracle Hyperion Data Relationship Management product of Oracle Hyperion (compon
Vulnerability in the Oracle Hyperion Data Relationship Management product of Oracle Hyperion (component: Access and security). The supported version that is affected is 11.2.25.0.000. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Hyperion Data Relationship Management. Successful atta
nvd
CVE-2026-70889P3HIGHCVSS 7.5v11.2.25.0.0002026-08-18
CVE-2026-70889 [HIGH] CWE-284 CVE-2026-70889: Vulnerability in the Oracle Hyperion Data Relationship Management product of Oracle Hyperion (compon
Vulnerability in the Oracle Hyperion Data Relationship Management product of Oracle Hyperion (component: Access and security). The supported version that is affected is 11.2.25.0.000. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Hyperion Data Relationship Management. Successful atta
nvd
CVE-2026-70896P3HIGHCVSS 7.5v11.2.25.0.0002026-08-18
CVE-2026-70896 [HIGH] CWE-284 CVE-2026-70896: Vulnerability in the Oracle Hyperion Data Relationship Management product of Oracle Hyperion (compon
Vulnerability in the Oracle Hyperion Data Relationship Management product of Oracle Hyperion (component: Access and security). The supported version that is affected is 11.2.25.0.000. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Hyperion Data Relationship Management. Successful atta
nvd
CVE-2026-70890P3HIGHCVSS 7.5v11.2.25.0.0002026-08-18
CVE-2026-70890 [HIGH] CWE-284 CVE-2026-70890: Vulnerability in the Oracle Hyperion Data Relationship Management product of Oracle Hyperion (compon
Vulnerability in the Oracle Hyperion Data Relationship Management product of Oracle Hyperion (component: Access and security). The supported version that is affected is 11.2.25.0.000. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Hyperion Data Relationship Management. Successful atta
nvd
CVE-2026-70901P3HIGHCVSS 8.1v11.2.25.0.0002026-08-18
CVE-2026-70901 [HIGH] CWE-284 CVE-2026-70901: Vulnerability in the Oracle Hyperion Data Relationship Management product of Oracle Hyperion (compon
Vulnerability in the Oracle Hyperion Data Relationship Management product of Oracle Hyperion (component: Access and security). The supported version that is affected is 11.2.25.0.000. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Hyperion Data Relationship Management. Successful atta
nvd
CVE-2026-70875P3HIGHCVSS 7.5v11.2.25.0.0002026-08-18
CVE-2026-70875 [HIGH] CWE-284 CVE-2026-70875: Vulnerability in the Oracle Hyperion Data Relationship Management product of Oracle Hyperion (compon
Vulnerability in the Oracle Hyperion Data Relationship Management product of Oracle Hyperion (component: Access and security). The supported version that is affected is 11.2.25.0.000. Difficult to exploit vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Hyperion Data Relationship Management. Successful att
nvd
CVE-2026-70898P3HIGHCVSS 7.4v11.2.25.0.0002026-08-18
CVE-2026-70898 [HIGH] CWE-284 CVE-2026-70898: Vulnerability in the Oracle Hyperion Data Relationship Management product of Oracle Hyperion (compon
Vulnerability in the Oracle Hyperion Data Relationship Management product of Oracle Hyperion (component: Access and security). The supported version that is affected is 11.2.25.0.000. Difficult to exploit vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Hyperion Data Relationship Management. Successful at
nvd
CVE-2026-70904P3HIGHCVSS 8.1v11.2.25.0.0002026-08-18
CVE-2026-70904 [HIGH] CWE-284 CVE-2026-70904: Vulnerability in the Oracle Hyperion Data Relationship Management product of Oracle Hyperion (compon
Vulnerability in the Oracle Hyperion Data Relationship Management product of Oracle Hyperion (component: Access and security). The supported version that is affected is 11.2.25.0.000. Easily exploitable vulnerability allows unauthenticated attacker with access to the physical communication segment attached to the hardware where the Oracle Hyperion Dat
nvd
CVE-2018-3208P3HIGHCVSS 7.7v11.1.2.4.3452018-10-17
CVE-2018-3208 [HIGH] CVE-2018-3208: Vulnerability in the Hyperion Data Relationship Management component of Oracle Hyperion (subcomponen
Vulnerability in the Hyperion Data Relationship Management component of Oracle Hyperion (subcomponent: Access and Security). The supported version that is affected is 11.1.2.4.345. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Hyperion Data Relationship Management. While the vulnerability is in Hyperi
nvd
CVE-2026-70879P3HIGHCVSS 7.8v11.2.25.0.0002026-08-18
CVE-2026-70879 [HIGH] CWE-284 CVE-2026-70879: Vulnerability in the Oracle Hyperion Data Relationship Management product of Oracle Hyperion (compon
Vulnerability in the Oracle Hyperion Data Relationship Management product of Oracle Hyperion (component: Access and security). The supported version that is affected is 11.2.25.0.000. Difficult to exploit vulnerability allows low privileged attacker with logon to the infrastructure where Oracle Hyperion Data Relationship Management executes to comprom
nvd
CVE-2020-7760P3HIGHCVSS 7.5fixed in 11.2.9.02020-10-30
CVE-2020-7760 [HIGH] CWE-400 CVE-2020-7760: This affects the package codemirror before 5.58.2; the package org.apache.marmotta.webjars:codemirro
This affects the package codemirror before 5.58.2; the package org.apache.marmotta.webjars:codemirror before 5.58.2. The vulnerable regular expression is located in https://github.com/codemirror/CodeMirror/blob/cdb228ac736369c685865b122b736cd0d397836c/mode/javascript/javascript.jsL129. The ReDOS vulnerability of the regex is mainly due to the sub-patter
nvd
CVE-2026-70888P3MEDIUMCVSS 6.6v11.2.25.0.0002026-08-18
CVE-2026-70888 [MEDIUM] CWE-284 CVE-2026-70888: Vulnerability in the Oracle Hyperion Data Relationship Management product of Oracle Hyperion (compon
Vulnerability in the Oracle Hyperion Data Relationship Management product of Oracle Hyperion (component: Access and security). The supported version that is affected is 11.2.25.0.000. Difficult to exploit vulnerability allows high privileged attacker with network access via HTTP to compromise Oracle Hyperion Data Relationship Management. Successful
nvd
CVE-2026-70894P3HIGHCVSS 7.1v11.2.25.0.0002026-08-18
CVE-2026-70894 [HIGH] CWE-284 CVE-2026-70894: Vulnerability in the Oracle Hyperion Data Relationship Management product of Oracle Hyperion (compon
Vulnerability in the Oracle Hyperion Data Relationship Management product of Oracle Hyperion (component: Access and security). The supported version that is affected is 11.2.25.0.000. Easily exploitable vulnerability allows unauthenticated attacker with logon to the infrastructure where Oracle Hyperion Data Relationship Management executes to compromi
nvd