Oracle Universal Work Queue vulnerabilities
18 known vulnerabilities affecting oracle/universal_work_queue.
Total CVEs
18
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL2HIGH12MEDIUM4
Vulnerabilities
Page 1 of 1
CVE-2026-46824P2CRITICALCVSS 9.9≥ 12.2.3, ≤ 12.2.152026-05-28
CVE-2026-46824 [CRITICAL] CWE-269 CVE-2026-46824: Vulnerability in the Oracle Universal Work Queue product of Oracle E-Business Suite (component: Work
Vulnerability in the Oracle Universal Work Queue product of Oracle E-Business Suite (component: Work Provider Site Level Administration). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Universal Work Queue. While the vulnerab
nvd
CVE-2020-14855P2CRITICALCVSS 9.8v12.1.32020-10-21
CVE-2020-14855 [CRITICAL] CVE-2020-14855: Vulnerability in the Oracle Universal Work Queue product of Oracle E-Business Suite (component: Work
Vulnerability in the Oracle Universal Work Queue product of Oracle E-Business Suite (component: Work Provider Administration). The supported version that is affected is 12.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Universal Work Queue. Successful attacks of this vulnerability ca
nvd
CVE-2020-14862P3HIGHCVSS 8.8≥ 12.2.3, ≤ 12.2.92020-10-21
CVE-2020-14862 [HIGH] CVE-2020-14862: Vulnerability in the Oracle Universal Work Queue product of Oracle E-Business Suite (component: Inte
Vulnerability in the Oracle Universal Work Queue product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affected are 12.2.3 - 12.2.9. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Universal Work Queue. Successful attacks of this vulnerability can resu
nvd
CVE-2026-60997P3HIGHCVSS 8.1≥ 12.2.3, ≤ 12.2.152026-07-21
CVE-2026-60997 [HIGH] CWE-284 CVE-2026-60997: Vulnerability in the Oracle Universal Work Queue product of Oracle E-Business Suite (component: Non-
Vulnerability in the Oracle Universal Work Queue product of Oracle E-Business Suite (component: Non-Media Integration issues). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Universal Work Queue. Successful attacks of this vulner
nvd
CVE-2025-50105P3HIGHCVSS 8.1≥ 12.2.3, ≤ 12.2.142025-07-15
CVE-2025-50105 [HIGH] CWE-284 CVE-2025-50105: Vulnerability in the Oracle Universal Work Queue product of Oracle E-Business Suite (component: Work
Vulnerability in the Oracle Universal Work Queue product of Oracle E-Business Suite (component: Work Provider Administration). Supported versions that are affected are 12.2.3-12.2.14. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Universal Work Queue. Successful attacks of this vulner
nvd
CVE-2026-60700P3HIGHCVSS 8.1≥ 12.2.3, ≤ 12.2.152026-07-21
CVE-2026-60700 [HIGH] CWE-284 CVE-2026-60700: Vulnerability in the Oracle Universal Work Queue product of Oracle E-Business Suite (component: UWQ
Vulnerability in the Oracle Universal Work Queue product of Oracle E-Business Suite (component: UWQ Server Issues). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Universal Work Queue. Successful attacks require human interaction
nvd
CVE-2021-35562P3HIGHCVSS 8.1≥ 12.1.1, ≤ 12.1.3≥ 12.2.3, ≤ 12.2.102021-10-20
CVE-2021-35562 [HIGH] CVE-2021-35562: Vulnerability in the Oracle Universal Work Queue product of Oracle E-Business Suite (component: Work
Vulnerability in the Oracle Universal Work Queue product of Oracle E-Business Suite (component: Work Provider Site Level Administration). Supported versions that are affected are 12.1.1-12.1.3 and 12.2.3-12.2.10. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Universal Work Queue. Successful a
nvd
CVE-2021-2246P3HIGHCVSS 8.1≥ 12.1.1, ≤ 12.1.32021-04-22
CVE-2021-2246 [HIGH] CVE-2021-2246: Vulnerability in the Oracle Universal Work Queue product of Oracle E-Business Suite (component: Work
Vulnerability in the Oracle Universal Work Queue product of Oracle E-Business Suite (component: Work Provider Site Level Administration). Supported versions that are affected are 12.1.1-12.1.3. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Universal Work Queue. Successful attacks of this vulner
nvd
CVE-2017-10332P3HIGHCVSS 7.5v12.1.1v12.1.2+6 more2017-10-19
CVE-2017-10332 [HIGH] CWE-200 CVE-2017-10332: Vulnerability in the Oracle Universal Work Queue component of Oracle E-Business Suite (subcomponent:
Vulnerability in the Oracle Universal Work Queue component of Oracle E-Business Suite (subcomponent: Administration). Supported versions that are affected are 12.1.1, 12.1.2, 12.1.3, 12.2.3, 12.2.4, 12.2.5, 12.2.6 and 12.2.7. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Universal Wo
nvd
CVE-2017-3415P3HIGHCVSS 8.2v12.1.1v12.1.2+5 more2017-01-27
CVE-2017-3415 [HIGH] CVE-2017-3415: Vulnerability in the Oracle Universal Work Queue component of Oracle E-Business Suite (subcomponent:
Vulnerability in the Oracle Universal Work Queue component of Oracle E-Business Suite (subcomponent: User Interface). Supported versions that are affected are 12.1.1, 12.1.2, 12.1.3, 12.2.3, 12.2.4, 12.2.5 and 12.2.6. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Universal Work Queue. Successf
nvd
CVE-2017-3416P3HIGHCVSS 8.2v12.1.1v12.1.2+5 more2017-01-27
CVE-2017-3416 [HIGH] CVE-2017-3416: Vulnerability in the Oracle Universal Work Queue component of Oracle E-Business Suite (subcomponent:
Vulnerability in the Oracle Universal Work Queue component of Oracle E-Business Suite (subcomponent: User Interface). Supported versions that are affected are 12.1.1, 12.1.2, 12.1.3, 12.2.3, 12.2.4, 12.2.5 and 12.2.6. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Universal Work Queue. Successf
nvd
CVE-2017-3417P3HIGHCVSS 8.2v12.1.1v12.1.2+5 more2017-01-27
CVE-2017-3417 [HIGH] CVE-2017-3417: Vulnerability in the Oracle Universal Work Queue component of Oracle E-Business Suite (subcomponent:
Vulnerability in the Oracle Universal Work Queue component of Oracle E-Business Suite (subcomponent: User Interface). Supported versions that are affected are 12.1.1, 12.1.2, 12.1.3, 12.2.3, 12.2.4, 12.2.5 and 12.2.6. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Universal Work Queue. Successf
nvd
CVE-2020-2818P3HIGHCVSS 8.2≥ 12.1.1, ≤ 12.1.32020-04-15
CVE-2020-2818 [HIGH] CVE-2020-2818: Vulnerability in the Oracle Universal Work Queue product of Oracle E-Business Suite (component: Work
Vulnerability in the Oracle Universal Work Queue product of Oracle E-Business Suite (component: Work Provider Administration). Supported versions that are affected are 12.1.1-12.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Universal Work Queue. Successful attacks require human interactio
nvd
CVE-2020-2819P3HIGHCVSS 8.2≥ 12.1.1, ≤ 12.1.32020-04-15
CVE-2020-2819 [HIGH] CVE-2020-2819: Vulnerability in the Oracle Universal Work Queue product of Oracle E-Business Suite (component: Work
Vulnerability in the Oracle Universal Work Queue product of Oracle E-Business Suite (component: Work Provider Administration). Supported versions that are affected are 12.1.1-12.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Universal Work Queue. Successful attacks require human interactio
nvd
CVE-2026-60701P3MEDIUMCVSS 6.6≥ 12.2.3, ≤ 12.2.152026-07-21
CVE-2026-60701 [MEDIUM] CWE-284 CVE-2026-60701: Vulnerability in the Oracle Universal Work Queue product of Oracle E-Business Suite (component: Work
Vulnerability in the Oracle Universal Work Queue product of Oracle E-Business Suite (component: Work Provider Site Level Administration). Supported versions that are affected are 12.2.3-12.2.15. Difficult to exploit vulnerability allows high privileged attacker with network access via HTTP to compromise Oracle Universal Work Queue. Successful attack
nvd
CVE-2016-0525P4MEDIUMCVSS 6.4v11.5.10.2v12.1.1+2 more2016-01-21
CVE-2016-0525 [MEDIUM] CVE-2016-0525: Unspecified vulnerability in the Oracle Universal Work Queue component in Oracle E-Business Suite 11
Unspecified vulnerability in the Oracle Universal Work Queue component in Oracle E-Business Suite 11.5.10.2, 12.1.1, 12.1.2, and 12.1.3 allows remote attackers to affect confidentiality and integrity via unknown vectors related to Work Provider Administration.
nvd
CVE-2025-50107P4MEDIUMCVSS 6.1≥ 12.2.5, ≤ 12.2.142025-07-15
CVE-2025-50107 [MEDIUM] CWE-284 CVE-2025-50107: Vulnerability in the Oracle Universal Work Queue product of Oracle E-Business Suite (component: Requ
Vulnerability in the Oracle Universal Work Queue product of Oracle E-Business Suite (component: Request handling). Supported versions that are affected are 12.2.5-12.2.14. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Universal Work Queue. Successful attacks require human interacti
nvd
CVE-2016-0536P4MEDIUMCVSS 4.3v11.5.10.22016-01-21
CVE-2016-0536 [MEDIUM] CVE-2016-0536: Unspecified vulnerability in the Oracle Universal Work Queue component in Oracle E-Business Suite 11
Unspecified vulnerability in the Oracle Universal Work Queue component in Oracle E-Business Suite 11.5.10.2 allows remote attackers to affect integrity via unknown vectors related to error messages.
nvd