📦 Coherence

by Oracle

🔍 What is Coherence?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2022-21420

CRITICAL CVSS 9.8 Apr 19, 2022

This critical vulnerability in Oracle Coherence allows unauthenticated attackers with network access via the T3 protocol to completely compromise the system. Affected versions include 12.2.1.3.0, 12.2...

CVE-2022-21570

HIGH CVSS 7.5 Jul 19, 2022

This vulnerability in Oracle Coherence allows unauthenticated attackers with network access via T3 or IIOP protocols to cause denial of service by crashing or hanging the service. It affects multiple ...

CVE-2020-36518

HIGH CVSS 7.5 Mar 11, 2022

CVE-2020-36518 is a denial-of-service vulnerability in Jackson Databind where processing deeply nested JSON objects causes a Java StackOverflowError, crashing the application. This affects any Java ap...

CVE-2021-37136

HIGH CVSS 7.5 Oct 19, 2021

CVE-2021-37136 is a denial-of-service vulnerability in Netty's Bzip2Decoder that allows attackers to trigger out-of-memory errors by sending specially crafted Bzip2 compressed data. The vulnerability ...

CVE-2021-2428

HIGH CVSS 8.1 Jul 21, 2021

This vulnerability in Oracle Coherence allows unauthenticated attackers with network access via T3 or IIOP protocols to potentially compromise the system. It affects multiple versions of Oracle Cohere...

CVE-2021-2344

HIGH CVSS 7.5 Jul 21, 2021

This vulnerability in Oracle Coherence allows unauthenticated attackers with network access via T3 or IIOP protocols to cause denial of service by crashing or hanging the service. It affects multiple ...