VendorsOracleretail_data_extractor_for_merchandisingall versions
Vulnerabilities

Oracle Retail Data Extractor For Merchandising

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

3CVEs
CVE-2021-42340
DoS via memory leak with WebSocket connections
Published 2021-10-14 · Modified
7.5EPSS 0.118
CVE-2020-1945
Apache Ant 1.1 to 1.9.14 and 1.10.0 to 1.10.7 uses the default temporary directory identified by the Java system property java.io.tmpdir for several tasks and may thus leak sensitive information. The fixcrlf and replaceregexp tasks also copy files from the temporary directory back into the build tree allowing an attacker to inject modified source files into the build process.
Published 2020-05-14 · Modified
6.3EPSS 0.018
CVE-2021-45105
Apache Log4j2 does not always protect from infinite recursion in lookup evaluation
Published 2021-12-18 · Modified
5.9EPSS 1.000