CVE Tools

Workflow

30 CVEs tracked. None of them is in CISA KEV.

This hub aggregates every CVE we track for Workflow, a product in the enterprise software space. Use it to gauge the current risk picture and drill into individual advisories.

Workflow CVEs per month

Oct 2024 to Sep 2026. Point at a month, or focus the strip and use the arrow keys.
Workflow CVEs per month
MonthCVEs
2024-100
2024-110
2024-120
2025-011
2025-020
2025-030
2025-040
2025-050
2025-060
2025-070
2025-080
2025-090
2025-101
2025-110
2025-120
2026-011
2026-020
2026-031
2026-041
2026-050
2026-060
2026-078
2026-084
2026-090

Severity

How the 30 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.

  • Critical310%
  • High931%
  • Medium1448%
  • Low310%

Latest CVEs

The 15 most recently published vulnerabilities affecting Workflow.

  1. CVE-2026-70931Vulnerability in the Oracle Workflow product of Oracle E-Business Suite (component: Workflow Notification Mailer). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulne...8.1
  2. CVE-2026-70927Vulnerability in the Oracle Workflow product of Oracle E-Business Suite (component: Workflow Notification Mailer). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulne...7.5
  3. CVE-2026-70926Vulnerability in the Oracle Workflow product of Oracle E-Business Suite (component: Workflow Notification Mailer). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulne...9.8
  4. CVE-2026-60830Vulnerability in the Oracle Workflow product of Oracle E-Business Suite (component: Worklist). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low ...6.5
  5. CVE-2026-62547Vulnerability in the Oracle Workflow product of Oracle E-Business Suite (component: Workflow Notification Mailer). Supported versions that are affected are 12.2.3-12.2.15. Difficult to exploit vul...8.1
  6. CVE-2026-61278Vulnerability in the Oracle Workflow product of Oracle E-Business Suite (component: Workflow Notification Mailer). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulne...6.3
  7. CVE-2026-61247Vulnerability in the Oracle Workflow product of Oracle E-Business Suite (component: Workflow Notification Mailer). Supported versions that are affected are 12.2.3-12.2.15. Difficult to exploit vul...4.8
  8. CVE-2026-60780Vulnerability in the Oracle Workflow product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affected are 12.2.3-12.2.15. Difficult to exploit vulnerabilit...8.1
  9. CVE-2026-60575Vulnerability in the Oracle Workflow product of Oracle E-Business Suite (component: Workflow Notification Mailer). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulne...6.3
  10. CVE-2026-60149Vulnerability in the Oracle Workflow product of Oracle E-Business Suite (component: Workflow Notification Mailer). Supported versions that are affected are 12.2.3-12.2.15. Difficult to exploit vul...5.2
  11. CVE-2026-60144Vulnerability in the Oracle Workflow product of Oracle E-Business Suite (component: Workflow Notification Mailer). Supported versions that are affected are 12.2.3-12.2.15. Difficult to exploit vul...3.6
  12. CVE-2026-60143Vulnerability in the Oracle Workflow product of Oracle E-Business Suite (component: Workflow Notification Mailer). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulne...7.3
  13. CVE-2026-34302Vulnerability in the Oracle Workflow product of Oracle E-Business Suite (component: Workflow Loader). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allo...5.5
  14. GHSA-9r75-g2cr-3h76Vercel Workflow Allows Webhook Creation with Predictable User-Specified Tokens—
  15. CVE-2026-21959Vulnerability in the Oracle Workflow product of Oracle E-Business Suite (component: Workflow Loader). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allo...4.9

Product grouping is registry-driven, with AI assist and human review. How it works

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store