22430 CVE security advisories tagged "access:pre-auth" with AI Chinese analysis, CVSS, references and POCs.
The tag "access:pre-auth" identifies vulnerabilities that allow unauthenticated attackers to gain unauthorized access to a system, application, or network resource before legitimate credentials are verified. This classification is critical because it represents the lowest barrier to entry for exploitation, enabling remote code execution, data exfiltration, or full system compromise without prior authentication. Typical scenarios involve flaws in authentication mechanisms, such as broken access controls, insecure direct object references, or logic errors in session management that bypass login requirements. Attackers frequently target these weaknesses via exposed APIs, administrative interfaces, or default configurations. Because no user interaction or valid credentials are needed, pre-authentication flaws are among the most severe and widely exploited security issues, often leading to immediate breach of confidentiality, integrity, and availability across affected infrastructure.
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-60379 | Oracle Service Delivery Platform 安全漏洞 — Service Delivery Platform | 10.0 | Critical | 2026-07-21 |
| CVE-2026-60378 | Oracle Service Delivery Platform 安全漏洞 — Service Delivery Platform | 9.8 | Critical | 2026-07-21 |
| CVE-2026-60376 | Oracle Service Delivery Platform 安全漏洞 — Service Delivery Platform | 9.8 | Critical | 2026-07-21 |
| CVE-2026-60375 | Oracle Service Delivery Platform 安全漏洞 — Service Delivery Platform | 9.8 | Critical | 2026-07-21 |
| CVE-2026-60374 | Oracle Service Delivery Platform 安全漏洞 — Service Delivery Platform | 9.8 | Critical | 2026-07-21 |
| CVE-2026-60365 | Oracle HTTP Server 安全漏洞 — Oracle HTTP Server | 10.0 | Critical | 2026-07-21 |
| CVE-2026-60364 | Oracle HTTP Server 安全漏洞 — Oracle HTTP Server | 9.8 | Critical | 2026-07-21 |
| CVE-2026-60363 | Oracle HTTP Server 安全漏洞 — Oracle HTTP Server | 9.8 | Critical | 2026-07-21 |
| CVE-2026-60362 | Oracle Unified Directory 安全漏洞 — Oracle Unified Directory | 9.8 | Critical | 2026-07-21 |
| CVE-2026-60360 | Oracle Unified Directory 安全漏洞 — Oracle Unified Directory | 10.0 | Critical | 2026-07-21 |
| CVE-2026-60359 | Oracle Unified Directory 安全漏洞 — Oracle Unified Directory | 8.6 | High | 2026-07-21 |
| CVE-2026-60358 | Oracle Access Manager 安全漏洞 — Oracle Access Manager | 10.0 | Critical | 2026-07-21 |
| CVE-2026-60357 | Oracle Siebel CRM Integration 安全漏洞 — Siebel CRM Integration | 3.7 | Low | 2026-07-21 |
| CVE-2026-60356 | Oracle Access Manager 安全漏洞 — Oracle Access Manager | 8.6 | High | 2026-07-21 |
| CVE-2026-60355 | Oracle Access Manager 安全漏洞 — Oracle Access Manager | 9.8 | Critical | 2026-07-21 |
| CVE-2026-60354 | Oracle JDeveloper 安全漏洞 — Oracle JDeveloper | 3.7 | Low | 2026-07-21 |
| CVE-2026-60352 | Oracle JDeveloper 安全漏洞 — Oracle JDeveloper | 3.7 | Low | 2026-07-21 |
| CVE-2026-60351 | Oracle JDeveloper 安全漏洞 — Oracle JDeveloper | 4.8 | Medium | 2026-07-21 |
| CVE-2026-60348 | Oracle JDeveloper 安全漏洞 — Oracle JDeveloper | 5.9 | Medium | 2026-07-21 |
| CVE-2026-60346 | Oracle JD Edwards EnterpriseOne Tools 安全漏洞 — JD Edwards EnterpriseOne Tools | 3.7 | Low | 2026-07-21 |
| CVE-2026-60342 | Oracle Access Manager 安全漏洞 — Oracle Access Manager | 5.3 | Medium | 2026-07-21 |
| CVE-2026-60329 | Oracle Identity Manager 安全漏洞 — Oracle Identity Manager | 9.8 | Critical | 2026-07-21 |
| CVE-2026-60328 | Oracle Access Manager 安全漏洞 — Oracle Access Manager | 9.8 | Critical | 2026-07-21 |
| CVE-2026-60327 | Oracle Access Manager 安全漏洞 — Oracle Access Manager | 8.6 | High | 2026-07-21 |
| CVE-2026-60326 | Oracle Access Manager 安全漏洞 — Oracle Access Manager | 9.1 | Critical | 2026-07-21 |
| CVE-2026-60322 | Oracle Applications Manager 安全漏洞 — Oracle Applications Manager | 6.5 | Medium | 2026-07-21 |
| CVE-2026-60320 | Oracle Data Integrator 安全漏洞 — Oracle Data Integrator | 7.5 | High | 2026-07-21 |
| CVE-2026-60317 | Oracle MySQL Connectors 安全漏洞 — MySQL Connectors | 7.4 | High | 2026-07-21 |
| CVE-2026-60315 | Oracle MySQL Server 安全漏洞 — MySQL Server | 8.2 | High | 2026-07-21 |
| CVE-2026-60314 | Oracle MySQL Router 安全漏洞 — MySQL Router | 7.5 | High | 2026-07-21 |
Vulnerabilities classified as access:pre-auth represent 22430 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.