22766 CVE security advisories tagged "access:pre-auth" with AI Chinese analysis, CVSS, references and POCs.
The tag "access:pre-auth" identifies vulnerabilities that allow unauthenticated attackers to gain unauthorized access to a system, application, or network resource before legitimate credentials are verified. This classification is critical because it represents the lowest barrier to entry for exploitation, enabling remote code execution, data exfiltration, or full system compromise without prior authentication. Typical scenarios involve flaws in authentication mechanisms, such as broken access controls, insecure direct object references, or logic errors in session management that bypass login requirements. Attackers frequently target these weaknesses via exposed APIs, administrative interfaces, or default configurations. Because no user interaction or valid credentials are needed, pre-authentication flaws are among the most severe and widely exploited security issues, often leading to immediate breach of confidentiality, integrity, and availability across affected infrastructure.
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-60532 | Oracle identity manager connector 安全漏洞 — Oracle Identity Manager Connector | 9.8 | Critical | 2026-07-21 |
| CVE-2026-60527 | Oracle WebLogic Server 安全漏洞 — Oracle WebLogic Server | 7.1 | High | 2026-07-21 |
| CVE-2026-60521 | Oracle Advanced Pricing 安全漏洞 — Oracle Advanced Pricing | 6.5 | Medium | 2026-07-21 |
| CVE-2026-60494 | Oracle JD Edwards EnterpriseOne General Ledger 安全漏洞 — JD Edwards EnterpriseOne General Ledger | 7.0 | High | 2026-07-21 |
| CVE-2026-60471 | Oracle WebCenter Content: Imaging 安全漏洞 — WebCenter Content: Imaging | 8.3 | High | 2026-07-21 |
| CVE-2026-60467 | Oracle WebCenter Content: Imaging 安全漏洞 — WebCenter Content: Imaging | 7.5 | High | 2026-07-21 |
| CVE-2026-60463 | Oracle WebCenter Content: Imaging 安全漏洞 — WebCenter Content: Imaging | 9.8 | Critical | 2026-07-21 |
| CVE-2026-60462 | Oracle WebCenter Content 安全漏洞 — Oracle WebCenter Content | 8.1 | High | 2026-07-21 |
| CVE-2026-60460 | Oracle WebCenter Enterprise Capture 安全漏洞 — Oracle WebCenter Enterprise Capture | 9.8 | Critical | 2026-07-21 |
| CVE-2026-60450 | Oracle WebCenter Content 安全漏洞 — Oracle WebCenter Content | 8.1 | High | 2026-07-21 |
| CVE-2026-60449 | Oracle WebCenter Content 安全漏洞 — Oracle WebCenter Content | 7.1 | High | 2026-07-21 |
| CVE-2026-60448 | Oracle WebCenter Content 安全漏洞 — Oracle WebCenter Content | 8.7 | High | 2026-07-21 |
| CVE-2026-60446 | Oracle WebCenter Enterprise Capture 安全漏洞 — Oracle WebCenter Enterprise Capture | 9.8 | Critical | 2026-07-21 |
| CVE-2026-60442 | Oracle Service Delivery Platform 安全漏洞 — Service Delivery Platform | 9.8 | Critical | 2026-07-21 |
| CVE-2026-60441 | Oracle Service Delivery Platform 安全漏洞 — Service Delivery Platform | 9.8 | Critical | 2026-07-21 |
| CVE-2026-60438 | Oracle HTTP Server 安全漏洞 — Oracle HTTP Server | 9.1 | Critical | 2026-07-21 |
| CVE-2026-60436 | Oracle Unified Directory 安全漏洞 — Oracle Unified Directory | 7.5 | High | 2026-07-21 |
| CVE-2026-60435 | Oracle WebCenter Content 安全漏洞 — Oracle WebCenter Content | 9.8 | Critical | 2026-07-21 |
| CVE-2026-60431 | Oracle HTTP Server 安全漏洞 — Oracle HTTP Server | 8.6 | High | 2026-07-21 |
| CVE-2026-60428 | Oracle Unified Directory 安全漏洞 — Oracle Unified Directory | 8.2 | High | 2026-07-21 |
| CVE-2026-60427 | Oracle Unified Directory 安全漏洞 — Oracle Unified Directory | 8.7 | High | 2026-07-21 |
| CVE-2026-60425 | Oracle Unified Directory 安全漏洞 — Oracle Unified Directory | 7.5 | High | 2026-07-21 |
| CVE-2026-60424 | Oracle Unified Directory 安全漏洞 — Oracle Unified Directory | 9.0 | Critical | 2026-07-21 |
| CVE-2026-60417 | Oracle Unified Directory 安全漏洞 — Oracle Unified Directory | 8.1 | High | 2026-07-21 |
| CVE-2026-60416 | Oracle Access Manager 安全漏洞 — Oracle Access Manager | 8.1 | High | 2026-07-21 |
| CVE-2026-60411 | Oracle TimesTen In-Memory Database 安全漏洞 — TimesTen In-Memory Database | 6.5 | Medium | 2026-07-21 |
| CVE-2026-60397 | Oracle GoldenGate 安全漏洞 — Oracle GoldenGate | 4.3 | Medium | 2026-07-21 |
| CVE-2026-60394 | Oracle GoldenGate 安全漏洞 — Oracle GoldenGate | 5.3 | Medium | 2026-07-21 |
| CVE-2026-60389 | Oracle Service Delivery Platform 安全漏洞 — Service Delivery Platform | 10.0 | Critical | 2026-07-21 |
| CVE-2026-60388 | Oracle Service Delivery Platform 安全漏洞 — Service Delivery Platform | 9.8 | Critical | 2026-07-21 |
Vulnerabilities classified as access:pre-auth represent 22766 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.