Vulnerability in Oracle Agile Product Lifecycle Management for Process
CVE-2026-21944
6.5MEDIUM
Key Information:
- Vendor
Oracle
- Vendor
- CVE Published:
- 20 January 2026
What is CVE-2026-21944?
A vulnerability exists in the Oracle Agile Product Lifecycle Management for Process, specifically in the Product Quality Management component. This issue allows a low privileged attacker with network access via HTTP to exploit the software. Successful exploitation can result in unauthorized access to critical data or potentially complete access to all accessible data within the Agile Product Lifecycle Management system. This poses significant risks, especially for organizations relying on this software for managing their product lifecycle.
Affected Version(s)
Oracle Agile Product Lifecycle Management for Process 6.2.4