Oracle REST Data Services Vulnerability Allowing Unauthorized Data Access
CVE-2026-46842
5.3MEDIUM
What is CVE-2026-46842?
A vulnerability in Oracle REST Data Services allows unauthenticated attackers with network access via HTTPS to exploit the system. The affected versions, ranging from 24.2.0 to 26.1.0, are susceptible to unauthorized updates, inserts, or deletions of accessible data. This security flaw poses a risk of data integrity breaches and requires immediate mitigation to safeguard sensitive information.
Affected Version(s)
Oracle REST Data Services 24.2.0 <= 26.1.0