Vulnerability in Oracle Coherence Affecting Oracle Fusion Middleware
CVE-2026-60282
5.4MEDIUM
What is CVE-2026-60282?
A vulnerability in Oracle Coherence, part of Oracle Fusion Middleware, presents an opportunity for low-privileged attackers with network access to exploit the system via TCP. This flaw can allow unauthorized updates, inserts, or deletions of data, as well as unauthorized read access to certain data within Oracle Coherence repositories. The affected versions include 12.2.1.4.0, 14.1.1.0.0, 14.1.2.0.0, and 15.1.1.0.0, making it crucial for users to assess their security posture and apply the recommended mitigations provided by Oracle.
Affected Version(s)
Oracle Coherence 12.2.1.4.0
Oracle Coherence 14.1.1.0.0
Oracle Coherence 14.1.2.0.0