Vulnerability in Oracle Platform Security for Java Affecting Oracle Fusion Middleware
CVE-2026-60371

8HIGH

Key Information:

Vendor

Oracle

Vendor
CVE Published:
22 July 2026

What is CVE-2026-60371?

A vulnerability exists in Oracle Platform Security for Java within Oracle Fusion Middleware due to improper access control. This issue could allow a low privileged attacker with access to the physical communication segment of the hardware to compromise the Oracle Platform Security for Java. Although the vulnerability is localized to this product, successful exploitation may significantly affect other connected applications. Attackers leveraging this vulnerability could gain significant control over the Oracle Platform Security for Java components, leading to potential data breaches and system exploitation.

Affected Version(s)

Oracle Platform Security for Java 12.2.1.4.0

Oracle Platform Security for Java 14.1.2.0.0

References

CVSS V3.1

Score:
8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Adjacent Network
Attack Complexity:
High
Privileges Required:
Low
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.