Vulnerability in Oracle Fusion Middleware's Centralized Thirdparty Jars
CVE-2026-60439
8.8HIGH
Key Information:
- Vendor
Oracle
- Vendor
- CVE Published:
- 22 July 2026
What is CVE-2026-60439?
A vulnerability exists in the Oracle Platform Security for Java component within Oracle Fusion Middleware that can be exploited by low-privileged attackers with network access via HTTP. The flaw is located in Centralized Thirdparty Jars, affecting specific versions 12.2.1.4.0 and 14.1.2.0.0. Attackers leveraging this vulnerability can gain control over Oracle Platform Security for Java, compromising the system's security and integrity.
Affected Version(s)
Oracle Platform Security for Java 12.2.1.4.0
Oracle Platform Security for Java 14.1.2.0.0