Vulnerability in Oracle WebCenter Content Affects Oracle Fusion Middleware
CVE-2026-60934

8.7HIGH

Key Information:

Vendor

Oracle

Vendor
CVE Published:
18 August 2026

What is CVE-2026-60934?

A vulnerability exists in Oracle WebCenter Content within Oracle Fusion Middleware, which allows an unauthenticated attacker with network access via HTTP to compromise the system. The issue is present in the supported versions 12.2.1.4.0 and 14.1.2.0.0, potentially leading to unauthorized creation, deletion, or modification of critical data. Attackers exploiting this vulnerability can significantly affect the integrity and confidentiality of all accessible data within Oracle WebCenter Content. This raises concerns about the security of sensitive information and the overall stability of connected products.

Affected Version(s)

Oracle WebCenter Content 12.2.1.4.0

Oracle WebCenter Content 14.1.2.0.0

References

CVSS V3.1

Score:
8.7
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.