Vulnerability in Oracle WebCenter Content Affects Oracle Fusion Middleware
CVE-2026-61291

7.8HIGH

Key Information:

Vendor

Oracle

Vendor
CVE Published:
18 August 2026

What is CVE-2026-61291?

A security flaw has been identified in Oracle WebCenter Content that may allow a low privileged attacker, who has logged onto the system, to compromise the integrity, confidentiality, and availability of the application. This vulnerability could lead to unauthorized access and complete takeover of the Oracle WebCenter Content platform, thereby impacting the data managed by the application. It is imperative for users and administrators to be vigilant and apply necessary patches to mitigate any risks associated with this vulnerability.

Affected Version(s)

Oracle WebCenter Content 12.2.1.4.0

Oracle WebCenter Content 14.1.2.0.0

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.