Security Flaw in Oracle Hyperion Data Relationship Management by Oracle
CVE-2026-70880

10CRITICAL

Key Information:

Vendor

Oracle

Vendor
CVE Published:
18 August 2026

What is CVE-2026-70880?

An unauthenticated remote access vulnerability exists in Oracle Hyperion Data Relationship Management, specifically affecting version 11.2.25.0.000. This flaw can be exploited by attackers with network access via TCP, allowing them to compromise the application without legitimate credentials. While the primary impact is on Oracle Hyperion Data Relationship Management, the implications of successful exploitation extend to potentially affecting interconnected systems and applications. This vulnerability underscores the critical need for robust security measures to protect sensitive data and maintain system integrity.

Affected Version(s)

Oracle Hyperion Data Relationship Management 11.2.25.0.000

References

CVSS V3.1

Score:
10
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.