Unauthenticated Access Vulnerability in Helidon Product of Oracle Fusion Middleware
CVE-2026-73918

7.3HIGH

Key Information:

Vendor

Oracle

Status
Vendor
CVE Published:
18 August 2026

What is CVE-2026-73918?

This vulnerability in Oracle's Helidon product within the Fusion Middleware suite allows unauthenticated attackers with network access via HTTP to compromise the system. An attacker can exploit this weakness to gain unauthorized access for updating, inserting, or deleting data. The attack can also enable unauthorized reading of sensitive information and may lead to a partial denial of service for Helidon, affecting the integrity and availability of the application.

Affected Version(s)

Helidon 4.5.0

References

CVSS V3.1

Score:
7.3
Severity:
HIGH
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.