Oracle Coherence Vulnerability in Oracle Fusion Middleware
CVE-2026-83354

6.3MEDIUM

Key Information:

Vendor

Oracle

Vendor
CVE Published:
15 September 2026

What is CVE-2026-83354?

A vulnerability has been identified in the Oracle Coherence component of Oracle Fusion Middleware. This issue allows low-privileged attackers with network access via HTTP to potentially compromise Oracle Coherence. Although the vulnerability is specific to Oracle Coherence, successful exploitation can lead to unauthorized access to critical data, affecting not only the compromised component but potentially other products as well. Organizations using the supported version, 15.1.1.0.0, should act quickly to mitigate the risk of data breaches that could arise from this vulnerability.

Affected Version(s)

Oracle Coherence 15.1.1.0.0

References

CVSS V3.1

Score:
6.3
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
Low
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.