Security Vulnerability in Oracle Hyperion Financial Management Software
CVE-2026-87242

7.4HIGH

Key Information:

Vendor

Oracle

Vendor
CVE Published:
15 September 2026

What is CVE-2026-87242?

A vulnerability exists in Oracle Hyperion Financial Management that could allow an unauthenticated attacker with network access via TLS to compromise the system. This vulnerability could lead to unauthorized creation, deletion, or modification of access to critical data, resulting in potential exposure of all accessible data within the Oracle Hyperion Financial Management environment.

Affected Version(s)

Oracle Hyperion Financial Management 11.2.26.0.000

References

CVSS V3.1

Score:
7.4
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.