What is CVE-2026-60367?
CVE-2026-60367 is a vulnerability in the Oracle Platform Security for Java within Oracle Fusion Middleware. It affects versions 12.2.1.4.0 and 14.1.2.0.0, allowing an unauthenticated attacker with network access via HTTP to easily exploit the system. Immediate application of Oracle's security patches is recommended.
Azərbaycanca: CVE-2026-60367 Oracle Fusion Middleware-in 'Oracle Platform Security for Java' məhsulunda aşkarlanmış boşluqdur. Bu boşluq autentifikasiya olunmamış uzaqdan hücumçuya şəbəkə üzərindən HTTP vasitəsilə zəif komponentə müdaxilə etməyə imkan verir. Oracle-in rəsmi yeniləmələrini dərhal tətbiq etmək tövsiyə olunur.
Related CVEs
link basis: shared vendor: Oracle
FAQ1
Is authentication required to exploit CVE-2026-60367?
No, this vulnerability allows an unauthenticated attacker with network access via HTTP to compromise the component.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.