What is CVE-2026-60370?
This CVE is a difficult-to-exploit vulnerability in Oracle Fusion Middleware's Platform Security for Java product, affecting versions 12.2.1.4.0 and 14.1.2.0.0. It allows a low-privileged attacker with network access via HTTP to compromise the system. Immediate patch application from Oracle's critical update is strongly recommended.
Azərbaycanca: Bu CVE Oracle Fusion Middleware-in Platform Security for Java məhsulunda çətin istismar edilə bilən bir zəiflikdir. 12.2.1.4.0 və 14.1.2.0.0 versiyalarına təsir edir, şəbəkə üzərindən aşağı səlahiyyətli hücumçuya imkan yaradır. Oracle-dan kritik yamaq yeniləməsini dərhal tətbiq etmək tövsiyə olunur.
Related CVEs
link basis: shared vendor: Oracle
FAQ2
Which Oracle product is affected by CVE-2026-60370?
The Platform Security for Java component of Oracle Fusion Middleware.
What privilege level is required for an attacker to exploit this vulnerability over the network?
A low-privileged attacker is required.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.