What is CVE-2026-60391?
This vulnerability exists in the Server component of Oracle Hyperion Financial Reporting. It allows unauthenticated attackers to exploit the system via HTTP over a network. Affected users should apply the security update provided by Oracle.
Azərbaycanca: Bu boşluq Oracle Hyperion Financial Reporting-in Server komponentində aşkar edilib. Şəbəkə üzərindən HTTP ilə autentifikasiyasız istismar mümkündür. Təsirə məruz qalan istifadəçilər Oracle tərəfindən təqdim ediləcək təhlükəsizlik yeniləməsini tətbiq etməlidirlər.
Related CVEs
link basis: same weakness class CWE-306; shared vendor: Oracle
FAQ1
Does CVE-2026-60391 in Oracle Hyperion Financial Reporting require authentication for exploitation?
No, the vulnerability can be exploited unauthenticated via HTTP over a network.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.