THREATOPS
THREAT OPSThreat News › [NVD] CVE-2026-61140 (CRITICAL 9.8) — Vulnerability in the Oracle WebCenter Sites product of Oracle Fusion Middleware (component: WebCenter Sites). The supported version that is affected is 14.1.2.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle

[NVD] CVE-2026-61140 (CRITICAL 9.8) — Vulnerability in the Oracle WebCenter Sites product of Oracle Fusion Middleware (component: WebCenter Sites). The supported version that is affected is 14.1.2.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle

mednvdPublished 2026-07-21

CVE-2026-61140 CVSS: 9.8 CRITICAL Published: 2026-07-21T22:18:45.300

Vulnerability in the Oracle WebCenter Sites product of Oracle Fusion Middleware (component: WebCenter Sites). The supported version that is affected is 14.1.2.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle WebCenter Sites. Successful attacks of this vuln

Indicators of compromise

Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-61140