THREAT OPS › Threat News › [NVD] CVE-2026-60296 (CRITICAL 9.8) — Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 12.2.1.4.0, 14.1.1.0.0, 14.1.2.0.0 and 15.1.1.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via TCP
[NVD] CVE-2026-60296 (CRITICAL 9.8) — Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 12.2.1.4.0, 14.1.1.0.0, 14.1.2.0.0 and 15.1.1.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via TCP
CVE-2026-60296 CVSS: 9.8 CRITICAL Published: 2026-07-21T22:17:32.160
Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 12.2.1.4.0, 14.1.1.0.0, 14.1.2.0.0 and 15.1.1.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via TCP to compromise Oracle Coherence. Successful attack
Indicators of compromise
- CVE-2026-60296cve
- 12.2.1.4ipv4
- 14.1.1.0ipv4
- 14.1.2.0ipv4
- 15.1.1.0ipv4
Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-60296