THREAT OPS › Threat News › [NVD] CVE-2026-60542 (CRITICAL 9.9) — Vulnerability in the Oracle Business Process Management Suite product of Oracle Fusion Middleware (component: Human Workflow). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Easily exploitable vulnerability allows low privileged attacker with network access
[NVD] CVE-2026-60542 (CRITICAL 9.9) — Vulnerability in the Oracle Business Process Management Suite product of Oracle Fusion Middleware (component: Human Workflow). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Easily exploitable vulnerability allows low privileged attacker with network access
CVE-2026-60542 CVSS: 9.9 CRITICAL Published: 2026-07-21T22:17:54.060
Vulnerability in the Oracle Business Process Management Suite product of Oracle Fusion Middleware (component: Human Workflow). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Easily exploitable vulnerability allows low privileged attacker with network access via T3, IIOP to compromise Oracle Business Proces
Indicators of compromise
- CVE-2026-60542cve
- 12.2.1.4ipv4
- 14.1.2.0ipv4
Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-60542