Known Exploited Vulnerabilities (KEV)

ID Title Severity CVSS EPSS Source Updated
cve-2026-60573 Vulnerability in the Oracle Partner Management product of Oracle E-Business Suite (component: Partner Dashboard). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTPS to compromise Oracle Partner Management. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Partner Management accessible data as well as unauthorized read access to a subset of Oracle Partner Management accessible data and unauthorized ability to cause a partial denial of service (partial DOS) of Oracle Partner Management. CVSS 3.1 Base Score 6.3 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L). MEDIUM 6.3 0.26% cvelistv5 2026-08-07
cve-2026-60572 Vulnerability in the Oracle E-Business Suite Integrated SOA Gateway product of Oracle E-Business Suite (component: Web Service Provider). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle E-Business Suite Integrated SOA Gateway. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle E-Business Suite Integrated SOA Gateway accessible data as well as unauthorized read access to a subset of Oracle E-Business Suite Integrated SOA Gateway accessible data and unauthorized ability to cause a partial denial of service (partial DOS) of Oracle E-Business Suite Integrated SOA Gateway. CVSS 3.1 Base Score 6.3 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L). MEDIUM 6.3 0.26% cvelistv5 2026-08-06
cve-2026-60571 PUBLISHED MEDIUM 5.4 0.29% cvelistv5 2026-07-27
cve-2026-60570 PUBLISHED HIGH 7.8 0.16% cvelistv5 2026-07-27
cve-2026-60569 PUBLISHED MEDIUM 5.1 0.15% cvelistv5 2026-07-29
cve-2026-60568 PUBLISHED CRITICAL 9.9 0.43% cvelistv5 2026-08-01
cve-2026-60567 PUBLISHED CRITICAL 9.1 0.43% cvelistv5 2026-08-01
cve-2026-60566 PUBLISHED CRITICAL 9.8 0.51% cvelistv5 2026-08-01
cve-2026-60565 Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion Middleware (component: Runtime Tools). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle WebCenter Portal. While the vulnerability is in Oracle WebCenter Portal, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in takeover of Oracle WebCenter Portal. CVSS 3.1 Base Score 9.9 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H). CRITICAL 9.9 0.43% cvelistv5 2026-08-01
cve-2026-60564 Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion Middleware (component: Runtime Tools). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle WebCenter Portal. While the vulnerability is in Oracle WebCenter Portal, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Oracle WebCenter Portal accessible data as well as unauthorized access to critical data or complete access to all Oracle WebCenter Portal accessible data. CVSS 3.1 Base Score 9.6 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:N). CRITICAL 9.6 0.36% cvelistv5 2026-08-01
cve-2026-60563 PUBLISHED HIGH 8.8 0.43% cvelistv5 2026-08-01
cve-2026-60562 PUBLISHED CRITICAL 9.9 0.43% cvelistv5 2026-08-01
cve-2026-60561 PUBLISHED CRITICAL 9.9 0.43% cvelistv5 2026-08-01
cve-2026-60560 PUBLISHED HIGH 8.1 0.36% cvelistv5 2026-08-01
cve-2026-60559 PUBLISHED HIGH 8.6 0.41% cvelistv5 2026-07-29
cve-2026-60558 PUBLISHED HIGH 8.1 0.39% cvelistv5 2026-08-01
cve-2026-60557 PUBLISHED MEDIUM 6.5 0.37% cvelistv5 2026-07-27
cve-2026-60556 PUBLISHED HIGH 8.6 0.44% cvelistv5 2026-07-27
cve-2026-60555 PUBLISHED CRITICAL 9.8 0.51% cvelistv5 2026-08-01
cve-2026-60554 PUBLISHED HIGH 7.5 0.44% cvelistv5 2026-07-27
cve-2026-60553 PUBLISHED HIGH 8.7 0.34% cvelistv5 2026-08-01
cve-2026-60552 PUBLISHED CRITICAL 9.9 0.43% cvelistv5 2026-08-01
cve-2026-60551 Vulnerability in the Oracle WebCenter Sites product of Oracle Fusion Middleware (component: WebCenter Sites). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle WebCenter Sites. Successful attacks of this vulnerability can result in takeover of Oracle WebCenter Sites. CVSS 3.1 Base Score 9.8 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H). CRITICAL 9.8 0.51% cvelistv5 2026-08-01
cve-2026-60550 Vulnerability in the Oracle WebCenter Sites product of Oracle Fusion Middleware (component: WebCenter Sites). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle WebCenter Sites. While the vulnerability is in Oracle WebCenter Sites, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle WebCenter Sites accessible data. CVSS 3.1 Base Score 8.6 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N). HIGH 8.6 0.41% cvelistv5 2026-07-30
cve-2026-60549 PUBLISHED HIGH 8.8 0.43% cvelistv5 2026-07-27
cve-2026-60548 PUBLISHED HIGH 7.7 0.39% cvelistv5 2026-07-27
cve-2026-60547 PUBLISHED CRITICAL 9.9 0.43% cvelistv5 2026-07-27
cve-2026-60546 PUBLISHED HIGH 7.2 0.49% cvelistv5 2026-07-27
cve-2026-60545 PUBLISHED HIGH 8.8 0.43% cvelistv5 2026-07-27
cve-2026-60544 PUBLISHED HIGH 8.2 0.44% cvelistv5 2026-07-27