CVE-2026-60865Medium· 6.8▾ SunlitVulnerability in the Service Delivery Platform product of Oracle Fusion Middleware (component: Messaging Enabler). Supported versions that are affected are 14.1.2.0.0 and 12.2.1.4.0. Easily exploitable vulnerability allows high privile…
▾ Sunlit zone — Low / medium · no exploitation signal
impact 37.4 · likelihood 0.1 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Exploit-prediction probability, daily snapshots since Aug 22.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
Last analysed / modified upstream
0.4%
Vulnerability in the Service Delivery Platform product of Oracle Fusion Middleware (component: Messaging Enabler). Supported versions that are affected are 14.1.2.0.0 and 12.2.1.4.0. Easily exploitable vulnerability allows high privileged attacker with network access via HTTP to compromise Service Delivery Platform. While the vulnerability is in Service Delivery Platform, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Service Delivery Platform accessible data. CVSS 3.1 Base Score 6.8 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:N/A:N).
service_delivery_platformRefer to the linked advisories for vendor-supplied fixes and affected version ranges.
Connected by shared product, vendor, weakness, or advisory.
CVE-2026-60866Medium· 6.5Vulnerability in the Service Delivery Platform product of Oracle Fusion Middleware (component: Messaging Enabler)
CVE-2026-60861Critical· 9.6Vulnerability in the Service Delivery Platform product of Oracle Fusion Middleware (component: Messaging Enabler)
CVE-2026-60860High· 8.7Vulnerability in the Service Delivery Platform product of Oracle Fusion Middleware (component: Messaging Enabler)
CVE-2026-87266High· 8.2Vulnerability in the Oracle Agile PLM product of Oracle Supply Chain (component: Application Server)
CVE-2026-87265High· 8.1Vulnerability in the Oracle Purchasing product of Oracle E-Business Suite (component: Other issue)
CVE-2026-87250High· 7.6Vulnerability in the Oracle Hyperion Financial Management product of Oracle Hyperion (component: Security)