CVE-2026-60353

Vulnerability in the Oracle JDeveloper product of Oracle Fusion Middleware (component: ADF Faces). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Difficult to exploit vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle JDeveloper. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Oracle JDeveloper accessible data. CVSS 3.1 Base Score 3.1 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:N/A:N).
Configurations

No configuration.

History

21 Jul 2026, 22:17

Type Values Removed Values Added
New CVE

Information

Published : 2026-07-21 22:17

Updated : 2026-07-23 18:30


NVD link : CVE-2026-60353

Mitre link : CVE-2026-60353

CVE.ORG link : CVE-2026-60353


JSON object : View

Products Affected

No product.

CWE

No CWE.