PatchSiren cyber security CVE debrief
CVE-2026-60321 Oracle CVE debrief
AI-assisted PatchSiren debrief based on the supplied source corpus. The CVE record was published on 2026-07-21T22:17:34.967Z and has not been modified since then. The NVD entry is currently Undergoing Analysis. This vulnerability affects Oracle Project Manufacturing product of Oracle E-Business Suite (component: PJM Command Center) version V16. It has a CVSS score of 5.7 and allows high privileged attackers with logon to the infrastructure where Oracle Project Manufacturing executes to compromise Oracle Project Manufacturing. Successful attacks can result in unauthorized creation, deletion or modification access to critical data or all Oracle Project Manufacturing accessible data as well as unauthorized access to critical data or complete access to all Oracle Project Manufacturing accessible data. Organizations should review and apply patches or mitigations, monitor for suspicious activity, and verify data integrity.
- Vendor
- Oracle
- Product
- Project Manufacturing
- CVSS
- MEDIUM 5.7
- CISA KEV
- Not listed in stored evidence
- Original CVE published
- 2026-07-21
- Original CVE updated
- 2026-07-31
- Advisory published
- 2026-07-21
- Advisory updated
- 2026-07-31
Who should care
Organizations using Oracle Project Manufacturing product of Oracle E-Business Suite (component: PJM Command Center) version V16 should be aware of this vulnerability and take necessary actions to mitigate the risk.
Technical summary
The CVE-2026-60321 vulnerability affects Oracle Project Manufacturing product of Oracle E-Business Suite (component: PJM Command Center) version V16. The vulnerability has a CVSS score of 5.7 and allows high privileged attackers with logon to the infrastructure where Oracle Project Manufacturing executes to compromise Oracle Project Manufacturing. Successful attacks can result in unauthorized creation, deletion or modification access to critical data or all Oracle Project Manufacturing accessible data as well as unauthorized access to critical data or complete access to all Oracle Project Manufacturing accessible data.
Defensive priority
Medium priority given the CVSS score of 5.7 and the potential for unauthorized creation, deletion, or modification access to critical data or all Oracle Project Manufacturing accessible data.
Recommended defensive actions
- Review and apply Oracle's security patches for CVE-2026-60321
- Implement compensating controls to restrict access to critical data or systems
- Monitor for suspicious activity related to Oracle Project Manufacturing
- Verify the integrity of Oracle Project Manufacturing data
- Conduct regular security audits and risk assessments
Evidence notes
The CVE-2026-60321 vulnerability affects Oracle Project Manufacturing product of Oracle E-Business Suite (component: PJM Command Center) version V16. The vulnerability has a CVSS score of 5.7 and allows high privileged attackers with logon to the infrastructure where Oracle Project Manufacturing executes to compromise Oracle Project Manufacturing.
Official resources
-
CVE-2026-60321 CVE record
CVE.org
-
CVE-2026-60321 NVD detail
NVD
-
Source item URL
nvd_modified
-
Mitigation or vendor reference
[email protected] - Vendor Advisory
AI-assisted PatchSiren debrief based on the supplied source corpus. The CVE record was published on 2026-07-21T22:17:34.967Z and has not been modified since then.