PatchSiren

PatchSiren cyber security CVE debrief

CVE-2026-60321 Oracle CVE debrief

AI-assisted PatchSiren debrief based on the supplied source corpus. The CVE record was published on 2026-07-21T22:17:34.967Z and has not been modified since then. The NVD entry is currently Undergoing Analysis. This vulnerability affects Oracle Project Manufacturing product of Oracle E-Business Suite (component: PJM Command Center) version V16. It has a CVSS score of 5.7 and allows high privileged attackers with logon to the infrastructure where Oracle Project Manufacturing executes to compromise Oracle Project Manufacturing. Successful attacks can result in unauthorized creation, deletion or modification access to critical data or all Oracle Project Manufacturing accessible data as well as unauthorized access to critical data or complete access to all Oracle Project Manufacturing accessible data. Organizations should review and apply patches or mitigations, monitor for suspicious activity, and verify data integrity.

Vendor
Oracle
Product
Project Manufacturing
CVSS
MEDIUM 5.7
CISA KEV
Not listed in stored evidence
Original CVE published
2026-07-21
Original CVE updated
2026-07-31
Advisory published
2026-07-21
Advisory updated
2026-07-31

Who should care

Organizations using Oracle Project Manufacturing product of Oracle E-Business Suite (component: PJM Command Center) version V16 should be aware of this vulnerability and take necessary actions to mitigate the risk.

Technical summary

The CVE-2026-60321 vulnerability affects Oracle Project Manufacturing product of Oracle E-Business Suite (component: PJM Command Center) version V16. The vulnerability has a CVSS score of 5.7 and allows high privileged attackers with logon to the infrastructure where Oracle Project Manufacturing executes to compromise Oracle Project Manufacturing. Successful attacks can result in unauthorized creation, deletion or modification access to critical data or all Oracle Project Manufacturing accessible data as well as unauthorized access to critical data or complete access to all Oracle Project Manufacturing accessible data.

Defensive priority

Medium priority given the CVSS score of 5.7 and the potential for unauthorized creation, deletion, or modification access to critical data or all Oracle Project Manufacturing accessible data.

Recommended defensive actions

  • Review and apply Oracle's security patches for CVE-2026-60321
  • Implement compensating controls to restrict access to critical data or systems
  • Monitor for suspicious activity related to Oracle Project Manufacturing
  • Verify the integrity of Oracle Project Manufacturing data
  • Conduct regular security audits and risk assessments

Evidence notes

The CVE-2026-60321 vulnerability affects Oracle Project Manufacturing product of Oracle E-Business Suite (component: PJM Command Center) version V16. The vulnerability has a CVSS score of 5.7 and allows high privileged attackers with logon to the infrastructure where Oracle Project Manufacturing executes to compromise Oracle Project Manufacturing.

Official resources

AI-assisted PatchSiren debrief based on the supplied source corpus. The CVE record was published on 2026-07-21T22:17:34.967Z and has not been modified since then.