These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.
A critical vulnerability was discovered in PeopleSoft Enterprise FIN Common Objects Argentina, a component of Oracle PeopleSoft. This vulnerability, tracked as CVE-2026-61242, has a CVSS score of 9.9 and can be easily exploited by a low-privileged attacker with network access via HTTP. The vulnerability is located in the Staffing component of PeopleSoft Enterprise FIN Common Objects Argentina, version 9.1 [truncated]
A high-severity vulnerability was discovered in PeopleSoft Enterprise FIN Common Objects Argentina, a component of Oracle PeopleSoft. The vulnerability, tracked as CVE-2026-61240, has a CVSS score of 8.2 and allows an unauthenticated attacker to compromise the system and access critical data. This vulnerability is located in the eSettlements component of PeopleSoft Enterprise FIN Common Objects Argentina, [truncated]
A critical vulnerability was discovered in PeopleSoft Enterprise FIN Common Objects Argentina, specifically in the eProcurement component, which allows unauthenticated attackers with network access via HTTP to compromise the system. The vulnerability has a CVSS score of 9.9 and can result in unauthorized creation, deletion, or modification access to critical data, as well as unauthorized read access and p [truncated]
A critical vulnerability was found in PeopleSoft Enterprise FIN Common Objects Argentina, a component of Oracle PeopleSoft. The vulnerability has a CVSS score of 9.9 and can be exploited by unauthenticated attackers with network access via HTTP, potentially impacting multiple products. This vulnerability is classified as easily exploitable and allows attackers to compromise the system, leading to unauthor [truncated]
A high-severity vulnerability was found in PeopleSoft Enterprise FIN Common Objects Brazil, specifically in the Staffing component. The vulnerability, tracked as CVE-2026-61236, has a CVSS score of 7.5 and allows unauthenticated attackers with network access via HTTP to compromise the system and access critical data. This vulnerability is easily exploitable and can result in unauthorized access to critica [truncated]
A critical vulnerability was found in PeopleSoft Enterprise HCM Global Payroll Switzerland, allowing high-privileged attackers with network access via HTTP to compromise the system. The vulnerability has a CVSS score of 9.1, indicating a critical vulnerability. Successful attacks can result in takeover of PeopleSoft Enterprise HCM Global Payroll Switzerland. Organizations using PeopleSoft Enterprise HCM G [truncated]
A high-severity vulnerability was found in PeopleSoft Enterprise FIN Common Objects Brazil, specifically in the eProcurement component of version 9.1. The vulnerability has a CVSS score of 7.4 and can allow unauthenticated attackers with network access via HTTP to compromise the system, leading to unauthorized creation, deletion, or modification of critical data. This vulnerability is difficult to exploit [truncated]
A critical vulnerability was identified in the PeopleSoft Enterprise FIN Common Objects Brazil product of Oracle PeopleSoft. The vulnerability has a CVSS 3.1 Base Score of 9.8, indicating a high impact on confidentiality, integrity, and availability. The supported version affected is 9.1. An unauthenticated attacker with network access via HTTP can easily exploit this vulnerability to compromise PeopleSof [truncated]
A high-severity vulnerability was discovered in PeopleSoft Enterprise FIN Common Objects Brazil. The vulnerability, tracked as CVE-2026-61232, has a CVSS score of 7.5 and allows unauthenticated attackers with network access via HTTP to compromise the system and access critical data. This vulnerability is located in the Common Objects component and is easily exploitable. Successful attacks can result in un [truncated]
A high-severity vulnerability was discovered in Oracle Communications Converged Application Server, affecting the RTP Proxy component, with a CVSS score of 7.5. This vulnerability is difficult to exploit and requires a high-privileged attacker with logon access to the infrastructure. Successful exploitation can lead to a takeover of the application server. The affected product or component is Oracle Commu [truncated]
A high-severity vulnerability was discovered in Oracle Communications Converged Application Server, a product used for converged application server solutions. This vulnerability, tracked as CVE-2026-61225, has a CVSS score of 8.1 and can be exploited by unauthenticated attackers with network access via TCP/IP. The vulnerability is located in the Core component and is difficult to exploit, but successful e [truncated]
A high-severity vulnerability was found in Oracle Communications Converged Application Server (component: Security). This AI-assisted PatchSiren debrief provides an overview of CVE-2026-61224, including its CVSS score of 8.0, impacts on confidentiality, integrity, and availability, and recommended actions. The vulnerability is difficult to exploit, requiring high privileges and network access via TLS. Suc [truncated]
The CVE-2026-61223 vulnerability affects Oracle Communications Converged Application Server versions 8.2 and 8.3, allowing unauthenticated attackers with network access via TCP/IP to compromise the server, potentially leading to takeover. This difficult-to-exploit vulnerability has a CVSS 3.1 Base Score of 9.0, indicating critical severity. Organizations should prioritize patching to prevent potential imp [truncated]
A vulnerability was found in Oracle Item Master, a component of Oracle E-Business Suite. This issue, located in the iSet-up bugs component, is easily exploitable and allows a low-privileged attacker with network access via HTTP to compromise Oracle Item Master. Successful attacks can lead to unauthorized update, insert, or delete access to some accessible data, as well as unauthorized read access to a sub [truncated]
A vulnerability in the Oracle Banking Origination product of Oracle Financial Services Applications (component: Configuration) allows an unauthenticated attacker with network access via HTTP to compromise Oracle Banking Origination. The supported version that is affected is 14.5.0.16.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Banki [truncated]
A vulnerability was discovered in the Oracle Security Service product of Oracle Fusion Middleware. The affected version is 12.2.1.4.0. This difficult-to-exploit vulnerability allows a low-privileged attacker with network access via TLS to compromise Oracle Security Service. Successful attacks require human interaction from a person other than the attacker and can result in unauthorized creation, deletion, [truncated]
A vulnerability was discovered in Oracle Payroll, a component of Oracle E-Business Suite. The vulnerability is easily exploitable, allowing a low-privileged attacker with network access via HTTP to compromise the system. Successful attacks can result in unauthorized update, insert, or delete access to some Oracle Payroll accessible data, as well as unauthorized read access to a subset of Oracle Payroll ac [truncated]
A low-severity vulnerability was found in Oracle HRMS (UK), affecting versions 12.2.3-12.2.15. This issue, CVE-2026-61214, has a CVSS score of 2.2 and allows high-privileged attackers with network access via HTTP to compromise Oracle HRMS (UK), potentially leading to unauthorized read access to a subset of accessible data. The vulnerability is difficult to exploit and requires high privileges and network [truncated]
A critical vulnerability was discovered in the RDBMS component of Oracle Database Server. The vulnerability affects versions 19.3-19.31 and 23.4.0-23.26.2. It allows a low-privileged attacker with Execute DBMS_CLOUD privilege and network access via Oracle Net to compromise RDBMS. Successful attacks can result in takeover of RDBMS, with a CVSS 3.1 Base Score of 9.9. This vulnerability has a high impact on [truncated]
A high-severity vulnerability was found in PeopleSoft Enterprise SCM Manufacturing, specifically in the Security component. The vulnerability has a CVSS score of 7.4 and can allow unauthenticated attackers to compromise the system, potentially leading to unauthorized creation, deletion, or modification of critical data. Organizations using PeopleSoft Enterprise SCM Manufacturing version 9.2 should priorit [truncated]
A critical vulnerability was discovered in PeopleSoft In-Memory Project Discovery, a component of Oracle PeopleSoft. The vulnerability, tracked as CVE-2026-61209, has a CVSS score of 9.9, indicating a high severity level. The vulnerability allows a low-privileged attacker with network access via HTTP to compromise PeopleSoft In-Memory Project Discovery. Successful attacks can result in the takeover of Peo [truncated]
A critical vulnerability was discovered in PeopleSoft Enterprise SCM eProcurement, specifically in the Manage Requisition Status component. The vulnerability has a CVSS score of 9.3 and can allow unauthenticated attackers with network access via HTTP to compromise the system. Successful attacks can result in unauthorized access to critical data or complete access to all PeopleSoft Enterprise SCM eProcurem [truncated]
A high-severity vulnerability was found in PeopleSoft Enterprise SCM Purchasing, specifically in the Purchasing component of version 9.2. The vulnerability has a CVSS score of 8.2 and can allow unauthenticated attackers with network access via HTTP to compromise the system, potentially leading to unauthorized creation, deletion, or modification of critical data. This vulnerability is considered high prior [truncated]
A critical vulnerability was discovered in PeopleSoft Enterprise FIN Program Management, specifically in the Primavera Integration component. The vulnerability has been assigned a CVSS score of 9.0, indicating a high severity level. It is easily exploitable by a low-privileged attacker with network access via HTTP, potentially leading to a takeover of the affected system. This type of vulnerability typica [truncated]
A critical vulnerability was discovered in PeopleSoft Enterprise FIN Expenses. This vulnerability, tracked as CVE-2026-61203, has a CVSS score of 9.4 and can be exploited by unauthenticated attackers with network access via HTTP. Successful attacks can lead to unauthorized creation, deletion, or modification of critical data, as well as unauthorized access to critical data or complete access to all People [truncated]
A high-severity vulnerability was discovered in Oracle Solaris, specifically in the Utility component. The vulnerability, tracked as CVE-2026-61202, has a CVSS score of 7.5 and can allow a low-privileged attacker with logon access to compromise the system. This type of vulnerability can have significant impacts on the security of Oracle Solaris systems, particularly in environments where low-privileged ac [truncated]
A critical vulnerability was discovered in PeopleSoft Enterprise CRM Common Objects, which could allow an unauthenticated attacker with network access via HTTP to compromise the system. The vulnerability has a CVSS score of 9.0, indicating a high severity level. This vulnerability affects version 9.2.23 of PeopleSoft Enterprise CRM Common Objects and has a significant impact on the system, potentially all [truncated]
A vulnerability exists in Oracle Labor Distribution, a component of Oracle E-Business Suite. The affected versions are 12.2.3-12.2.15. This vulnerability allows a low-privileged attacker with network access via HTTP to compromise Oracle Labor Distribution. Successful attacks can result in unauthorized update, insert or delete access to some accessible data and unauthorized read access to a subset of acces [truncated]
A critical vulnerability was discovered in Oracle Identity Manager, specifically in the OIM Legacy UI component. The vulnerability is easily exploitable and allows unauthenticated attackers with network access via HTTP to compromise the system. Successful attacks can result in unauthorized creation, deletion, or modification of critical data, as well as unauthorized access to critical data or complete acc [truncated]
A critical vulnerability was discovered in Oracle Identity Manager, specifically in the OIM Legacy UI component. The vulnerability is easily exploitable, allowing unauthenticated attackers with network access via HTTP to compromise the system. Successful attacks can result in a complete takeover of Oracle Identity Manager. This vulnerability has a high impact on confidentiality, integrity, and availabilit [truncated]