These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.
The CVE-2026-61103 vulnerability is a difficult-to-exploit issue in the PeopleSoft Enterprise CS Campus Community product of Oracle PeopleSoft, specifically in the Security component. The affected version is 9.2.38. This vulnerability allows unauthenticated attackers with access to the physical communication segment to compromise PeopleSoft Enterprise CS Campus Community, potentially leading to unauthoriz [truncated]
AI-assisted PatchSiren debrief based on the supplied source corpus. The CVE record was published on 2026-07-21T22:18:41.247Z and has not been modified since then. The vulnerability in Oracle MES for Process Manufacturing, a component of Oracle E-Business Suite, has a CVSS 3.1 Base Score of 8.2, indicating high severity. It allows unauthenticated attackers with network access via HTTP to compromise the sys [truncated]
A low-severity vulnerability was found in MySQL Server and MySQL Cluster products by Oracle. The vulnerability is located in the Server: Pluggable Auth component and affects MySQL Server versions 8.4.0-8.4.10, 9.7.0-9.7.1 and MySQL Cluster versions 8.0.0-8.0.47, 8.4.0-8.4.10, and 9.7.0-9.7.1. This difficult-to-exploit vulnerability allows an unauthenticated attacker with logon to the infrastructure where [truncated]
A high-severity vulnerability was discovered in MySQL Server and MySQL Cluster, affecting versions 8.4.0-8.4.10, 9.7.0-9.7.1, 8.0.0-8.0.47, and 8.4.0-8.4.10. This vulnerability, located in the Server: Replication component, allows high-privileged attackers with network access to compromise MySQL Server and MySQL Cluster, potentially leading to takeover. The vulnerability has a CVSS 3.1 Base Score of 7.2, [truncated]
A vulnerability exists in MySQL Server and MySQL Cluster products of Oracle MySQL. The vulnerability is located in the Server: Optimizer component and affects versions 9.7.0-9.7.1 of both products. A low-privileged attacker with network access via multiple protocols can exploit this vulnerability to compromise MySQL Server and MySQL Cluster, potentially causing a hang or frequently repeatable crash (compl [truncated]
AI-assisted PatchSiren debrief based on the supplied source corpus. The CVE record was published on 2026-07-21T22:18:40.110Z and has not been modified since then. The CVE-2026-61091 vulnerability is in the Oracle Communications Billing and Revenue Management product, specifically in the BRM Server component. It has a CVSS 3.1 Base Score of 7.8, indicating high severity. The vulnerability allows low-privil [truncated]
The PeopleSoft Enterprise SCM Inventory product of Oracle PeopleSoft, specifically version 9.2, contains a vulnerability classified as CVE-2026-61089. This vulnerability falls under the category of security issues and allows unauthenticated attackers with network access via HTTP to compromise the system. The likely operational impact includes unauthorized access to critical data or complete access to all [truncated]
AI-assisted PatchSiren debrief based on the supplied source corpus. The CVE record was published on 2026-07-21T22:18:39.763Z and has not been modified since then. CVE-2026-61088 is a high-severity vulnerability in Oracle PeopleSoft Enterprise SCM Manufacturing version 9.2. It allows unauthenticated attackers with network access via HTTP to compromise the system and access critical data. The CVSS 3.1 Base [truncated]
The CVE-2026-61087 vulnerability is a security issue in the PeopleSoft Enterprise FIN Payables product of Oracle PeopleSoft. The affected version is 9.2. This vulnerability allows unauthenticated attackers with network access via HTTP to compromise PeopleSoft Enterprise FIN Payables, potentially leading to unauthorized access to critical data. Organizations should review and apply Oracle's security patche [truncated]
CVE-2026-61086 is a vulnerability in PeopleSoft Enterprise SCM Order Management 9.2, allowing unauthenticated attackers with network access via HTTPS to compromise the system. Successful attacks can result in unauthorized access to critical data. The CVSS score is 7.5, indicating high severity. Organizations should be aware of this vulnerability and take steps to mitigate it. The CVE record was published [truncated]
The CVE-2026-61084 vulnerability is a medium-severity issue affecting Oracle GoldenGate, a data integration platform. It is caused by a weakness in the Libraries component of Oracle GoldenGate, allowing a low-privileged attacker with logon access to compromise the system. The vulnerability was published on 2026-07-21T22:18:39.323Z and has not been modified since then. Successful exploitation can lead to u [truncated]
The CVE-2026-61083 vulnerability affects Oracle E-Business Suite versions 12.2.3-12.2.15, specifically the Oracle Performance Management product. This vulnerability is classified as easily exploitable, allowing a low-privileged attacker with network access via HTTP to compromise Oracle Performance Management. Successful attacks can result in unauthorized update, insert, or delete access to some accessible [truncated]
A vulnerability was found in MySQL Connectors product of Oracle MySQL (component: Connector/J). The affected versions are 9.7.0-9.7.1. This vulnerability allows an unauthenticated attacker with network access via multiple protocols to compromise MySQL Connectors. Successful attacks require human interaction from a person other than the attacker and can result in unauthorized access to critical data or com [truncated]
A low-severity vulnerability was found in MySQL Server and MySQL Cluster. The vulnerability affects MySQL Server versions 8.4.0-8.4.10 and 9.7.0-9.7.1, as well as MySQL Cluster versions 8.0.0-8.0.47, 8.4.0-8.4.10, and 9.7.0-9.7.1. The vulnerability allows a high-privileged attacker with network access via multiple protocols to compromise MySQL Server and MySQL Cluster, potentially leading to unauthorized [truncated]
The CVE-2026-61080 vulnerability affects Oracle Public Sector Human Resources, a component of Oracle E-Business Suite. This vulnerability is classified as easily exploitable, allowing a low-privileged attacker with network access via HTTP to compromise the system. The potential impact includes unauthorized data updates, insertions, deletions, and read access to some of the accessible data. The CVSS 3.1 Ba [truncated]
The CVE-2026-61079 vulnerability is a difficult-to-exploit vulnerability in Oracle GoldenGate that allows high-privileged attackers with logon to the infrastructure where Oracle GoldenGate executes to compromise Oracle GoldenGate. Successful attacks require human interaction from a person other than the attacker and can result in unauthorized access to critical data or complete access to all Oracle Golden [truncated]
The CVE-2026-61077 record indicates a difficult-to-exploit vulnerability in PeopleSoft Enterprise SCM Mobile Inventory Management 9.2, allowing low-privileged attackers with logon access to compromise the system, potentially impacting additional products. This high-severity vulnerability has a CVSS score of 7.5 and can result in unauthorized creation, deletion, or modification access to critical data or a [truncated]
AI-assisted PatchSiren debrief based on the supplied source corpus. The CVE record was published on 2026-07-21T22:18:38.410Z and has not been modified since then. The CVE-2026-61076 vulnerability affects Oracle Peoplesoft Enterprise Hcm Talent Acquisition Manager 9.2, allowing an easily exploitable vulnerability for a low-privileged attacker with network access via HTTP to compromise the component. Succes [truncated]
The CVE-2026-61073 vulnerability affects Oracle PeopleSoft Enterprise FIN Common Objects Brazil version 9.1, allowing unauthenticated attackers with network access via HTTP to compromise the system. This could lead to unauthorized access to critical data. The CVSS 3.1 score is 7.5, indicating high severity. Organizations should review and apply Oracle's security patches and implement compensating controls.
AI-assisted PatchSiren debrief based on the supplied source corpus. The CVE record was published on 2026-07-21T22:18:37.980Z and has not been modified since then. CVE-2026-61072 is a critical vulnerability in Oracle PeopleSoft Enterprise FIN Staffing Front Office Brazil version 9.1, allowing low-privileged attackers with network access via HTTP to compromise the product. The vulnerability has a CVSS score [truncated]
The CVE-2026-61071 vulnerability affects PeopleSoft Enterprise FIN Engineering Argentina 9.1, a high-privileged attacker with network access via HTTP could potentially update, insert or delete some accessible data and read a subset of accessible data. This type of vulnerability typically requires careful review and monitoring to prevent unauthorized data access and update risks. Oracle PeopleSoft Enterpri [truncated]
The CVE-2026-61070 vulnerability affects PeopleSoft Enterprise FIN Common Objects Argentina, specifically the Cash Management component in version 9.1. This vulnerability allows an unauthenticated attacker with network access via HTTP to compromise the system, potentially leading to a partial denial of service. The CVSS score for this vulnerability is 5.3, indicating a medium severity. Organizations shoul [truncated]
The CVE-2026-61048 vulnerability affects the Oracle Inventory Optimization product of Oracle E-Business Suite, specifically versions 12.2.3-12.2.15. This difficult-to-exploit vulnerability allows low-privileged attackers with network access via HTTP to compromise Oracle Inventory Optimization, potentially resulting in unauthorized ability to cause a partial denial of service. The CVSS 3.1 Base Score is 3. [truncated]
CVE-2026-61047 is a low-severity vulnerability in Oracle Production Scheduling, a component of Oracle E-Business Suite. The vulnerability affects versions 12.2.3-12.2.15 and requires high privileges and logon access to the infrastructure to potentially allow unauthorized data modifications. This difficult-to-exploit vulnerability can result in unauthorized update, insert, or delete access to some of Oracl [truncated]
The CVE-2026-61046 vulnerability is a difficult-to-exploit issue in the Oracle Production Scheduling product of Oracle E-Business Suite, affecting versions 12.2.3-12.2.15. This vulnerability allows high-privileged attackers with network access via HTTP to compromise Oracle Production Scheduling, potentially impacting additional products. The vulnerability has a CVSS score of 6.6 and can result in unauthor [truncated]
AI-assisted PatchSiren debrief based on the supplied source corpus. The CVE record was published on 2026-07-21T22:18:35.283Z and has not been modified since then. CVE-2026-61044 is a medium-severity vulnerability in the Oracle Production Scheduling product of Oracle E-Business Suite, affecting versions 12.2.3-12.2.15. It allows high-privileged attackers with network access via HTTP to compromise Oracle Pr [truncated]
The CVE-2026-61041 vulnerability is a Critical severity issue in Oracle Demantra Demand Management, affecting versions 12.2.3-12.2.15. It allows low-privileged attackers with network access via HTTP to compromise the product, potentially leading to product takeover and impacting additional products. Organizations should prioritize patching this vulnerability to prevent potential security breaches.
AI-assisted PatchSiren debrief based on the supplied source corpus. The CVE record was published on 2026-07-21T22:18:34.607Z and has not been modified since then. CVE-2026-61035 is a vulnerability in Oracle Financials for the Americas, a component of Oracle E-Business Suite. The vulnerability class is related to internal operations and allows high privileged attackers with network access via HTTP to compr [truncated]
The CVE-2026-61027 vulnerability affects Oracle Cost Management, a component of Oracle E-Business Suite. It has a CVSS score of 7.2 and HIGH severity. The vulnerability is easily exploitable by high privileged attackers with network access via HTTP, potentially leading to takeover of Oracle Cost Management. Supported versions affected are 12.2.3-12.2.15. This vulnerability allows high privileged attackers [truncated]
AI-assisted PatchSiren debrief based on the supplied source corpus. The CVE record was published on 2026-07-21T22:18:33.920Z and has not been modified since then. The CVE-2026-61025 vulnerability is in the Oracle iRecruitment product of Oracle E-Business Suite, specifically in the Internal Operations component. It affects versions 12.2.3-12.2.15 and allows high privileged attackers with network access via [truncated]