These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.
A vulnerability in Oracle Hyperion Financial Management allows unauthenticated attackers to compromise the system, leading to unauthorized data modification and partial denial of service. The vulnerability, tracked as CVE-2026-87200, affects the 11.2.26.0.000 version of Oracle Hyperion Financial Management and has a CVSS 3.1 Base Score of 8.2, indicating high severity. Successful attacks can result in una [truncated]
CVE-2026-87197 is a high-severity vulnerability in Oracle Hyperion Financial Management, allowing unauthenticated attackers to access critical data and perform unauthorized updates, inserts, or deletions. Defenders should assess exposure and prioritize remediation to prevent potential unauthorized access and data manipulation. The vulnerability has a CVSS score of 8.2 and vector (CVSS:3.1/AV:N/AC:L/PR:N/U [truncated]
CVE-2026-87196 debrief based on the supplied source corpus. The CVE record was published on 2026-09-15T20:19:07.660Z and was last modified on 2026-09-21T20:17:38.693Z. The NVD entry is currently Modified. The vulnerability in Oracle Hyperion Financial Management allows unauthenticated attackers with network access via HTTP to compromise the system, potentially leading to unauthorized access to critical da [truncated]
A vulnerability in Oracle Hyperion Financial Management allows a low-privileged attacker with network access via HTTP to potentially compromise the product. Successful attacks can result in a takeover of Oracle Hyperion Financial Management. The vulnerability has a CVSS score of 7.5 and can be exploited by a low-privileged attacker with network access via HTTP. Defenders should prioritize verifying exposu [truncated]
A critical vulnerability exists in Oracle Hyperion Financial Management 11.2.26.0.000. High privileged attackers with network access via Oracle Net can easily exploit this vulnerability, potentially leading to a takeover of Oracle Hyperion Financial Management. The scope of the vulnerability may extend to impact additional products. This vulnerability is critical because it allows high privileged attacker [truncated]
CVE-2026-87188 is a critical vulnerability in the Security component of Oracle Hyperion Financial Management, version 11.2.26.0.000. The vulnerability allows unauthenticated attackers with network access via HTTP to compromise the product, potentially leading to takeover of Oracle Hyperion Financial Management instances. This vulnerability has a CVSS score of 9.8, indicating a high severity level. Defende [truncated]
The CVE-2026-87187 vulnerability affects Oracle Hyperion Financial Management version 11.2.26.0.000, allowing unauthenticated attackers with access to the physical communication segment to compromise the system. Successful attacks can result in takeover of Oracle Hyperion Financial Management. Defenders should prioritize verifying exposure, assessing compensating controls, and implementing vendor advisory [truncated]
A critical vulnerability exists in Oracle Hyperion Financial Management 11.2.26.0.000. An unauthenticated attacker with physical access to the communication segment can compromise the product, potentially leading to a takeover and impacting confidentiality, integrity, and availability. This vulnerability is critical, with a CVSS score of 9.6, and immediate remediation is recommended. Oracle Hyperion Finan [truncated]
AI-assisted PatchSiren debrief based on the supplied source corpus. The CVE record was published on 2026-09-15T20:19:06.400Z and has not been modified since then. The vulnerability in Oracle Hyperion Financial Management allows a low privileged attacker with network access via HTTP to compromise Oracle Hyperion Financial Management. Successful attacks can result in takeover of Oracle Hyperion Financial Ma [truncated]
CVE-2026-87184 is a critical vulnerability in the Security component of Oracle Hyperion Financial Management, version 11.2.26.0.000. The vulnerability allows unauthenticated attackers with network access via SQL to compromise the product, potentially leading to takeover. Oracle has provided a vendor advisory for this issue. Defenders responsible for Oracle Hyperion Financial Management instances should as [truncated]
A high-severity vulnerability exists in Oracle Hyperion Financial Management 11.2.26.0.000. A high-privileged attacker with logon access to the infrastructure can exploit this vulnerability, which requires human interaction from another person, to potentially take over Oracle Hyperion Financial Management. The scope of the vulnerability may extend to other products.
A vulnerability in Oracle Hyperion Financial Management allows low-privileged attackers with logon access to compromise the product, potentially impacting additional products. Successful attacks can result in a takeover of Oracle Hyperion Financial Management. The vulnerability has a high CVSS score and requires verification of logon security and access controls. The supported version that is affected is [truncated]
A vulnerability in Oracle Hyperion Financial Management allows low-privileged attackers with network access via HTTP to compromise the product, potentially leading to takeover. The CVSS score is 8.8, indicating high severity. The supported version affected is 11.2.26.0.000. This vulnerability can be exploited easily, and successful attacks can result in the takeover of Oracle Hyperion Financial Management [truncated]
A vulnerability in Oracle Hyperion Financial Management allows low-privileged attackers with network access via HTTP to compromise the product, potentially leading to takeover. The CVSS score is 8.8, indicating high severity. The supported version affected is 11.2.26.0.000. This vulnerability requires immediate attention from administrators and security teams to prevent potential takeover and verify expos [truncated]
A vulnerability in Oracle Hyperion Financial Management allows low-privileged attackers with network access via HTTP to compromise the product, potentially leading to takeover. The CVSS score is 8.8, indicating high severity. The supported version affected is 11.2.26.0.000. This vulnerability can be easily exploited, and successful attacks can result in takeover of Oracle Hyperion Financial Management. Th [truncated]
CVE-2026-87176 is a critical vulnerability in Oracle Hyperion Financial Management, with a CVSS score of 9.1. The vulnerability allows unauthenticated attackers with network access via TCP to compromise the product, potentially leading to unauthorized creation, deletion, or modification of critical data. Defenders should assess exposure and prioritize remediation to prevent potential unauthorized access o [truncated]
AI-assisted PatchSiren debrief based on the supplied source corpus. The CVE record was published on 2026-09-15T20:19:05.297Z and has not been modified since then. The vulnerability in Oracle Hyperion Financial Management version 11.2.26.0.000 allows unauthenticated attackers with network access via TCP to compromise the system, potentially leading to unauthorized creation, deletion, or modification of cri [truncated]
A critical vulnerability exists in Oracle Hyperion Financial Management 11.2.26.0.000. This easily exploitable vulnerability allows unauthenticated attackers with network access via TCP to compromise the system, potentially leading to unauthorized creation, deletion, or modification of critical data, as well as unauthorized access to critical or all accessible data.
A critical vulnerability exists in Oracle Hyperion Financial Management 11.2.26.0.000. Low-privileged attackers with network access via HTTP can easily exploit this vulnerability, potentially leading to a takeover of the affected system. The vulnerability allows attackers to compromise the system, impacting confidentiality, integrity, and availability. Security teams must assess exposure and apply necessa [truncated]
A critical vulnerability exists in Oracle Hyperion Financial Management 11.2.26.0.000. This easily exploitable vulnerability allows unauthenticated attackers with network access via HTTP to compromise the system, potentially leading to unauthorized creation, deletion, or modification of critical data and unauthorized access to sensitive information.
A vulnerability in Oracle Purchasing of Oracle E-Business Suite (component: Other issue) with a CVSS 3.1 Base Score of 8.8 was made public on 2026-09-15. The vulnerability affects versions 12.2.3-12.2.15 and can be easily exploited by a low-privileged attacker with network access via HTTP, potentially leading to a takeover of Oracle Purchasing. This high-severity vulnerability requires immediate attention [truncated]
A vulnerability in Oracle Product Hub of Oracle E-Business Suite (component: Internal Operations) has been identified. The supported versions affected are 12.2.3-12.2.15. This vulnerability allows a low-privileged attacker with network access via HTTP to compromise Oracle Product Hub, potentially leading to a takeover of the product. The vulnerability has a CVSS 3.1 Base Score of 8.8, indicating high seve [truncated]
CVE-2026-87148 is a high-severity vulnerability in Oracle Hyperion Data Relationship Management, allowing unauthenticated attackers to cause a denial of service via HTTP. The vulnerability has a CVSS score of 7.5 and affects version 11.2.26.0.000. Oracle has provided a vendor advisory for this issue. Defenders should assess exposure and prioritize patching or mitigation efforts. The vulnerability allows a [truncated]
A vulnerability in Oracle Hyperion Data Relationship Management (component: Access and security) allows a low-privileged attacker with network access via HTTP to compromise the product. Successful attacks require human interaction and can result in unauthorized access to critical data or complete access to all accessible data, as well as unauthorized update, insert, or delete access to some data.
CVE-2026-87142 is a high-severity vulnerability in Oracle Hyperion Data Relationship Management, a component of Oracle Hyperion. The vulnerability is classified as easily exploitable, allowing unauthenticated attackers with network access via HTTPS to compromise the system. Successful attacks require human interaction and can result in unauthorized creation, deletion, or modification access to critical da [truncated]
A vulnerability in Oracle Hyperion Data Relationship Management allows low-privileged attackers with network access via HTTP to compromise the product, potentially impacting additional products and allowing unauthorized access to critical data. This vulnerability, tracked as CVE-2026-87141, is exploitable and has a CVSS score of 7.7, indicating high severity. The vulnerability affects version 11.2.26.0.00 [truncated]
A vulnerability in Oracle Hyperion Data Relationship Management (component: Access and security) allows a low-privileged attacker with network access via HTTP to compromise the product. Successful attacks can result in takeover of Oracle Hyperion Data Relationship Management. This vulnerability is difficult to exploit and requires careful verification of exposure and application of vendor remediation to p [truncated]
A vulnerability in Oracle Hyperion Data Relationship Management (component: Access and security) allows a low-privileged attacker with network access via HTTP to compromise the product. Successful attacks can result in takeover of Oracle Hyperion Data Relationship Management. The vulnerability has a CVSS score of 7.5 and vector (CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H). Defenders should assess exposu [truncated]
CVE-2026-87138 is a high-severity vulnerability in Oracle Hyperion Data Relationship Management 11.2.26.0.000, classified as easily exploitable by unauthenticated attackers with network access via SOAP, potentially causing a hang or frequently repeatable crash (complete DOS). Defenders should prioritize verifying exposure and assessing network access controls to SOAP. The vulnerability's CVSS 3.1 Base Sco [truncated]
A vulnerability in Oracle Hyperion Data Relationship Management's Access and security component allows low-privileged attackers with network access via HTTP to compromise the product. This could lead to unauthorized access to critical data or complete access to all accessible data, as well as unauthorized update, insert, or delete access to some data. Successful attacks require human interaction and have [truncated]