Oracle Coherence vulnerabilities
115 known vulnerabilities affecting oracle/coherence.
Total CVEs
115
CISA KEV
1
actively exploited
Public exploits
2
Exploited in wild
2
Severity breakdown
CRITICAL67HIGH30MEDIUM18
Vulnerabilities
Page 3 of 6
CVE-2026-60306P2CRITICALCVSS 9.8v12.2.1.4.0v14.1.1.0.0+2 more2026-07-21
CVE-2026-60306 [CRITICAL] CWE-306 CVE-2026-60306: Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core). Suppor
Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 12.2.1.4.0, 14.1.1.0.0, 14.1.2.0.0 and 15.1.1.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via TCP to compromise Oracle Coherence. Successful attacks of this vulnerability
nvd
CVE-2026-60221P2CRITICALCVSS 9.8v12.2.1.4.0v14.1.1.0.0+2 more2026-07-21
CVE-2026-60221 [CRITICAL] CWE-284 CVE-2026-60221: Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core). Suppor
Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 12.2.1.4.0, 14.1.1.0.0, 14.1.2.0.0 and 15.1.1.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via TCP to compromise Oracle Coherence. Successful attacks of this vulnerability
nvd
CVE-2026-60246P2CRITICALCVSS 9.8v12.2.1.4.0v14.1.1.0.0+2 more2026-07-21
CVE-2026-60246 [CRITICAL] CWE-306 CVE-2026-60246: Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core). Suppor
Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 12.2.1.4.0, 14.1.1.0.0, 14.1.2.0.0 and 15.1.1.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via TCP to compromise Oracle Coherence. Successful attacks of this vulnerability
nvd
CVE-2026-60251P2CRITICALCVSS 9.8v12.2.1.4.0v14.1.1.0.0+2 more2026-07-21
CVE-2026-60251 [CRITICAL] CWE-306 CVE-2026-60251: Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core). Suppor
Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 12.2.1.4.0, 14.1.1.0.0, 14.1.2.0.0 and 15.1.1.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via TCP to compromise Oracle Coherence. Successful attacks of this vulnerability
nvd
CVE-2026-60250P2CRITICALCVSS 9.8v12.2.1.4.0v14.1.1.0.0+2 more2026-07-21
CVE-2026-60250 [CRITICAL] CWE-306 CVE-2026-60250: Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core). Suppor
Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 12.2.1.4.0, 14.1.1.0.0, 14.1.2.0.0 and 15.1.1.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via TCP to compromise Oracle Coherence. Successful attacks of this vulnerability
nvd
CVE-2026-35310P2CRITICALCVSS 9.8v12.2.1.4.0v14.1.1.0.0+2 more2026-06-17
CVE-2026-35310 [CRITICAL] CWE-284 CVE-2026-35310: Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core). Suppor
Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 12.2.1.4.0, 14.1.1.0.0, 14.1.2.0.0 and 15.1.1.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Coherence. Successful attacks of this vulnerabilit
nvd
CVE-2026-60219P2CRITICALCVSS 9.8v12.2.1.4.0v14.1.1.0.0+2 more2026-07-21
CVE-2026-60219 [CRITICAL] CWE-306 CVE-2026-60219: Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core). Suppor
Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 14.1.1.0.0, 14.1.2.0.0 and 15.1.1.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via TCP to compromise Oracle Coherence. Successful attacks of this vulnerability can result
nvd
CVE-2026-60298P2CRITICALCVSS 9.8v14.1.1.0.0v14.1.2.0.0+1 more2026-07-21
CVE-2026-60298 [CRITICAL] CWE-306 CVE-2026-60298: Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core). Suppor
Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 14.1.1.0.0, 14.1.2.0.0 and 15.1.1.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via TCP to compromise Oracle Coherence. Successful attacks of this vulnerability can result
nvd
CVE-2026-60299P2CRITICALCVSS 9.8v14.1.1.0.0v14.1.2.0.0+1 more2026-07-21
CVE-2026-60299 [CRITICAL] CWE-306 CVE-2026-60299: Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core). Suppor
Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 14.1.1.0.0, 14.1.2.0.0 and 15.1.1.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via TCP to compromise Oracle Coherence. Successful attacks of this vulnerability can result
nvd
CVE-2026-60210P2CRITICALCVSS 9.8v14.1.1.0.0v14.1.2.0.0+1 more2026-07-21
CVE-2026-60210 [CRITICAL] CWE-306 CVE-2026-60210: Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core). Suppor
Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 14.1.1.0.0, 14.1.2.0.0 and 15.1.1.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via TCP to compromise Oracle Coherence. Successful attacks of this vulnerability can result
nvd
CVE-2026-60257P2CRITICALCVSS 9.8v14.1.1.0.0v14.1.2.0.0+1 more2026-07-21
CVE-2026-60257 [CRITICAL] CWE-306 CVE-2026-60257: Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core). Suppor
Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 14.1.1.0.0, 14.1.2.0.0 and 15.1.1.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via TCP to compromise Oracle Coherence. Successful attacks of this vulnerability can result
nvd
CVE-2026-60256P2CRITICALCVSS 9.8v14.1.1.0.0v14.1.2.0.0+1 more2026-07-21
CVE-2026-60256 [CRITICAL] CWE-306 CVE-2026-60256: Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core). Suppor
Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 14.1.1.0.0, 14.1.2.0.0 and 15.1.1.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via TCP to compromise Oracle Coherence. Successful attacks of this vulnerability can result
nvd
CVE-2026-60280P2CRITICALCVSS 9.8v14.1.1.0.0v14.1.2.0.0+1 more2026-07-21
CVE-2026-60280 [CRITICAL] CWE-306 CVE-2026-60280: Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core). Suppor
Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 14.1.1.0.0, 14.1.2.0.0 and 15.1.1.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP/2 to compromise Oracle Coherence. Successful attacks of this vulnerability can resu
nvd
CVE-2026-35309P2CRITICALCVSS 9.8v12.2.1.4.0v14.1.1.0.0+2 more2026-06-17
CVE-2026-35309 [CRITICAL] CWE-284 CVE-2026-35309: Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Centralized Th
Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Centralized Third Party Jars). Supported versions that are affected are 12.2.1.4.0, 14.1.1.0.0, 14.1.2.0.0 and 15.1.1.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Coherence. Successful att
nvd
CVE-2026-35304P2CRITICALCVSS 9.8v12.2.1.4.0v14.1.1.0.0+2 more2026-06-17
CVE-2026-35304 [CRITICAL] CWE-306 CVE-2026-35304: Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core). Suppor
Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 12.2.1.4.0, 14.1.1.0.0, 14.1.2.0.0 and 15.1.1.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTPS to compromise Oracle Coherence. Successful attacks of this vulnerabili
nvd
CVE-2026-60290P2CRITICALCVSS 9.8v14.1.1.0.0v14.1.2.0.0+1 more2026-07-21
CVE-2026-60290 [CRITICAL] CWE-306 CVE-2026-60290: Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core). Suppor
Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 14.1.1.0.0, 14.1.2.0.0 and 15.1.1.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Coherence. Successful attacks of this vulnerability can result
nvd
CVE-2026-60308P2CRITICALCVSS 9.8v14.1.1.0.0v14.1.2.0.0+1 more2026-07-21
CVE-2026-60308 [CRITICAL] CWE-306 CVE-2026-60308: Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core). Suppor
Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 14.1.1.0.0, 14.1.2.0.0 and 15.1.1.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Coherence. Successful attacks of this vulnerability can result
nvd
CVE-2026-60264P2CRITICALCVSS 9.8v14.1.1.0.0v14.1.2.0.0+1 more2026-07-21
CVE-2026-60264 [CRITICAL] CWE-200 CVE-2026-60264: Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core). Suppor
Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 14.1.1.0.0, 14.1.2.0.0 and 15.1.1.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP/2 to compromise Oracle Coherence. Successful attacks of this vulnerability can resu
nvd
CVE-2026-60241P2CRITICALCVSS 9.8v14.1.1.0.0v14.1.2.0.0+1 more2026-07-21
CVE-2026-60241 [CRITICAL] CWE-306 CVE-2026-60241: Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core). Suppor
Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 14.1.1.0.0, 14.1.2.0.0 and 15.1.1.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Coherence. Successful attacks of this vulnerability can result
nvd
CVE-2026-60232P2CRITICALCVSS 9.8v14.1.1.0.0v14.1.2.0.0+1 more2026-07-21
CVE-2026-60232 [CRITICAL] CWE-306 CVE-2026-60232: Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core). Suppor
Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 14.1.1.0.0, 14.1.2.0.0 and 15.1.1.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Coherence. Successful attacks of this vulnerability can result
nvd