Back to overview

CVE-2026-60526

MEDIUM
6.7
CVSS 3.1

Metadata

CVE ID
CVE-2026-60526
State
PUBLISHED
Assigner
oracle
Reserved
2026-07-08 15:51 UTC
Published
2026-07-21 21:35 UTC
Last updated
2026-07-21 21:35 UTC
Vendor / Product
Oracle Corporation / Oracle Java SE
Sources
cve.org  ·  NVD

Severity & Metrics

6.7 MEDIUM CVSS 3.1
CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H
Affected products (1)
VendorProductPlatformVersions
Oracle Corporation Oracle Java SE 8u491, 8u491-perf
Weakness (CWE)
CWESourceDescription
cna Difficult to exploit vulnerability allows low privileged attacker with logon to the infrastructure where Oracle Java SE executes to compromise Oracle Java SE. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in takeover of Oracle Java SE.
CVSS scores (1)
ScoreSeverityVersionSourceVector
6.7 MEDIUM 3.1 cna CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H
Back to overview