CVE-2026-60358 - Vulnerability Details

Threat entity extracted from intelligence sources

Frequency
3
occurrences
First Seen
July 23, 2026
Last Seen
July 23, 2026

CVE-2026-60358 is a vulnerability tracked by ThreatCluster, appearing in 1 threat cluster built from 3 intelligence report mentions.

CVE-2026-60358 is a vulnerability tracked across 1 threat cluster and 3 intelligence report mentions on ThreatCluster. First observed July 23, 2026; most recent activity July 23, 2026.

Related Threat Clusters

Recent Intelligence Reports

  • CVE-2026-60358 CVE Vulnerability Disclosures / 1d Vulnerability in the Oracle Access Manager product of Oracle Fusion Middleware (component: Authentication Engine). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.1.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Access Manager. While the vulnerability is in Oracle Access Manager, attacks may significantly impact additional products (scope change). Successful att — cve.report · July 23, 2026
  • Oracle July 2026 CPU: pre-auth 10.0 RCE in WebLogic + more Suriq / 1d Strip it down to the software people actually self-host, and a much smaller set demands attention this week, a cluster of flaws an unauthenticated attacker can trigger over the network for full remote code execution, several scored a perfect CVSS 10.0. Any WebLogic Server, Oracle HTTP Server or Coherence instance reachable from the internet or an untrusted network, patched first, since these carry the unauthenticated 10.0 and — suriq.io · July 23, 2026
  • CVE-2026-60358 - Exploits & Severity — Feedly · July 23, 2026

Frequently asked questions

What is CVE-2026-60358?

CVE-2026-60358 is a vulnerability tracked by ThreatCluster, appearing in 1 threat cluster built from 3 intelligence report mentions.

Is CVE-2026-60358 still active?

The most recent intelligence report mentioning CVE-2026-60358 on ThreatCluster is dated July 23, 2026.

What is CVE-2026-60358 associated with?

Across ThreatCluster reporting, CVE-2026-60358 most frequently co-occurs with Zero-day Exploit, Oracle, CVE-2026-47056, CVE-2026-60198, CVE-2026-60199, among 12 tracked related entities.

What are the latest developments involving CVE-2026-60358?

The most significant recent cluster is “Critical Vulnerabilities in Oracle Coherence and Access Manager Disclosed” (10 articles · Updated July 23, 2026). CVE-2026-60358 appears across 1 threat cluster in total, listed above with sources.

How much reporting does ThreatCluster have on CVE-2026-60358?

CVE-2026-60358 appears in 3 intelligence report mentions across 1 deduplicated threat cluster, aggregated from 17,000+ monitored sources.

CVSS v3.1 Breakdown