Skip to content

CVE-2026-7261

CVE

Threat entity extracted from intelligence sources

Frequency
5
occurrences
First Seen
July 6, 2026
Last Seen
August 14, 2026
API
Exploited in Wild
—
Ransomware Use
—
Public Exploits
—
Attack Vector
—

Vulnerability Overview

Exploitation Activity

Exploitation Intelligence

Oracle has released important security updates for PHP versions 7.4 and 8.0, addressing multiple vulnerabilities including critical cross-site scripting (XSS) flaws and memory management issues. The updates fix CVE-2026-6735, which allows XSS attacks through the status endpoint, and CVE-2026-7259, w...

Multiple vulnerabilities in PHP have been disclosed, allowing attackers to exploit use-after-free conditions leading to remote code execution and SQL injection. Specifically, CVE-2026-6722 and CVE-2026-7261 relate to improper handling of SOAP requests and object deduplication, while CVE-2025-14179 i...

Public Exploits

Checking GitHub for proof-of-concept code…