Synced 03 Aug 2026 05:54 UTC Account
← Fusion Middleware

Fusion Middleware vulnerabilities: known CVEs & security history

Oracle · Actively exploited · 16 tracked CVEs · 0 actively exploited · updated August 2026 · what is a CVE? →

This is the full list of known vulnerabilities (CVEs) across all Fusion Middleware release lines — 16 in total. A CVE here doesn't mean your version is affected — check Fusion Middleware's current status and the safe version to run.

16
known CVEs
0
actively exploited (KEV)
14
critical severity
0
ransomware-linked

Known Fusion Middleware CVEs

Actively-exploited and most-severe first. Open any CVE for full details.

CVESeverityCVSSEPSSYear
CVE-2026-60389 critical 10 0% 2026
CVE-2026-60379 critical 10 0% 2026
CVE-2026-60381 critical 9.9 0% 2026
CVE-2026-60377 critical 9.9 0% 2026
CVE-2026-60388 critical 9.8 0% 2026
CVE-2026-60387 critical 9.8 0% 2026
CVE-2026-60386 critical 9.8 0% 2026
CVE-2026-60385 critical 9.8 0% 2026
CVE-2026-60384 critical 9.8 0% 2026
CVE-2026-60380 critical 9.8 0% 2026
CVE-2026-60378 critical 9.8 0% 2026
CVE-2026-60376 critical 9.8 0% 2026
CVE-2026-60375 critical 9.8 0% 2026
CVE-2026-60374 critical 9.8 0% 2026
CVE-2026-60383 high 8.4 0% 2026
CVE-2026-60382 high 7.5 0% 2026

Is my Fusion Middleware version affected?

The list above spans every release. To know whether your version is affected — and the minimum safe version to upgrade to — check it directly.

Check your Fusion Middleware version → · Monitor Fusion Middleware for new CVEs →

Fusion Middleware vulnerabilities — frequently asked

How many known vulnerabilities does Fusion Middleware have?

IsItPatched tracks 16 CVEs for Fusion Middleware. 14 are critical-severity and 2 high-severity. These span every release line — what matters is whether the version you run is affected.

Does Fusion Middleware have any actively-exploited vulnerabilities?

None of Fusion Middleware's tracked CVEs are currently in CISA's KEV catalog — but new ones can be added at any time, so keep your version current.

What is the most severe Fusion Middleware vulnerability?

Among tracked issues, CVE-2026-60389 (CRITICAL, CVSS 10) ranks highest — a Missing authentication weakness.

Is Fusion Middleware safe to use?

It depends on the version. The latest supported Fusion Middleware release clears the known issues; older versions may still be affected. Check the exact version you run for a verdict.

CVE data aggregated from NVD, CISA KEV and EPSS (FIRST.org). Related: Fusion Middleware security status · Fusion Middleware end-of-life · actively-exploited CVEs. Always verify against Oracle's advisories — see our disclaimer.