Security · 1h ago
Oracle E-Business Suite zero-day exploited in active attacks
Attackers are exploiting a critical vulnerability (CVE-2026-46817) in Oracle E-Business Suite, a widely used financial application. Threat intelligence firm Defused reported the active exploitation, which could allow unauthorized access to sensitive data. Oracle has not yet released a patch, leaving organizations exposed.
Meridian48 take
The lack of a patch from Oracle underscores the risk of relying on enterprise software with slow vulnerability response cycles.
Read the full reporting
Hackers now exploit critical Oracle E-Business flaw in attacks →
Bleeping Computer
oracle-ebszero-day-exploit