A recently identified critical vulnerability, CVE-2026-61171, impacts Oracle Agile PLM version 9.3.6 within the Oracle Supply Chain (Security component). This easily exploitable flaw allows unauthenticated attackers with network access via HTTP to compromise the system. Successful attacks can lead to unauthorized modification, creation, or deletion of critical data, as well as unauthorized access to all Oracle Agile PLM accessible data, with a CVSS 3.1 Base Score of 9.1.
Related topics
| Topic | Replies | Views | Activity | |
|---|---|---|---|---|
| Oracle Agile PLM Security Vulnerability | 0 | 7 | September 25, 2026 | |
| CVE-2026-71046: Oracle Agile PLM Privilege Escalation Flaw | 0 | 5 | September 25, 2026 | |
| A Vulnerability in Oracle PeopleSoft PeopleTools Could Allow for Remote Code Execution | 0 | 3 | September 25, 2026 | |
| Hackers exploit critical PTC Windchill PLM software flaw | 5 | 13 | September 19, 2026 | |
| CVE-2026-60956: JD Edwards US Payroll Auth Bypass Flaw | 0 | 3 | September 25, 2026 | |
| CVE-2026-61265: JD Edwards EnterpriseOne Auth Bypass | 0 | 4 | September 25, 2026 | |
| CVE-2026-61268: JD Edwards EnterpriseOne Auth Bypass | 0 | 2 | September 25, 2026 | |
| Oracle Agile PLM End of Life: What It Means and Your Options Before 2027 | 0 | 6 | September 25, 2026 | |
| CVE-2025-10551: ENOVIA Collaborative Industry Innovator XSS Vulnerability | 4 | 12 | September 15, 2026 |