Threats Tagged 'cve-2026-70718'
View all threats tagged with 'cve-2026-70718'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'cve-2026-70718'
Click on any threat for detailed analysis and mitigation recommendations
CVE-2026-70718 is a high-severity vulnerability in Oracle Bills of Material component of Oracle E-Business Suite versions 12.2.3 through 12.2.15. It allows a low privileged attacker with network access via HTTP to compromise the Oracle Bills of Material product, potentially leading to full takeover. The vulnerability has a CVSS 3.1 base score of 8.5, indicating high impact on confidentiality, integrity, and availability. Attacks exploiting this vulnerability may also affect additional Oracle products due to scope change. Oracle has released a Critical Security Patch Update in August 2026 addressing this and many other vulnerabilities. Customers are strongly advised to apply the available patches promptly. Join the discussion | CVE Database V5 | 08/18/2026, 21:01:11 UTC Added: 08/18/2026, 21:09:08 UTC |
Oracle has released a Critical Security Patch Update (CSPU) in August 2026 addressing multiple vulnerabilities in various components of Oracle E-Business Suite versions 12.2.3 through 12.2.15, among other Oracle products. The update includes 943 security patches across many Oracle product families. The vulnerabilities affect modules such as General Ledger, Payments, Workflow, Sales, Purchasing, Call Center Technology, and others. Oracle strongly recommends applying these patches promptly to mitigate risks, as some vulnerabilities have been subject to attempted exploitation. The patch update complements Oracle's quarterly cumulative Critical Patch Updates and aims to reduce disruption by providing targeted fixes. No CVSS score is provided for these vulnerabilities. No known exploits in the wild have been reported at this time. Join the discussion | GCVE Database | 08/18/2026, 20:58:58 UTC Added: 08/19/2026, 13:50:27 UTC |
Showing 1 to 2 of 2 results