Security News

Cybersecurity news aggregator

🔓
HIGH Vulnerabilities Help Net Security

Oracle E-Business Suite Payments flaw under attack (CVE-2026-46817)

A critical vulnerability (CVE-2026-46817, CVSS 9.8) in the Oracle Payments module of Oracle E-Business Suite is now being exploited in the wild, with attacks observed roughly six weeks after Oracle's May 2026 patch. The flaw affects Oracle E-Business Suite versions 12.2.3 through 12.2.15. The article does not specify a fixed version number or provide workaround information.
Read Full Article →

Exploitation attempts targeting a critical vulnerability (CVE-2026-46817) in Oracle Payments, the payment-processing module within Oracle’s E-Business Suite (EBS), have been spotted over the weekend, threat intelligence company Defused warned on Monday. The detected exploitation attempts (Source: Defused) “On 27 June 2026 our Oracle E-Business Suite decoys recorded the first in-the-wild exploitation of CVE-2026-46817 — roughly six weeks after Oracle’s May 2026 patch and before any public proof-of-concept existed,” the company said. “The activity was a … More → The post Oracle E-Business Suite Payments flaw under attack (CVE-2026-46817) appeared first on Help Net Security .

Share this article