CVE-2026-35309 | Oracle Coherence 12.2.1.4.0/14.1.1.0.0/14.1.2.0.0/15.1.1.0.0 Centralized Third Party Jars Remote Code Execution

SecurityVulns

A vulnerability was found in Oracle Coherence 12.2.1.4.0/14.1.1.0.0/14.1.2.0.0/15.1.1.0.0. It has been declared as very critical. Affected by this issue is some unknown functionality of the component Centralized Third Party Jars. Such manipulation leads to Remote Code Execution.

This vulnerability is documented as CVE-2026-35309. The attack can be executed remotely. There is not any exploit available.

It is recommended to upgrade the affected component.VulDB Recent EntriesRead More