Tag
medium
advisory
CVE-2026-35266: Oracle REST Data Services Vulnerability Allows Unauthorized Data Access and Modification
2 rules 1 CVEA vulnerability exists in Oracle REST Data Services versions 24.2.0 to 26.1.0, where a low-privileged attacker with network access via HTTPS can, with human interaction, gain unauthorized data access, modification, and cause a partial denial of service.
REST Data Services
vulnerability
oracle
ords
2r
1c
critical
advisory
CVE-2026-46839: Oracle REST Data Services Vulnerability Allows Remote Takeover
2 rules 1 TTP 1 CVECVE-2026-46839 is an easily exploitable vulnerability in Oracle REST Data Services versions 24.2.0 through 26.1.0, allowing a low-privileged attacker with network access via HTTPS to compromise the service, potentially impacting other products and leading to a complete takeover.
REST Data Services
cve
rce
oracle
ords
2r
1t
1c