NCSC Warns of 213 Vulnerabilities in Oracle Communications Products (advisories.ncsc.nl)
0xBASE INTEL BRIEF
- 213 vulnerabilities fixed, 12 critical (CVSS >= 9)
- Affects Oracle Communications and many third-party libraries
- Patches available from Oracle
"The Dutch NCSC issued advisory NCSC-2026-0256 regarding 213 patched vulnerabilities in Oracle Communications products and embedded third-party software. 12 vulnerabilities have a CVSS score of 9 or higher. Affected components include Oracle Communications Converged Application Server, Libtiff, Apache Tomcat, Eclipse Jetty, Perl, Lodash, Apache HTTP Server, Apache Kafka, AIOHTTP, Cryptography package, Spring Boot, and Apache MINA. Users are advised to apply the patches."
no comments yet.