A flaw in the Authentication Engine of Oracle Access Manager lets an unauthenticated attacker take over the single sign-on service that fronts an organization’s internal applications.
Read more about Emerging Threat: (CVE-2026-60358) Oracle Access Manager Takeover via Authentication Engine