CVE 6.6 MEDIUM

CVE-2026-35255_CVE-2026-35255

6.6 / 10
MEDIUM
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:N

Description

Vulnerability in the Oracle Cloud Native Environment Command Line Interface product of Oracle Open Source Projects. The supported versions that is affected is v2.3.2. Easily exploitable vulnerability allows unauthenticated attacker to compromise Oracle Cloud Native Environment Command Line Interface product via a malicious environment variable. Successful attacks of this vulnerability can result in Oracle Cloud Native Environment Command Line Interface allowing users to execute arbitrary code.

Basic Information

ID CVE-2026-35255
Source oracle
Published May 6, 2026 at 08:05

Affected Product

Vendor Oracle Corporation
Product Oracle Cloud Native Environment Command Line Interface
Version v2.3.2
Affected Versions Oracle Corporation Oracle Cloud Native Environment Command Line Interface v2.3.2

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.