CVE-2026-21973 | Oracle FLEXCUBE Investor Servicing 14.5.0.15.0/14.7.0.8.0/14.8.0.1.0 Oracle Financial Service improper authorization (EUVD-2026-3539)
A vulnerability described as critical has been identified in Oracle FLEXCUBE Investor Servicing 14.5.0.15.0/14.7.0.8.0/14.8.0.1.0. The impacted element is an unknown function of the component Oracle Financial Service. Such manipulation leads to improper authorization.
This vulnerability is traded as CVE-2026-21973. The attack may be launched remotely. There is no exploit available.
Upgrading the affected component is recommended.