Learn languages naturally with fresh, real content!

tap to translate recording

Explore By Region

flag U.S. federal agencies must patch a critical Oracle Identity Manager flaw by Dec. 12 after it was found actively exploited.

flag CISA has ordered U.S. federal agencies to patch a critical, actively exploited vulnerability in Oracle Identity Manager (CVE-2025-61757) by December 12, adding it to its Known Exploited Vulnerabilities catalog. flag The flaw, which allows unauthenticated remote code execution via a single HTTP request, was confirmed to be under active attack as early as August, with researchers calling the exploit "trivial." flag Oracle issued a fix on October 21, but did not disclose evidence of exploitation at the time. flag The vulnerability affects specific versions of Oracle Fusion Middleware and poses a severe risk due to its high CVSS score of 9.8. flag CISA urges agencies to apply the October 21 patch or isolate affected systems from public networks.

3 Articles