Vulnerability in the Oracle Macoron Tool product of Oracle Open Source Projects. The supported versions that is affected is v0.22.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Macaron Tool. Successful attacks of this vulnerability can result in Oracle Macaron Tool failing host address validation.

Project Subscriptions

Vendors Products
Oracle Corporation Subscribe
Oracle Macaron Tool Of Oracle Open Source Projects Subscribe
Advisories

No advisories yet.

Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Wed, 06 May 2026 22:15:00 +0000

Type Values Removed Values Added
Title Oracle Macaron Tool 0.22.0 Host Address Validation Vulnerability

Wed, 06 May 2026 20:45:00 +0000

Type Values Removed Values Added
First Time appeared Oracle
Oracle macoron
Weaknesses CWE-601
CPEs cpe:2.3:a:oracle:macoron:0.22.0:*:*:*:*:*:*:*
Vendors & Products Oracle
Oracle macoron

Wed, 06 May 2026 19:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Wed, 06 May 2026 09:45:00 +0000

Type Values Removed Values Added
First Time appeared Oracle Corporation
Oracle Corporation oracle Macaron Tool Of Oracle Open Source Projects
Vendors & Products Oracle Corporation
Oracle Corporation oracle Macaron Tool Of Oracle Open Source Projects

Wed, 06 May 2026 07:30:00 +0000

Type Values Removed Values Added
Description Vulnerability in the Oracle Macoron Tool product of Oracle Open Source Projects. The supported versions that is affected is v0.22.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Macaron Tool. Successful attacks of this vulnerability can result in Oracle Macaron Tool failing host address validation.
References
Metrics cvssV3_1

{'score': 4.7, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:N/A:N'}


Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: oracle

Published:

Updated: 2026-05-06T18:49:10.118Z

Reserved: 2026-04-01T20:03:40.834Z

Link: CVE-2026-35253

cve-icon Vulnrichment

Updated: 2026-05-06T18:42:11.894Z

cve-icon NVD

Status : Analyzed

Published: 2026-05-06T08:16:03.570

Modified: 2026-05-06T20:30:59.763

Link: CVE-2026-35253

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-05-06T22:00:14Z

Weaknesses

No weakness.