AUGUST 15, 2026
Live Feed
Back to database
Case File

CVE-2026-16459

MEDIUM · CVSS 5.9 EPSS 0.07%

Source: NVD + CISA KEV + EPSS · Published 2026-08-13 · Last synced 2026-08-15

CyberRota Analysis

AI-Generated

The Oberon PSA Crypto library, used in Oracle products, is vulnerable to a padding oracle attack that enables attackers to exploit timing discrepancies during RSA PKCS#1 v1.5 decryption, potentially allowing them to recover sensitive plaintext data. Organizations utilizing affected versions of this library should prioritize remediation to mitigate the risk of data exposure. This vulnerability is particularly relevant for those handling cryptographic operations within their applications.

CVE
CVE-2026-16459
Severity
MEDIUM
CVSS
5.9
EPSS
0.07%
Oracle

Original NVD Description

Padding oracle attack vulnerability in Oberon microsystem AG’s Oberon PSA Crypto library in all versions since 1.0.0 and prior to 2.1.1 allows an attacker to recover plaintexts via timing measurements of RSA PKCS#1 v1.5 decrypt operations.