
SECURITY ADVISORY
What changed, what your team should check, and where to find patch guidance.

AFFECTED VERSION
Agile PLM 9.3.6
ORACLE ADVISORY
September 15, 2026
NEXT STEP
Review patch status
Oracle’s September 15, 2026 security advisory includes fixes affecting Agile PLM 9.3.6, including an application-server vulnerability that Oracle identifies as remotely exploitable without authentication.
Your team should review the complete advisory and applicable patch documentation to determine what applies to your environment.
Start with your Agile administrator and the IT team or support provider responsible for the environment. Include Quality where updates require validation or controlled documentation.
Record your Agile version, installed patches, and relevant application-server components. Confirm who is responsible for reviewing and applying updates.
Compare your patch status with Oracle’s advisory and linked patch documentation. Identify prerequisites and earlier updates that may need attention.
Review integrations, customizations, expected downtime, and rollback arrangements. Define the testing, approvals, and validation activities needed before deployment.
Document installed updates and test results. Assign an owner to any outstanding actions.
Review Oracle’s public advisory for affected products and vulnerability details. Consult the linked My Oracle Support documentation for patch availability and installation instructions; access may require sign-in.
Use Oracle’s documentation to determine the correct updates for your environment.
Contact Domain Systems for assistance reviewing your Agile environment and planning next steps. Include your Agile version, known patch level, and the person responsible for administering the environment.
Domain Systems
P.O. Box 375 · Farmington, UT 84025
801-447-3777
Website: https://domainsi.com/
Privacy Policy: https://domainsi.com/privacy/