Oracle’s July update fixes ten 10.0 vulnerabilities in Fusion Middleware

Summary

Oracle's July 2026 Critical Patch Update addresses 1,449 security vulnerabilities across 32 product families, with Fusion Middleware being particularly affected by 355 flaws, including ten scoring a perfect 10.0 CVSS. The update also includes a critical 9.9 CVSS vulnerability in the Oracle Database Server's RDBMS component.

IFF Assessment

FOE

The article highlights a significant number of high-severity vulnerabilities in Oracle products, posing a direct threat to defenders by increasing the attack surface.

Severity

9.9 Critical

The article explicitly states that ten vulnerabilities in Oracle's Fusion Middleware scored a 'perfect' 10.0 on the Common Vulnerability Scoring System.

Defender Context

This update signifies a critical need for organizations using Oracle products to prioritize patching. Defenders should be aware of the breadth of vulnerabilities, especially those in Fusion Middleware and the Oracle Database Server, and actively monitor for exploit attempts targeting these newly patched flaws.

Read Full Story →