Oracle’s July update fixes ten 10.0 vulnerabilities in Fusion Middleware
Summary
Oracle's July 2026 Critical Patch Update addresses 1,449 security vulnerabilities across 32 product families, with Fusion Middleware being particularly affected by 355 flaws, including ten scoring a perfect 10.0 CVSS. The update also includes a critical 9.9 CVSS vulnerability in the Oracle Database Server's RDBMS component.
IFF Assessment
The article highlights a significant number of high-severity vulnerabilities in Oracle products, posing a direct threat to defenders by increasing the attack surface.
Severity
The article explicitly states that ten vulnerabilities in Oracle's Fusion Middleware scored a 'perfect' 10.0 on the Common Vulnerability Scoring System.
Defender Context
This update signifies a critical need for organizations using Oracle products to prioritize patching. Defenders should be aware of the breadth of vulnerabilities, especially those in Fusion Middleware and the Oracle Database Server, and actively monitor for exploit attempts targeting these newly patched flaws.