Vulnerability in Oracle VM VirtualBox by Oracle Virtualization
CVE-2026-47055

3.2LOW

Key Information:

Vendor

Oracle

Vendor
CVE Published:
21 July 2026

What is CVE-2026-47055?

A vulnerability exists in Oracle VM VirtualBox within the Core component that can be exploited by a high-privileged attacker with access to the execution infrastructure. This flaw permits unauthorized manipulation of the Oracle VM VirtualBox environment, enabling attackers to perform operations such as data updates, inserts, or deletions on accessible data. The vulnerability's impact is not confined to Oracle VM VirtualBox; it has the potential to affect additional products due to its nature. This situation necessitates immediate attention from users and administrators to secure their virtual environments.

Affected Version(s)

Oracle VM VirtualBox 7.2.12

References

CVSS V3.1

Score:
3.2
Severity:
LOW
Confidentiality:
None
Integrity:
Low
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.