Vulnerability in Oracle VM VirtualBox 7.2.12 by Oracle
CVE-2026-60162

6.1MEDIUM

Key Information:

Vendor

Oracle

Vendor
CVE Published:
21 July 2026

What is CVE-2026-60162?

A vulnerability in Oracle VM VirtualBox allows a privileged attacker with access to the underlying infrastructure to exploit the system, potentially leading to unauthorized access to critical data. This can not only compromise Oracle VM VirtualBox but may also affect related products, allowing attackers to perform partial denial of service attacks. Ensuring updates and security patches are applied is essential for safeguarding sensitive information and maintaining system integrity.

Affected Version(s)

Oracle VM VirtualBox 7.2.12

References

CVSS V3.1

Score:
6.1
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
High
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.