Vulnerability in Oracle TimesTen In-Memory Database Kubernetes Operator
CVE-2026-60401

6.5MEDIUM

Key Information:

Vendor

Oracle

Vendor
CVE Published:
21 July 2026

What is CVE-2026-60401?

A security vulnerability has been identified in Oracle's TimesTen In-Memory Database, specifically within its Kubernetes Operator component, affecting version 26.1.1.1.0. This flaw allows an attacker with low privileges and access to the infrastructure where the database runs to exploit the system. Successful exploitation can lead to unauthorized access to sensitive data, posing a significant risk not only to the TimesTen In-Memory Database itself but also potentially affecting other interconnected products. It's crucial for users to apply mitigations and updates to safeguard their environments.

Affected Version(s)

TimesTen In-Memory Database 26.1.1.1.0

References

CVSS V3.1

Score:
6.5
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.