Vulnerability in TimesTen In-Memory Database by Oracle
CVE-2026-60406

6.7MEDIUM

Key Information:

Vendor

Oracle

Vendor
CVE Published:
21 July 2026

What is CVE-2026-60406?

A significant vulnerability exists in the Oracle TimesTen In-Memory Database, specifically within its Kubernetes Operator component. This flaw allows an attacker with high privileges to access the system where the database executes, potentially leading to unauthorized control over the entire database environment. Exploiting this vulnerability could result in severe consequences for data confidentiality, integrity, and availability, posing a critical threat to organizations relying on TimesTen. Immediate remediation is recommended to prevent potential breaches.

Affected Version(s)

TimesTen In-Memory Database 26.1.1.1.0

References

CVSS V3.1

Score:
6.7
Severity:
MEDIUM
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.