Vulnerability in Oracle TimesTen In-Memory Database Kubernetes Operator
CVE-2026-60407

5.6MEDIUM

Key Information:

Vendor

Oracle

Vendor
CVE Published:
21 July 2026

What is CVE-2026-60407?

A vulnerability exists in the TimesTen In-Memory Database's Kubernetes Operator, which may allow low-privileged attackers with access to the infrastructure to compromise the database. While primarily affecting the TimesTen In-Memory Database, the potential for scope change implies that successful exploitation could impact additional products by granting unauthorized access to critical data. Proper measures should be taken to mitigate risks associated with this vulnerability to protect sensitive information.

Affected Version(s)

TimesTen In-Memory Database 26.1.1.1.0

References

CVSS V3.1

Score:
5.6
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
Low
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.