CYBERSECURITYTRACKER
TRACKING6,506 stories in this site build1,309 vulnerability news stories in this site build
Permanent story citation

Oracle July 2026 Critical Patch Update Addresses 1235 CVEs

This page keeps the story as Cybersecurity Tracker first published it. If the tracker later corrects it, the correction appears below the original and never replaces it.

Back to newsStory 2966

As cited

Copy frozen at (site build).

vulnerabilities

Oracle July 2026 Critical Patch Update Addresses 1235 CVEs

Oracle released its July 2026 Critical Patch Update on July 21, addressing 1235 unique CVEs across 1449 patches spanning 32 product families. The release included 261 critical patches (18% of all patches), with Oracle E-Business Suite and Fusion Middleware receiving the largest share of fixes. The update covers vulnerabilities across multiple severity levels, with 219 patches in Fusion Middleware exploitable remotely without authentication.

Why it matters: Oracle customers running any of the 32 affected product families must prioritize patching this quarter's critical and high-severity fixes, particularly those using E-Business Suite or Fusion Middleware, to address exploitable network-based vulnerabilities.

Source published
First seen by Cybersecurity Tracker

Source attribution

Correction

Correction recorded as of .

vulnerabilities

Oracle July 2026 Critical Patch Update Addresses 1235 CVEs

Oracle released its July 2026 Critical Patch Update on July 21, addressing 1235 unique CVEs across 1449 patches spanning 32 product families. The release included 261 critical patches (18% of all patches), with Oracle E-Business Suite and Fusion Middleware receiving the largest share of fixes. The update covers vulnerabilities across multiple severity levels, with 219 patches in Fusion Middleware exploitable remotely without authentication.

Why it matters: Oracle customers running any of the 32 affected product families must prioritize patching this quarter's critical and high-severity fixes, particularly those using E-Business Suite or Fusion Middleware, to address exploitable network-based vulnerabilities.

VendorsOracleAdobe
Source published
First seen by Cybersecurity Tracker

Source attribution

Glossary