vulnerability
Oracle Database: Critical Patch Update - January 2025 (CVE-2022-26345)
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 6 | (AV:L/AC:H/Au:S/C:C/I:C/A:C) | Feb 16, 2023 | Jan 22, 2025 | Mar 27, 2026 |
Severity
6
CVSS
(AV:L/AC:H/Au:S/C:C/I:C/A:C)
Published
Feb 16, 2023
Added
Jan 22, 2025
Modified
Mar 27, 2026
Description
Uncontrolled search path element in the Intel(R) oneAPI Toolkit OpenMP before version 2022.1 may allow an authenticated user to potentially enable escalation of privilege via local access.
Solution
oracle-apply-jan-2025-cpu
Rapid7 Labs
2026 Global Threat Landscape Report
The predictive window has collapsed. Exploitation follows disclosure in days. See how attackers are accelerating and how to stay ahead.