Oracle issued a record quarterly security update with 1,449 patches across its product portfolio, while also shifting to monthly Critical Security Patch Updates for the most severe flaws. The company said the surge is tied largely to AI-assisted internal vulnerability discovery, and the release includes multiple high-risk issues such as CVE-2026-47056 and CVE-2026-60217, both rated CVSS 10.0 and described as remotely exploitable without authentication, alongside serious Oracle Database Server flaws including CVE-2026-61211 and CVE-2026-47040.
Government and industry warnings say organizations should expect a broader patch wave as AI accelerates both vulnerability discovery and attacker exploitation. Research on 1,646 open source CVEs linked to multiple patches found that remediation often spans several commits rather than a single fix, with 641 cases involving incomplete initial patches and 31.7% of multi-patch fixes taking more than a day to complete, leaving residual exposure. Security agencies are urging defenders to prioritize internet-facing and critical systems, isolate or replace unsupported technology, and verify whether follow-up or branch-specific patches are still pending instead of assuming the first published fix fully closes the risk.

See real exploitation activity before you spend the cycle.
5 events from the most recent confirmed update back to the earliest known activity.
University of Texas at Dallas researchers analyzed 1,646 open source CVEs linked to more than one patch and found remediation often spans multiple commits, leaving exposure windows between initial and final fixes. The study also found existing vulnerability- and clone-detection tools often miss incomplete or multi-location fixes.
Oracle released a record-sized quarterly security update containing 1,449 patches across its product portfolio. The batch included critical issues such as CVE-2026-47056 and CVE-2026-60217, both rated CVSS 10.0.
Oracle changed its patching model by adding monthly Critical Security Patch Updates for the most critical flaws while keeping its cumulative quarterly updates. The article states this monthly program started in May 2026.
CERT.hr issued a security notice echoing the warning that AI is accelerating both vulnerability discovery and exploitation, and advised organizations to prepare for rapid large-scale patch deployment and improve cyber hygiene.
The UK National Cyber Security Centre published guidance warning that AI-accelerated vulnerability discovery could drive a surge in software patches and urging organizations to strengthen patch management and prioritize critical systems.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
See real exploitation activity behind this advisory so you can triage it against everything else in the queue.
8 references tracked. Mallory keeps watching after this page renders.
cyberveille.ch
Open sourcethecybersecguru.com
Open sourcehelpnetsecurity.com
Open sourcetheregister.com
Open sourcecert.hr
Open sourcencsc.gov.uk
Open sourceopennet.me
Open sourceopennet.ru
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.