The Oncology Institute, Inc. filed an Item 1.05 8-K supplementing its November 6, 2025 voluntary 7.01 disclosure regarding a cybersecurity incident at a software service provider (Vendor). On May 20, 2026, Kroll, the Vendor's third-party administrator, notified the Company that an unauthorized third party had accessed certain Company information systems, including systems containing patient data. The Company states operations continued in all material respects and it will work with the Vendor to offer credit monitoring to impacted patients.