logo

Critical WebLogic RCE Vulnerability Exploited in the Wild

ID: af58709c-f7e2-5646-a67e-52de9b4af7d9

STIX ID: report--af58709c-f7e2-5646-a67e-52de9b4af7d9

Feed Name: ThreatCluster

Threat Score
90/100

Date Published: 2026-04-01

Date Updated: 2026-04-01

...
...

Critical unauthenticated RCE in Oracle WebLogic Server (CVE-2026-21962, CVSS 10.0) is being actively exploited in the wild following the public release of exploit code on 22 January 2026; honeypot data indicates a rapid increase in exploitation and organizations are urged to apply vendor patches immediately to mitigate risk.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.