Critical WebLogic RCE Vulnerability Exploited in the Wild
ID: af58709c-f7e2-5646-a67e-52de9b4af7d9
STIX ID: report--af58709c-f7e2-5646-a67e-52de9b4af7d9
Feed Name: ThreatCluster
Threat Score
Critical unauthenticated RCE in Oracle WebLogic Server (CVE-2026-21962, CVSS 10.0) is being actively exploited in the wild following the public release of exploit code on 22 January 2026; honeypot data indicates a rapid increase in exploitation and organizations are urged to apply vendor patches immediately to mitigate risk.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
