logo

Total Takeover: Critical CVSS 10 Flaw Found in Oracle Fusion Middleware

ID: 6214ce66-6017-5e46-b8da-9d3eff9550ad

STIX ID: report--6214ce66-6017-5e46-b8da-9d3eff9550ad

Feed Name: securityonline.info

Threat Score
80/100

Date Published: 2026-01-21

Date Updated: 2026-04-23

Author: Ddos

...
...

Oracle's January 2026 Critical Patch Update fixes 158 CVEs (337 security updates) across 30 product families, including a critical CVE-2026-21962 in Oracle Fusion Middleware (Oracle HTTP Server and WebLogic Server Proxy Plug-in) rated CVSS 10.0 that allows unauthenticated HTTP access to fully compromise affected servers and may impact additional products; administrators are urged to audit affected versions and apply the update immediately.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.