logo

CVE-2026-21962 Oracle Flaw: CVSS 10 Exploited in Wild

ID: 79c3d714-6626-5ac2-bf66-699fcbc165cc

STIX ID: report--79c3d714-6626-5ac2-bf66-699fcbc165cc

Feed Name: securityonline.info

Threat Score
90/100

Date Published: 2026-08-25

Date Updated: 2026-08-25

Author: Do Son

...
...

**CVE-2026-21962 — Critical Oracle HTTP Server / WebLogic Server Proxy Plug-in vulnerability (CVSS 10.0) actively exploited in the wild.** Unauthenticated attackers can craft HTTP requests that bypass proxy authorization to access, create, modify, or delete critical server data; Oracle has released patches and CISA added the CVE to its Known Exploited Vulnerabilities catalog with a binding remediation directive, so administrators must apply vendor updates immediately.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.