CVE-2026-21962 Oracle Flaw: CVSS 10 Exploited in Wild
ID: 79c3d714-6626-5ac2-bf66-699fcbc165cc
STIX ID: report--79c3d714-6626-5ac2-bf66-699fcbc165cc
Feed Name: securityonline.info
Threat Score
**CVE-2026-21962 — Critical Oracle HTTP Server / WebLogic Server Proxy Plug-in vulnerability (CVSS 10.0) actively exploited in the wild.** Unauthenticated attackers can craft HTTP requests that bypass proxy authorization to access, create, modify, or delete critical server data; Oracle has released patches and CISA added the CVE to its Known Exploited Vulnerabilities catalog with a binding remediation directive, so administrators must apply vendor updates immediately.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
