Vulnerabilities & Exploits · Web App Attack

Immediate Attacks Target Oracle WebLogic RCE Flaw

CloudSEK honeypot logs show exploitation of CVE-2026-21962 against Oracle WebLogic began on Jan 22, the same day exploit code was published.

1 source · Mar 26

CVE-2026-21962

NVD KEV

Known exploited · CISA KEV

CVSS 10 CRITICAL: vulnerability in the Oracle HTTP Server, Oracle Weblogic Server Proxy Plug-in product of Oracle Fusion Middleware… EPSS 42% (99th percentile).

CISA federal remediation date Aug 27

Timeline

Sources

Part of the PlainSec briefing for 2026-03-27

Every edition of this story: Immediate Attacks Target Oracle WebLogic RCE Flaw

More from today