CVE-2026-21962
Sfruttamento noto · CISA KEV
CVSS 10 CRITICAL: vulnerability in the Oracle HTTP Server, Oracle Weblogic Server Proxy Plug-in product of Oracle Fusion Middleware… EPSS 71% (99º percentile).
Data di correzione federale CISA 27 ago
Vulnerabilità ed exploit · Attacco ad app web
L'attività era automatizzata e prevalentemente originata da VPS cloud, indicando rapida weaponization e rischio per server non patchati.
1 fonte · 26 mar
Sfruttamento noto · CISA KEV
CVSS 10 CRITICAL: vulnerability in the Oracle HTTP Server, Oracle Weblogic Server Proxy Plug-in product of Oracle Fusion Middleware… EPSS 71% (99º percentile).
Data di correzione federale CISA 27 ago
Infosecurity Magazine
Rapid Exploitation of CVE-2026-21962 Hits Oracle WebLogic
Attackers rapidly exploited a critical Oracle WebLogic RCE flaw the same day exploit code was released, according to a CloudSEK honeypot study
originalePart of the PlainSec briefing for 2026-03-27
Every edition of this story: Attacchi Immediati Sfruttano RCE in Oracle WebLogic