Skip to content
The Nexus
SECURITYAug 25 · 06:12 UTCTHE HACKER NEWS[email protected] (The Hacker News)

Actively Exploited Oracle WebLogic Flaw Lets Unauthenticated Attackers Access Critical Data

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) added a maximum-severity security flaw impacting Oracle HTTP Server and Oracle WebLogic Server to its Known Exploited Vulnerabilities catalog due to active exploitation. The vulnerability, identified as CVE-2026-21962 with a CVSS score of 10.0, allows unauthenticated attackers with network access via HTTP to critical data.

Nexus surfaces and summarizes. The full story lives at the source.

Mentioned
Spot something wrong with this article?Report a problem →
Forward this
Related Signal

Adjacent reporting