CVE-2026-21962 is a vulnerability tracked across 6 threat clusters and 8 intelligence report mentions on ThreatCluster. First observed January 21, 2026; most recent activity June 2, 2026.
Hackers are actively exploiting a critical Remote Code Execution (RCE) vulnerability in Oracle WebLogic Server, tracked as CVE-2026-21962, which has a maximum CVSS score of 10.0. This unauthenticated flaw allows…
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued a warning regarding the active exploitation of a two-year-old vulnerability in Oracle WebLogic Server, tracked as CVE-2024-21182. This flaw,…
On January 20, 2026, Oracle released its Critical Patch Update (CPU) for January 2026, addressing 337 security vulnerabilities across 122 products. This update includes fixes for 158 unique CVEs, with 27 patches…
A critical vulnerability (CVE-2026-21962) has been identified in Oracle HTTP Server and WebLogic Server Proxy Plug-in, allowing unauthenticated attackers to create, delete, or modify critical data. Oracle has released…
Two vulnerabilities in Ivanti Endpoint Manager Mobile (CVE-2026-21962 and CVE-2026-24061) have been flagged as actively exploited in zero-day attacks. A single IP address is responsible for over 83% of exploitation…
CVE-2026 was assigned to address a vulnerability in Chromium, which is utilized by Microsoft Edge (Chromium-based). This vulnerability affects users of Microsoft Edge as it ingests the Chromium codebase. For further…