CVE-2026-21992 - Vulnerability Details

Threat entity extracted from intelligence sources

Frequency
14
occurrences
First Seen
March 20, 2026
Last Seen
June 3, 2026

CVE-2026-21992 is a vulnerability tracked across 3 threat clusters and 14 intelligence report mentions on ThreatCluster. First observed March 20, 2026; most recent activity June 3, 2026.

Related Threat Clusters

Recent Intelligence Reports

  • Cpuapr2026 — www.oracle.com · June 3, 2026
  • CISA flags two-year-old Oracle flaw as actively exploited in attacks — Bleepingcomputer · June 2, 2026
  • CISA flags two-year — Bleepingcomputer · June 2, 2026
  • Oracle vulnerability (CVE-2026-21992) impacts core products — Sophos · March 24, 2026
  • CC-4760 - Oracle Releases Out-of — Digital.Nhs.Uk · March 23, 2026
  • Oracle issues emergency fix for pre-auth RCE in Identity Manager (CVE-2026-21992) — Feeds2.Feedburner · March 23, 2026
  • Critical Vulnerability in Oracle Products - Cyber Security Agency of Singapore (CSA) — Csa.Sg · March 23, 2026
  • Oracle Fixes High — Gbhackers · March 21, 2026

CVSS v3.1 Breakdown