Oracle WebLogic is a technology platform tracked by ThreatCluster, appearing in 3 threat clusters built from 6 intelligence report mentions.
Oracle WebLogic is a technology platform tracked across 3 threat clusters and 6 intelligence report mentions on ThreatCluster. First observed February 24, 2026; most recent activity June 18, 2026.
A pre-authentication remote code execution (RCE) vulnerability, CVE-2026-35273, was discovered in Oracle PeopleSoft PeopleTools, affecting versions 8.61 and 8.62. The vulnerability allows unauthenticated attackers to…
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued a warning regarding the active exploitation of a two-year-old vulnerability in Oracle WebLogic Server, tracked as CVE-2024-21182. This flaw,…
The 2026 GreyNoise State of the Edge Report indicates that over half of the most dangerous exploitation attempts against internet-facing infrastructure originated from IPs with no prior history in GreyNoise data. The…
Oracle WebLogic is a technology platform tracked by ThreatCluster, appearing in 3 threat clusters built from 6 intelligence report mentions.
The most recent intelligence report mentioning Oracle WebLogic on ThreatCluster is dated June 18, 2026. Activity was first observed February 24, 2026, giving a tracked span from then to June 18, 2026.
Across ThreatCluster reporting, Oracle WebLogic most frequently co-occurs with Shadow-aether-015, ShinyHunters, Botnet, Credential Stuffing, Remote Code Execution, among 12 tracked related entities.
The most significant recent cluster is “Critical RCE Vulnerability in Oracle PeopleSoft Exploited by SHADOW-AETHER-015” (5 articles · Updated June 18, 2026). Oracle WebLogic appears across 3 threat clusters in total, listed above with sources.
Oracle WebLogic appears in 6 intelligence report mentions across 3 deduplicated threat clusters, aggregated from 17,000+ monitored sources.