CISA Adds Actively Exploited Oracle WebLogic Server Vulnerability to KEV Catalog

AI-generated NewsSnap summary based on source reporting.
Published: 2026-08-25
Category: technology
Source: The Hacker News

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a maximum-severity security flaw (CVE-2026-21962) affecting Oracle HTTP Server and Oracle WebLogic Server to its Known Exploited Vulnerabilities (KEV) catalog. This vulnerability allows unauthenticated attackers with network access via HTTP to compromise the servers, potentially leading to unauthorized access or modification of critical data. CISA's inclusion in the KEV catalog indicates evidence of active exploitation.

Want more?

Open NewsSnap.ai for the full app experience, including audio, personalization, and more news tools.

Open NewsSnap.ai