CVE-2026-21962
- CVSS
- —
- EPSS
- 0.709 (99.4th percentile)
- CISA KEV
- Added 2026-08-24, due 2026-08-27
- Exploitation
- No report
- Public exploits
- 10 repositories
- State
- Unknown
Coverage
Actively exploitedCritical 85CISA advisories & alerts
CISA Adds One Known Exploited Vulnerability to Catalog
CISA has added one new vulnerability to its Known Exploited Vulnerabilities (KEV) Catalog, based on evidence of active exploitation. CVE-2026-21962 Oracle HTTP Server and Oracle Weblogic Server Proxy Plug-in Improper Access Control Vulnerability This type of vulnerability is a frequent attack…
What we observed
- poc publishedpoc-in-github
- poc publishedpoc-in-github
- poc publishedpoc-in-github
- poc publishedpoc-in-github
- kev addedcisa-kev