CISA gives admins three days to patch actively exploited Oracle flaw
CISA has given U.S. federal agencies only three days to patch CVE-2026-21962, a maximum-severity Oracle vulnerability that attackers were already probing months before it entered the agency’s Known Exploited Vulnerabilities catalog. The flaw affects Oracle HTTP Server and the WebLogic Server Proxy Plug-in on Windows virtual machines and carries a CVSS score of 10.0.
Source
👉@sysadminoff
https://4sysops.com/archives/cisa-gives-admins-three-days-to-patch-actively-exploited-oracle-flaw/
Post #19620
59
