← CVE Tracker
8.0HIGHCISA KEV — actively exploited
CVE-2026-21962 — Oracle HTTP Server and Oracle Weblogic Server Proxy Plug-in Improper Access Control Vulnerability
Oracle · HTTP Server and Oracle Weblogic Server Proxy Plug-in · Published 24 Aug 2026 · Modified 24 Aug 2026