CISA has added CVE-2024-21182, a high-severity Oracle WebLogic Server flaw, to its Known Exploited Vulnerabilities Catalog after evidence of active exploitation. The issue can let an unauthenticated attacker with network access compromise affected servers, and federal agencies are urged to patch by June 4, 2026. #OracleWebLogicServer #CISA #CVE-2024-21182
Keypoints
- CISA added CVE-2024-21182 to its KEV Catalog.
- The flaw affects Oracle WebLogic Server.
- An unauthenticated attacker can exploit it over the network.
- Successful attacks can expose critical data or full server access.
- FCEB agencies must apply fixes by June 4, 2026.
Read More: https://thehackernews.com/2026/06/oracle-weblogic-cve-2024-21182-added-to.html