What Is CVE-2026-21962? CVE-2026-21962 is a critical (CVSS 10.0) vulnerability in the Oracle HTTP Server and the WebLogic Server Proxy Plug-in for Apache HTTP Server and Microsoft IIS. An unauthenticated attacker with HTTP access can exploit this flaw by sending crafted requests to the affected proxy components and bypass security controls. Successful exploitation can result…
First seen on securityboulevard.com
Jump to article: securityboulevard.com/2026/01/imperva-customers-protected-against-cve-2026-21962-in-oracle-http-and-weblogic/
![]()

