News
CISA Adds Actively Exploited Oracle WebLogic Flaw to KEV Catalog
CISA added CVE-2026-21962, an actively exploited Oracle WebLogic and HTTP Server access control flaw, to its Known Exploited Vulnerabilities Catalog on August 24. Federal agencies have until August 27 to remediate, setting a three-day benchmark for all organizations running exposed instances.