news.mlab.sh
Back to the feed
vulnerability

Multiples vulnérabilités dans Oracle Weblogic (19 août 2026)

High
Summary

Multiple vulnerabilities have been discovered in Oracle WebLogic Server, allowing attackers to cause denial of service, compromise data confidentiality, and potentially execute arbitrary code remotely. These vulnerabilities affect several versions of the software and require immediate patching.

Multiple vulnerabilities exist within Oracle WebLogic Server, presenting significant security risks. These flaws enable attackers to potentially compromise data confidentiality and execute arbitrary code remotely, leading to a denial of service. The vulnerabilities affect several versions of the software, including WebLogic Server 12.2.1.4.0, 14.1.1.0.0, 14.1.2.0.0, and 15.1.1.0.0. The CERT-FR bulletin details these issues and provides links to the relevant security alerts. The vulnerabilities are identified by CVE identifiers: CVE-2023-21839, CVE-2024-20931, CVE-2026-60415, CVE-2026-60672, CVE-2026-60679, CVE-2026-60680, CVE-2026-60696, CVE-2026-60698, CVE-2026-60699, and CVE-2026-60702. Affected organizations include Oracle. The CERT-FR bulletin provides further details and links to the security alerts for remediation.

Read the full article at CERT-FR