Severity:
CRITICAL RISK
(10.0)
Improper Access Control (CWE-284) in Oracle WebLogic Server Proxy Plug-in for Apache/IIS
CVE-2026-21962
Published:
Jan 20, 2026
Status:
Modified
Summary
Affected Context
Exploit Preconditions
Why This Happens
Potential Impact
General Mitigation Guidance
How Teams Detect Issues Like This
Frequently Asked Questions
Source
NDV







