ON June 1, 2026, CISA announced the addition of a new vulnerability, CVE-2024-21182, related to Oracle WebLogic Server, to its Known Exploited Vulnerabilities Catalog. This vulnerability has been identified as actively exploited and poses significant risks to federal enterprises. The addition aligns with Binding Operational Directive 22-01, which mandates Federal Civilian Executive Branch agencies to address such vulnerabilities to safeguard against cyber threats. CISA encourages all organizations, not just federal agencies, to prioritize remediation of these vulnerabilities to mitigate cyberattack risks.
CISA flags Oracle WebLogic CVE-2024-21182 as actively exploited
CyberSIXT Evidence Panel
Article by CyberSIXT
Timeline Coverage
Swipe to explore timeline
-
Oracle WebLogic CVE-2024-21182 added to KEV amid active exploits
thehackernews.com
-
CISA adds Oracle WebLogic flaw CVE-2024-21182 to exploited list
securityaffairs.com
-
CISA Alerts to Active Exploits of Unpatched Oracle WebLogic Flaw
securityweek.com
-
CVE-2024-21182 Fuels SilentCryptoMiner Attack on Streaming Sites
securityonline.info
-
Grandoreiro Banking Trojan Evades Defense via Lookalike Software
securityonline.info
-
The Shai-Hulud Infiltration: Red Hat Exploited in Sovereign Supply Chain Breach
securityonline.info
-
CISA’s KEV Catalog Helps Firms Tackle Oracle WebLogic Risk
cisa.gov
-
CISA flags Oracle WebLogic CVE-2024-21182 as actively exploited
www.cisa.gov