Executive brief
A critical vulnerability has been identified in Oracle WebLogic Server, a platform used for building and deploying enterprise applications. An unauthenticated attacker can exploit this flaw over the network to gain full access to sensitive data managed by the server. This could lead to the unauthorized viewing, modification, or deletion of critical business information, potentially compromising the integrity of the entire application environment.
Technical details
This vulnerability exists in the Core component of Oracle WebLogic Server and is classified as easily exploitable. An unauthenticated attacker can trigger the flaw remotely via HTTP without any user interaction. The exploit grants the attacker high-impact access to both confidentiality and integrity, allowing for the unauthorized creation, deletion, or modification of critical data. Affected versions include 12.2.1.4.0, 14.1.1.0.0, 14.1.2.0.0, and 15.1.1.0.0. Users are advised to refer to the Oracle Critical Patch Update (CPU) for July 2026 for remediation steps.
Affected products
- Oracle WebLogic Server 12.2.1.4.0, 14.1.1.0.0, 14.1.2.0.0, 15.1.1.0.0
Timeline
- 2026-07-21: disclosed
- 2026-07-21: advisory