# Multiple flaws patched in Oracle WebLogic Server

Published: 2026-08-19 · Severity: elevated · Sectors: technology
Canonical: https://vorant.io/reports/0a1141a9-6aa4-538f-b543-0babefd6987a/multiple-flaws-patched-in-oracle-weblogic-server

> ANSSI advisory details multiple Oracle WebLogic Server vulnerabilities enabling remote DoS, data confidentiality and integrity breaches, patched in Oracle's August 2026 CPU.

The French national cybersecurity agency (ANSSI/CERT-FR) issued an advisory covering multiple vulnerabilities affecting Oracle WebLogic Server versions 12.2.1.4.0, 14.1.1.0.0, 14.1.2.0.0, and 15.1.1.0.0. The flaws, addressed in Oracle's Critical Patch Update for August 2026 (cspuaug2026), could allow an attacker to cause remote denial of service, compromise data confidentiality, and undermine data integrity, with some entries also referencing arbitrary remote code execution risk.

The advisory lists eleven CVE identifiers, including older references (CVE-2023-21839, CVE-2024-20931) alongside a batch of newly disclosed 2026 CVEs. No public exploitation or proof-of-concept is mentioned; the advisory is a standard patch notification directing administrators to Oracle's official security bulletin for remediation. Organizations running affected WebLogic versions should apply the vendor's patches per the referenced CPU as part of routine patch management.

## Mentioned in this report

- Vulnerabilities: CVE-2023-21839 (KEV), CVE-2024-20931, CVE-2026-60415, CVE-2026-60672, CVE-2026-60679, CVE-2026-60680, CVE-2026-60696, CVE-2026-60698, CVE-2026-60699, CVE-2026-60702, CVE-2026-60977

Source reporting: https://www.cert.ssi.gouv.fr/avis/CERTFR-2026-AVI-1053

---

This is the free public brief from Vorant Threat Intelligence. When citing, attribute "Vorant" and link https://vorant.io/reports/0a1141a9-6aa4-538f-b543-0babefd6987a/multiple-flaws-patched-in-oracle-weblogic-server.
Full IOC sets, deployable detections, the entity graph, TAXII 2.1 feed and real-time alerts: https://vorant.io/signup
