⚡ Exploit-DB.ai CRITICAL
CRITICAL

CVE-2020-14882

Published: March 18, 2026 · Source: National Vulnerability Database (NVD)

⚡ AI Threat Assessment

WebLogic Server unauthenticated RCE — trivially exploitable via HTTP GET request with no authentication. Actively exploited by cryptominer operators and ransomware groups worldwide. Apply Oracle Critical Patch Update immediately for all WebLogic deployments.

📋 Official Description

Vulnerability in Oracle WebLogic Server allows unauthenticated remote code execution by sending a specially crafted HTTP GET request.

Get Real-Time CVE Alerts

Supernova subscribers receive AI-triaged CVE alerts the moment they're published — before the PoC drops.

Start Supernova — $99/mo →