LeakyCreds
NewInstant webhook alerts now available — notified within seconds of any credential detection.Learn more →
Home / Vulnerability Intelligence / CVE-2026-21994

CVE-2026-21994 - Vulnerability Analysis

CriticalCVSS: 9.8

Last Updated: March 18, 2026

Oracle Edge Cloud Infrastructure Designer and Visualisation Toolkit - Remote Code Execution

Published: March 17, 2026Updated: March 18, 2026PoC AvailableRemote Exploitable

Overview

Oracle Edge Cloud Infrastructure Designer and Visualisation Toolkit 0.3.0 contains a remote code execution caused by an easily exploitable vulnerability in the Desktop component, letting unauthenticated attackers with network access via HTTP fully compromise the system, exploit requires network access.

Severity & Score

Severity: Critical
CVSS Score: 9.8
EPSS Score: 4.1%(Probability of exploitation in next 30 days)

Impact

Unauthenticated attackers can fully compromise the system, leading to complete takeover.

Mitigation

Update to the latest version of Oracle Edge Cloud Infrastructure Designer and Visualisation Toolkit.

Social Media Activity(1 post)

TheHackerWire
TheHackerWire
@thehackerwire
Mar 17, 2026

šŸ”“ CVE-2026-21994 - Critical (9.8) Vulnerability in the Oracle Edge Cloud Infrastructure Designer and Visualisation Toolkit product of Oracle Open Source Projects (component: Desktop). The supported version that is affected is 0.3.0. Easily exploitable vulnerability allows unauth... šŸ”— https://www.thehackerwire.com/vulnerability/CVE-2026-21994/ #CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

View original post

Details

CVE ID
CVE-2026-21994
Severity
Critical
CVSS Score
9.8
Type
undefined
Status
unconfirmed
EPSS
4.1%
Social Posts
1

CWE

  • CWE-284

CVSS Metrics

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

EPSS Score

4.1%Probability of exploitation in the next 30 days