CVE-2026-21994 - Vulnerability Analysis
CriticalCVSS: 9.8Last Updated: March 18, 2026
Oracle Edge Cloud Infrastructure Designer and Visualisation Toolkit - Remote Code Execution
Overview
Oracle Edge Cloud Infrastructure Designer and Visualisation Toolkit 0.3.0 contains a remote code execution caused by an easily exploitable vulnerability in the Desktop component, letting unauthenticated attackers with network access via HTTP fully compromise the system, exploit requires network access.
Severity & Score
Impact
Unauthenticated attackers can fully compromise the system, leading to complete takeover.
Mitigation
Update to the latest version of Oracle Edge Cloud Infrastructure Designer and Visualisation Toolkit.
References
Social Media Activity(1 post)
š“ CVE-2026-21994 - Critical (9.8) Vulnerability in the Oracle Edge Cloud Infrastructure Designer and Visualisation Toolkit product of Oracle Open Source Projects (component: Desktop). The supported version that is affected is 0.3.0. Easily exploitable vulnerability allows unauth... š https://www.thehackerwire.com/vulnerability/CVE-2026-21994/ #CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
View original postGitHub Repositories(1 repo)
Related Resources
Details
- CVE ID
- CVE-2026-21994
- Severity
- Critical
- CVSS Score
- 9.8
- Type
- undefined
- Status
- unconfirmed
- EPSS
- 4.1%
- Social Posts
- 1
CWE
- CWE-284
CVSS Metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H