#kev
33 posts · Last used 11d
Replying to
CISA working on a Sunday: Citrix NetScaler zero-days CVE-2026-88771 and CVE-2026-887712 were added to the Known Exploited Vulnerabilities (KEV) Catalog, based on evidence of active exploitation.
https://www.cisa.gov/news-event/alerts/2026/09/27/cisa-adds-two-known-exploited-vulnerabilities-catalog
#KEV #Citrix #NetScaler #zeroday #CVE
CVE-2026-76460: Cisco ISE authentication bypass with CVSS 10.0
🔗 https://cybersecurefox.com/en/cve-2026-76460-cisco-ise-authentication-bypass-cvss-10-0
#CVE-2026-76460 #Cisco #ISE #authentication #bypass #CVSS #10.0 #CISA #KEV
CVE-2026-58704: Pixel modem vulnerability added to CISA KEV catalog
🔗 https://cybersecurefox.com/en/cve-2026-58704-pixel-modem-privilege-escalation-cisa-kev
#CVE-2026-58704 #Google #Pixel #Cellular #Modem #CISA #KEV #privilege #escalation
CVE-2026-8037: CISA Adds Progress LoadMaster Flaw to KEV
🔗 https://cybersecurefox.com/en/cve-2026-8037-progress-kemp-loadmaster
#cve-2026-8037 #progress #kemp #loadmaster #cisa #kev #command #injection #exploited #vulnerability
CISA Adds Three Actively Exploited Flaws to KEV Catalog
🔗 https://cybersecurefox.com/en/cisa-adds-langflow-tomcat-n-central-kev
#cisa #kev #catalog #langflow #rce #apache #tomcat #encryption #bypass #n-able #n-central #authentication #bypass
CVE-2026-18577: N-able N-central Auth Bypass Exploited
🔗 https://cybersecurefox.com/en/cve-2026-18577-n-able-n-central-auth-bypass
#CVE-2026-18577 #N-able #N-central #CISA #KEV #authentication #bypass #RMM #security
TeamCity vulnerability CVE-2026-63077 enables unauthenticated remote code execution. CISA added it to the KEV catalog amid active exploitation.
#TeamCity #CVE202663077 #RCE #CISA #KEV #CyberSecurity
https://securityonline.info/teamcity-cve-2026-63077-rce/?utm_source=mastodon&utm_medium=jetpack_social
CISA added three bugs to its KEV list. An N-able N-central authentication bypass is exploited in the wild to deploy RMM tools. Patch by August 7.
#Nable #Ncentral #CISA #KEV #CVE202618556 #ExploitedInTheWild #RMM #Langflow #ApacheTomcat #CyberSecurity #InfoSec
https://securityonline.info/n-able-n-central-exploited-cisa-kev/?utm_source=mastodon&utm_medium=jetpack_social
CISA Adds Cisco Secure FMC CVE-2026-20316 to KEV
🔗 https://cybersecurefox.com/en/cisco-secure-fmc-cve-2026-20316-kev
#cisco #secure #fmc #cve-2026-20316 #cve-2026-20079 #cisa #kev #static #credentials
CVE-2026-16812: Critical Arista VCO Flaw Exploited
🔗 https://cybersecurefox.com/en/arista-velocloud-orchestrator-cve-2026-16812-command-injection
#arista #velocloud #orchestrator #cve-2026-16812 #sd-wan #command #injection #cisa #kev
A Cisco FMC vulnerability, CVE-2026-20316, is exploited in the wild. Static credentials let attackers log in. CISA added it to KEV — patch now.
#Cisco #CVE202620316 #FMC #KEV #Vulnerability #InfoSec
https://securityonline.info/cisco-fmc-cve-2026-20316/?utm_source=mastodon&utm_medium=jetpack_social
CISA KEV additions on July 27 flag two known exploited vulnerabilities: Arista VeloCloud CVE-2026-16812 and FortiOS CVE-2025-68686. Patch both now.
#CISA #KEV #Arista #VeloCloud #Fortinet #FortiOS #CVE #ExploitedInTheWild #Cybersecurity
https://securityonline.info/cisa-kev-arista-velocloud-fortios/?utm_source=mastodon&utm_medium=jetpack_social
CISA added four flaws to its KEV catalog, including WordPress RCE (CVE-2026-63030) and Langflow RCE (CVE-2026-0770). All are exploited in the wild.
#CISA #KEV #WordPress #Langflow #DDWRT #RCE #SQLInjection
https://securityonline.info/cisa-kev-four-exploited-vulnerabilities/?utm_source=mastodon&utm_medium=jetpack_social
CISA Flags CVE-2026-58644 SharePoint RCE in KEV Catalog
🔗 https://cybersecurefox.com/en/cisa-adds-cve-2026-58644-sharepoint-kev
#CISA #CVE-2026-58644 #SharePoint #Server #vulnerability #KEV #catalog #IIS #machine #keys
CVE-2026-58644: CRITICAL RCE in Microsoft SharePoint enables remote, authenticated Site Owners to execute code via deserialization. Exploited in the wild — patch now (July 2026 updates). Details: https://radar.offseq.com/threat/fresh-sharepoint-vulnerability-exploited-soon-afte-951942a1c69ed88b #OffSeq #SharePoint #Vuln #KEV #Infosec
CISA KEV catalog adds three actively exploited flaws: FortiSandbox CVE-2026-25089, CVE-2026-39808, and SharePoint CVE-2026-58644. Patch by July 19.
#CISA #KEV #Fortinet #FortiSandbox #SharePoint #CVE202658644 #ActivelyExploited #CyberSecurity
https://securityonline.info/cisa-kev-fortisandbox-sharepoint/?utm_source=mastodon&utm_medium=jetpack_social
CISA added four actively exploited flaws to its KEV Catalog, including critical Joomla, Langflow, and ColdFusion bugs. Agencies must patch by July 10.
#CISA #KEV #ActivelyExploited #Joomla #ColdFusion #Langflow #InfoSec
https://securityonline.info/cisa-kev-four-actively-exploited-flaws/?utm_source=mastodon&utm_medium=jetpack_social
CISA Adds Three Known Exploited Vulnerabilities to Catalog | CISA https://www.cisa.gov/news-events/alerts/2026/07/07/cisa-adds-three-known-exploited-vulnerabilities-catalog
#CISA #cybersecurity #infosec #patchnow #vulnerabilitymanagement #KEV
A new KEV Catalog built from real-world exploitation data !
https://vulnerability.circl.lu/known-exploited-vulnerabilities-catalog/?sort=first_seen&catalog_uuid=c8fb6bf1-f81f-4cb8-95b1-eadbb3b54ee8
We are excited to share the result of a fruitful collaboration with @shadowserver@infosec.exchange: a new Known Exploited Vulnerabilities (KEV) Catalog (BCP-07 compliant) built directly from their global honeypot telemetry.
#ShadowServer #KEV #GCVE #Vulnerability #VulnerabilityManagement #Decentralization #Fragmentation
















