CISA KEV
7 articles
Advertisement
Articles7
CISA Added Seven Exploited Flaws. Five Due in Three Days, Two in Fourteen.
Five carry a three-day federal clock, two carry fourteen days, in a single batch. Three of the seven sit in AI...
PR
4 Sep
Exploited Gitea Flaw Hinges on Repository Write Access
CVE-2026-60004 lets anyone who can push to a repo plant a Git hook and run shell commands as the service accou...
KE
27 Aug
A Password Was Built Into Cisco's Firewall Manager. It Is Being Exploited, and Agencies Had Three Days to Fix It
CVE-2026-20316 scores 5.3 — a medium. CISA still gave federal agencies three days and told them to check for c...
CY
1 Aug
Adobe ColdFusion CVE-2026-48282: A Perfect-Score Path-Traversal Flaw CISA Says Is Being Exploited
CISA added a maximum-severity Adobe ColdFusion path-traversal flaw to its exploited-vulnerabilities catalog on...
CY
11 Jul
SharePoint RCE CVE-2026-45659 Added to CISA KEV: A 'Less Likely' May Patch Is Now Actively Exploited
CISA added CVE-2026-45659, a CVSS 8.8 deserialization remote-code-execution flaw in on-premises Microsoft Shar...
CY
6 Jul
SolarWinds Serv-U Enters CISA KEV After Active Exploitation Warning
SolarWinds Serv-U CVE-2026-28318 is now in CISA’s Known Exploited Vulnerabilities catalogue after a June 2026...
CY
7 Jun
Microsoft Exchange OWA Zero-Day CVE-2026-42897 Actively Exploited With No Permanent Patch
Microsoft confirmed active exploitation of CVE-2026-42897, a cross-site scripting flaw in Exchange's Outlook W...
CY
1 Jun
Advertisement