Category: CISA
CISA ADDS ACTIVELY EXPLOITED ZYXEL GS1900 SWITCH VULNERABILITY TO KEV CATALOG: STACK-BASED BUFFER OVERFLOW CAN ENABLE UNAUTHENTICATED COMMAND EXECUTION
CISA ADDS ACTIVELY EXPLOITED LINUX KERNEL TLS VULNERABILITY TO KEV CATALOG: CVE-2025-39682 ELEVATED FOR PRIORITY REMEDIATION
CISA ADDS TWO ACTIVELY EXPLOITED LINUX KERNEL VULNERABILITIES TO KEV CATALOG: RACE CONDITION AND OUT-OF-BOUNDS WRITE NOW REQUIRE PRIORITY REMEDIATION
CISA, FBI, NSA, U.S. SECRET SERVICE, DC3 AND KNPA WARN GUNRA RANSOMWARE IS TARGETING GOVERNMENT AND CRITICAL INFRASTRUCTURE WORLDWIDE
CISA ADDS TWO ACTIVELY EXPLOITED FORTINET AND ARISTA VULNERABILITIES TO KNOWN EXPLOITED VULNERABILITIES CATALOG
RUSSIAN STATE-SUPPORTED CYBER ACTORS EXPLOIT ZIMBRA ZERO-DAY TO STEAL EMAILS, CREDENTIALS AND AUTHENTICATION DATA
IRANIAN-AFFILIATED CYBER ACTORS BREACH INDUSTRIAL CONTROL SYSTEMS ACROSS U.S. CRITICAL INFRASTRUCTURE
IMPROVE ROUTER HYGIENE TO PROTECT AGAINST RUSSIAN STATE-SPONSORED TARGETING: INTERNATIONAL CYBERSECURITY AGENCIES ISSUE JOINT WARNING
CISA ADDS TWO ACTIVELY EXPLOITED FILE UPLOAD VULNERABILITIES TO KNOWN EXPLOITED VULNERABILITIES CATALOG
CISA ADDS ACTIVELY EXPLOITED ADOBE COLDFUSION VULNERABILITY TO KNOWN EXPLOITED VULNERABILITIES CATALOG
CISA ADDS ACTIVELY EXPLOITED MICROSOFT SHAREPOINT DESERIALIZATION VULNERABILITY TO KNOWN EXPLOITED VULNERABILITIES CATALOG
CISA ADDS ACTIVELY EXPLOITED SIMPLEHELP AUTHENTICATION BYPASS VULNERABILITY TO KNOWN EXPLOITED VULNERABILITIES CATALOG
CISA Adds Three Actively Exploited Vulnerabilities to KEV Catalog Affecting Arista EOS, Google Chromium V8, and Cisco SD-WAN Infrastructure
CISA Adds SolarWinds Serv-U Vulnerability to KEV Catalog Following Confirmed Active Exploitation Activity
CISA Issues Active Exploitation Warning for Mirasvit Deserialization Vulnerability Added to KEV Catalog
CISA Adds Actively Exploited Palo Alto Networks PAN-OS Authentication Bypass Vulnerability to KEV Catalog
CISA Adds Three Known Exploited Vulnerabilities to KEV Catalog Following Active Exploitation Activity
CISA Adds CVE-2026-48172 LiteSpeed cPanel Plugin Vulnerability to KEV Catalog Following Active Exploitation Activity
CISA Adds Seven Known Exploited Vulnerabilities to KEV Catalog Following Active Exploitation Activity
ScadaBR ICS Platform Exposed to Critical Remote Code Execution Vulnerabilities Affecting Industrial Infrastructure Environments
ZKTeco CCTV Cameras Exposed to High-Severity Authentication Bypass Vulnerability Affecting Surveillance Infrastructure
CISA Adds Microsoft Exchange Server Vulnerability to KEV Catalog Following Active Exploitation Activity
Critical ABB AC500 PLC Vulnerability Exposes Industrial Systems to Potential Remote Code Execution Attacks
ABB Automation Builder Gateway Vulnerability Exposes Industrial Control Environments to Remote PLC Discovery Risks
Multiple Critical ABB AC500 V3 Vulnerabilities Expose Industrial Control Systems to Access Bypass, Certificate Manipulation, and Denial-of-Service Risks
CISA Expands Federal Hiring Push Across Cybersecurity, Infrastructure Security, Acquisition, and Incident Response Divisions
