CISA Adds Four Known Exploited Vulnerabilities to Catalog
Summary
CISA has added four new vulnerabilities to its Known Exploited Vulnerabilities (KEV) Catalog due to evidence of active exploitation. These include vulnerabilities in Microsoft IKE Service Extensions, Microsoft SharePoint, Broadcom VMware vCenter, and Apple macOS. The addition reinforces the importance of CISA's Binding Operational Directive (BOD) 26-04, which requires federal agencies to prioritize patching these high-risk vulnerabilities.
IFF Assessment
The article details newly identified actively exploited vulnerabilities, which represent new threats that defenders must actively address and mitigate.
Severity
CISA KEV: Listed as actively exploited. Federal patch due: August 21, 2026. Known ransomware use: Unknown.
Defender Context
The inclusion of these vulnerabilities in CISA's KEV catalog means they are actively being exploited in the wild, posing an immediate threat to organizations, especially federal agencies. Defenders must prioritize patching these specific CVEs on publicly exposed assets to mitigate the risk of compromise. This highlights the ongoing need for robust vulnerability management and timely patching as a foundational security practice.