CISA Adds Four Known Exploited Vulnerabilities to Catalog

Summary

CISA has added four new vulnerabilities to its Known Exploited Vulnerabilities (KEV) Catalog due to evidence of active exploitation. These include vulnerabilities in Microsoft IKE Service Extensions, Microsoft SharePoint, Broadcom VMware vCenter, and Apple macOS. The addition reinforces the importance of CISA's Binding Operational Directive (BOD) 26-04, which requires federal agencies to prioritize patching these high-risk vulnerabilities.

IFF Assessment

FOE

The article details newly identified actively exploited vulnerabilities, which represent new threats that defenders must actively address and mitigate.

Severity

9.8 Critical

CISA KEV: Listed as actively exploited. Federal patch due: August 21, 2026. Known ransomware use: Unknown.

Defender Context

The inclusion of these vulnerabilities in CISA's KEV catalog means they are actively being exploited in the wild, posing an immediate threat to organizations, especially federal agencies. Defenders must prioritize patching these specific CVEs on publicly exposed assets to mitigate the risk of compromise. This highlights the ongoing need for robust vulnerability management and timely patching as a foundational security practice.

Read Full Story →