CISA Adds One Known Exploited Vulnerability to Catalog
Summary
CISA has added a new vulnerability, CVE-2026-73570 affecting Zimbra Collaboration Suite (ZCS) with an OS Command Injection flaw, to its Known Exploited Vulnerabilities (KEV) Catalog. This addition is based on evidence of active exploitation, highlighting the significant risks such vulnerabilities pose. The article also references Binding Operational Directive (BOD) 26-04, which mandates federal agencies to prioritize the remediation of high-risk, exploited vulnerabilities listed in the KEV Catalog on publicly exposed assets.
IFF Assessment
The addition of an actively exploited vulnerability to CISA's KEV catalog represents bad news for defenders as it indicates a known threat that malicious actors are actively leveraging.
Severity
CISA KEV: Listed as actively exploited. Federal patch due: August 24, 2026. Known ransomware use: Unknown.
Defender Context
Defenders should prioritize patching or mitigating CVE-2026-73570 immediately, especially if they are running Zimbra Collaboration Suite. The inclusion in CISA's KEV catalog signals that this vulnerability is actively being exploited in the wild, posing an imminent risk to systems. Organizations should also review their vulnerability management processes to ensure they are effectively prioritizing and remediating known exploited vulnerabilities.