CISA Adds One Known Exploited Vulnerability to Catalog

Summary

CISA has added CVE-2026-85706, a path traversal vulnerability in GitLab Community and Enterprise Editions, to its Known Exploited Vulnerabilities (KEV) Catalog due to evidence of active exploitation. This action aligns with Binding Operational Directive (BOD) 26-04, which mandates Federal Civilian Executive Branch (FCEB) agencies to prioritize the remediation of high-risk vulnerabilities listed in the KEV Catalog, particularly on publicly exposed assets.

IFF Assessment

FOE

The article reports on a newly added exploited vulnerability, which poses an active threat and requires immediate attention from defenders.

Severity

CISA KEV: Listed as actively exploited. Federal patch due: September 14, 2026. Known ransomware use: Unknown.

Defender Context

Defenders should prioritize patching or mitigating CVE-2026-85706, especially in environments using GitLab Community or Enterprise Edition. The inclusion in CISA's KEV Catalog signifies active exploitation, indicating a high risk to organizations. This also highlights the ongoing importance of timely vulnerability management and adherence to directives like BOD 26-04 for federal agencies.

Read Full Story →