Skip to main content
← All Articles

Tag

#CISA KEV

107 articles

Advertisement

CVE-2026-58644: SharePoint RCE Zero-Day Exploited in the Wild
CRITICAL
Vulnerabilities

CVE-2026-58644: SharePoint RCE Zero-Day Exploited in the Wild

CISA adds CVE-2026-58644, a critical Microsoft SharePoint Server deserialization RCE vulnerability with a CVSS 9.8, to its Known Exploited Vulnerabilities catalog.

Runtime Rebel Intel
3 min read · Jul 17, 2026
CRITICAL
Vulnerabilities

Microsoft SharePoint RCE via CVE-2024-38094: Mitigation Guide

CISA adds three exploited SharePoint vulnerabilities to the KEV catalog, including CVE-2024-38094. Learn how to detect and mitigate these critical RCE flaws.

Runtime Rebel Intel
4 min read · Jul 15, 2026
CRITICAL
Vulnerabilities

CVE-2023-29357: CISA Warns of Active SharePoint Exploit Chain

CISA urges immediate patching of CVE-2023-29357 and CVE-2023-24955 in SharePoint Server due to active exploitation for remote code execution.

Runtime Rebel Intel
4 min read · Jul 15, 2026
Joomla RCE via CVE-2026-48939 and CVE-2026-38294 — Mitigation Guide
CRITICAL
Vulnerabilities

Joomla RCE via CVE-2026-48939 and CVE-2026-38294 — Mitigation Guide

CISA adds CVE-2026-48939 and CVE-2026-38294 to KEV after zero-day exploitation of Joomla iCagenda and Balbooa Forms extensions. Patch immediately.

Runtime Rebel Intel
4 min read · Jul 13, 2026
CRITICAL
Vulnerabilities

CVE-2024-37014: CISA Orders Federal Agencies to Patch Langflow

CISA added CVE-2024-37014, a critical authentication bypass in the Langflow AI framework, to its KEV catalog following reports of active exploitation.

Runtime Rebel Intel
4 min read · Jul 8, 2026
CVE-2026-48282: Adobe ColdFusion Path Traversal RCE — Patch Now
CRITICAL
Vulnerabilities

CVE-2026-48282: Adobe ColdFusion Path Traversal RCE — Patch Now

CISA adds actively exploited Adobe ColdFusion vulnerability [CVE-2026-48282] to KEV catalog, warning of critical remote code execution risks.

Runtime Rebel Intel
4 min read · Jul 8, 2026

Advertisement

CVE-2026-45659: SharePoint RCE Exploitation - Mitigation Guide
HIGH
Vulnerabilities

CVE-2026-45659: SharePoint RCE Exploitation - Mitigation Guide

CISA adds CVE-2026-45659, a high-severity SharePoint Server deserialization flaw, to KEV catalog after confirmed active exploitation by threat actors.

Runtime Rebel Intel
3 min read · Jul 2, 2026
HIGH
Threat Intel

Windows BlueHammer Flaw Exploited by Ransomware Gangs — Patch Now

CISA warns that ransomware gangs are now exploiting the BlueHammer privilege escalation vulnerability in Microsoft Defender to bypass security controls.

Runtime Rebel Intel
3 min read · Jun 30, 2026
HIGH
Vulnerabilities

CVE-2022-25247: PTC Windchill RCE Exploited in the Wild

CISA warns of active exploitation of CVE-2022-25247, an RCE flaw in PTC Windchill PLM software. Learn how to detect and mitigate this critical threat.

Runtime Rebel Intel
3 min read · Jun 26, 2026
CRITICAL
Vulnerabilities

Oracle PeopleSoft CVE-2026-35273 Exploit: CISA KEV Mitigation Guide

CISA adds CVE-2026-35273 in Oracle PeopleSoft to its KEV catalog. Learn how to mitigate this missing authentication vulnerability and protect enterprise systems.

Runtime Rebel Intel
3 min read · Jun 13, 2026
CRITICAL
Vulnerabilities

Ivanti Sentry CVE-2023-35081: CISA Issues Urgent 3-Day Patch Mandate

CISA adds CVE-2023-35081 to its KEV catalog, ordering federal agencies to patch Ivanti Sentry path traversal flaws to prevent remote code execution.

Runtime Rebel Intel
4 min read · Jun 12, 2026
CRITICAL
Vulnerabilities

CISA Adds CVE-2026-42271 and CVE-2026-50751 to KEV Catalog

CISA warns of active exploitation involving BerriAI LiteLLM and Check Point Security Gateways. Learn how to mitigate these critical security flaws.

Runtime Rebel Intel
3 min read · Jun 9, 2026
CVE-2026-42271: BerriAI LiteLLM RCE Exploited in the Wild
CRITICAL
Vulnerabilities

CVE-2026-42271: BerriAI LiteLLM RCE Exploited in the Wild

CISA warns of active exploitation of CVE-2026-42271 in BerriAI LiteLLM. This command injection flaw allows attackers to achieve RCE and compromise AI proxies.

Runtime Rebel Intel
3 min read · Jun 9, 2026
SolarWinds Serv-U DoS Vulnerability CVE-2026-28318 Added to CISA KEV
HIGH
Vulnerabilities

SolarWinds Serv-U DoS Vulnerability CVE-2026-28318 Added to CISA KEV

CISA adds CVE-2026-28318 to its KEV catalog following active exploitation of a high-severity DoS vulnerability in SolarWinds Serv-U file server software.

Runtime Rebel Intel
3 min read · Jun 6, 2026
HIGH
Vulnerabilities

CVE-2026-28318: SolarWinds Serv-U Uncontrolled Resource Consumption Exploit

CISA warns of active exploitation of CVE-2026-28318, an uncontrolled resource consumption flaw in SolarWinds Serv-U. Immediate patching is critical for all organizations.

Runtime Rebel Intel
4 min read · Jun 5, 2026
HIGH
Vulnerabilities

CVE-2024-28995: SolarWinds Serv-U Exploit Leads to Server Crashes

CISA warns of active exploitation of SolarWinds Serv-U CVE-2024-28995. Attackers are leveraging this directory traversal flaw to crash vulnerable servers.

Runtime Rebel Intel
3 min read · Jun 5, 2026
CVE-2026-45247: Magento Mirasvit Cache Warmer RCE Exploit Analysis
CRITICAL
Vulnerabilities

CVE-2026-45247: Magento Mirasvit Cache Warmer RCE Exploit Analysis

CISA adds CVE-2026-45247, a critical Mirasvit Cache Warmer RCE flaw impacting Magento sites, to the KEV catalog following reports of active exploitation.

Runtime Rebel Intel
3 min read · Jun 4, 2026
HIGH
Vulnerabilities

CVE-2026-45247: Mirasvit Full Page Cache Warmer Exploited — Patch Now

CISA adds CVE-2026-45247, a deserialization vulnerability in Mirasvit Full Page Cache Warmer for Magento, to the KEV catalog after reports of active exploitation.

Runtime Rebel Intel
3 min read · Jun 3, 2026
HIGH
Vulnerabilities

Android and Linux Kernel Exploitation: CVE-2024-36971 and CVE-2024-21626

CISA adds Android CVE-2024-36971 and Linux CVE-2024-21626 to its KEV catalog following reports of active exploitation by sophisticated threat actors.

Runtime Rebel Intel
4 min read · Jun 3, 2026
HIGH
Vulnerabilities

CISA KEV Update: Active Exploitation of CVE-2022-0492 and CVE-2025-48595

CISA adds Linux Kernel and Android Framework vulnerabilities to its Known Exploited Vulnerabilities catalog. Prioritize patching CVE-2022-0492 and CVE-2025-48595.

Runtime Rebel Intel
3 min read · Jun 2, 2026
HIGH
Vulnerabilities

CVE-2022-21371: CISA Warns of Oracle WebLogic Exploitation

CISA adds CVE-2022-21371 to its KEV catalog, warning of active exploitation of an information disclosure flaw in Oracle WebLogic Server. Patch immediately.

Runtime Rebel Intel
4 min read · Jun 2, 2026
CRITICAL
Vulnerabilities

CVE-2024-21182: Oracle WebLogic Server Under Active Exploitation

CISA added CVE-2024-21182, an unspecified vulnerability in Oracle WebLogic Server, to its KEV Catalog due to active exploitation. Immediate patching required.

Runtime Rebel Intel
5 min read · Jun 1, 2026
CRITICAL
Vulnerabilities

CVE-2026-0257: Palo Alto PAN-OS Auth Bypass Under Active Attack

CISA adds CVE-2026-0257, an actively exploited authentication bypass in Palo Alto Networks PAN-OS, to its KEV catalog.

Runtime Rebel Intel
4 min read · May 29, 2026
CRITICAL
Vulnerabilities

Actively Exploited CVEs: Daemon Tools Lite, TanStack, Nx Console

CISA added three vulnerabilities—CVE-2026-8398, CVE-2026-45321, CVE-2026-48027—to its KEV Catalog due to active exploitation. Prioritize patching.

Runtime Rebel Intel
5 min read · May 27, 2026