<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"><channel><title>RuntimeRebel — #KEV Catalog</title><description>Cybersecurity articles tagged #KEV Catalog on RuntimeRebel.</description><link>https://runtimerebel.com</link><item><title>CISA BOD 26-04: Prioritizing KEV Catalog Vulnerability Patching</title><link>https://runtimerebel.com/blog/cisa-bod-26-04-prioritizing-kev-catalog-vulnerability-patching</link><guid isPermaLink="true">https://runtimerebel.com/blog/cisa-bod-26-04-prioritizing-kev-catalog-vulnerability-patching</guid><description>CISA&apos;s BOD 26-04 mandates federal agencies prioritize patching vulnerabilities in the KEV catalog. Learn its impact and how to enhance your vulnerability management.</description><pubDate>Thu, 11 Jun 2026 13:35:38 GMT</pubDate><category>CISA</category><category>BOD 26 04</category><category>Vulnerability Management</category><category>KEV Catalog</category><category>Federal Agencies</category><category>Patch Management</category></item><item><title>CISA Updates Federal Patching Mandates to Combat AI-Driven Threats</title><link>https://runtimerebel.com/blog/cisa-updates-federal-patching-mandates-to-combat-ai-driven-threats</link><guid isPermaLink="true">https://runtimerebel.com/blog/cisa-updates-federal-patching-mandates-to-combat-ai-driven-threats</guid><description>CISA updates federal directive to require 3-day patching for critical flaws, addressing the rapid exploitation speeds enabled by artificial intelligence.</description><pubDate>Thu, 11 Jun 2026 09:42:21 GMT</pubDate><category>CISA</category><category>BOD 22 01</category><category>Vulnerability Management</category><category>AI Threats</category><category>KEV Catalog</category></item><item><title>CVE-2026-0300: Palo Alto Networks PAN-OS Out-of-bounds Write Exploit</title><link>https://runtimerebel.com/blog/cve-2026-0300-palo-alto-networks-pan-os-out-of-bounds-write-exploit</link><guid isPermaLink="true">https://runtimerebel.com/blog/cve-2026-0300-palo-alto-networks-pan-os-out-of-bounds-write-exploit</guid><description>CISA adds CVE-2026-0300, a Palo Alto Networks PAN-OS out-of-bounds write vulnerability, to its KEV Catalog due to active exploitation.</description><pubDate>Wed, 06 May 2026 20:37:19 GMT</pubDate><category>CVE-2026-0300</category><category>Palo Alto Networks</category><category>PAN OS</category><category>Out of Bounds Write</category><category>KEV Catalog</category><category>Active Exploitation</category></item><item><title>CISA KEV Update: Exchange Server, Adobe, MS Windows Exploits</title><link>https://runtimerebel.com/blog/cisa-kev-update-exchange-server-adobe-ms-windows-exploits</link><guid isPermaLink="true">https://runtimerebel.com/blog/cisa-kev-update-exchange-server-adobe-ms-windows-exploits</guid><description>CISA adds seven vulnerabilities, including critical Microsoft Exchange Server deserialization, to its Known Exploited Vulnerabilities Catalog, urging immediate…</description><pubDate>Tue, 14 Apr 2026 00:47:03 GMT</pubDate><category>CVE-2012-1854</category><category>CVE-2020-9715</category><category>CVE-2023-21529</category><category>CVE-2023-36424</category><category>CVE-2025-60710</category><category>CVE-2026-21643</category><category>CVE-2026-34621</category><category>Microsoft Exchange Server</category><category>Adobe Acrobat</category><category>Microsoft Windows</category><category>Fortinet</category><category>CISA</category><category>KEV Catalog</category><category>Deserialization</category><category>Use After Free</category><category>SQL Injection</category></item><item><title>CVE-2026-20131: Cisco FMC/SCC Deserialization Vulnerability Under Active Attack</title><link>https://runtimerebel.com/blog/cve-2026-20131-cisco-fmc-scc-deserialization-vulnerability-under-active-attack</link><guid isPermaLink="true">https://runtimerebel.com/blog/cve-2026-20131-cisco-fmc-scc-deserialization-vulnerability-under-active-attack</guid><description>CISA adds CVE-2026-20131, a critical deserialization vulnerability in Cisco Secure Firewall Management Center (FMC) and Security Cloud Control (SCC), to KEV Catalog due…</description><pubDate>Fri, 20 Mar 2026 16:21:47 GMT</pubDate><category>CVE-2026-20131</category><category>Cisco Secure Firewall Management Center</category><category>Cisco Security Cloud Control</category><category>Deserialization</category><category>KEV Catalog</category></item><item><title>CVE-2026-20963: Microsoft SharePoint Deserialization Exploit — Patch Now</title><link>https://runtimerebel.com/blog/cve-2026-20963-microsoft-sharepoint-deserialization-exploit-patch-now</link><guid isPermaLink="true">https://runtimerebel.com/blog/cve-2026-20963-microsoft-sharepoint-deserialization-exploit-patch-now</guid><description>CISA adds CVE-2026-20963, a Microsoft SharePoint deserialization vulnerability, to its KEV catalog due to active exploitation.</description><pubDate>Wed, 18 Mar 2026 20:17:46 GMT</pubDate><category>CVE-2026-20963</category><category>Microsoft SharePoint</category><category>Deserialization Vulnerability</category><category>KEV Catalog</category><category>Active Exploitation</category></item><item><title>CVE-2026-3909 &amp; CVE-2026-3910: Actively Exploited Google Vulnerabilities</title><link>https://runtimerebel.com/blog/cve-2026-3909-cve-2026-3910-actively-exploited-google-vulnerabilities</link><guid isPermaLink="true">https://runtimerebel.com/blog/cve-2026-3909-cve-2026-3910-actively-exploited-google-vulnerabilities</guid><description>CISA added two Google vulnerabilities (Skia Out-of-Bounds Write, Chromium V8 unspecified) to its KEV Catalog due to active exploitation. Patch now.</description><pubDate>Fri, 13 Mar 2026 20:15:47 GMT</pubDate><category>CVE-2026-3909</category><category>CVE-2026-3910</category><category>Google Skia</category><category>Google Chromium V8</category><category>KEV Catalog</category><category>Vulnerability Management</category></item><item><title>CVE-2025-68613: n8n Improper Code Control — Actively Exploited</title><link>https://runtimerebel.com/blog/cve-2025-68613-n8n-improper-code-control-actively-exploited</link><guid isPermaLink="true">https://runtimerebel.com/blog/cve-2025-68613-n8n-improper-code-control-actively-exploited</guid><description>CISA adds CVE-2025-68613, an n8n vulnerability involving improper control of dynamically-managed code, to its KEV Catalog due to active exploitation.</description><pubDate>Wed, 11 Mar 2026 20:15:24 GMT</pubDate><category>CVE-2025-68613</category><category>N8n</category><category>KEV Catalog</category><category>Improper Control of Dynamically Managed Code Resources</category></item><item><title>CISA Alert: CVE-2026-25108 Soliton FileZen OS Command Injection Exploited</title><link>https://runtimerebel.com/blog/cisa-alert-cve-2026-25108-soliton-filezen-os-command-injection-exploited</link><guid isPermaLink="true">https://runtimerebel.com/blog/cisa-alert-cve-2026-25108-soliton-filezen-os-command-injection-exploited</guid><description>CISA adds CVE-2026-25108, a Soliton Systems FileZen OS Command Injection vulnerability, to KEV Catalog due to active exploitation. Immediate remediation advised.</description><pubDate>Wed, 25 Feb 2026 04:44:11 GMT</pubDate><category>CVE-2026-25108</category><category>Soliton Systems</category><category>FileZen OS</category><category>Command Injection</category><category>KEV Catalog</category><category>Active Exploitation</category></item></channel></rss>