Skip to main content

Glossary

KEV

Known Exploited Vulnerabilities — A catalog maintained by CISA of vulnerabilities confirmed to have been actively exploited in the wild, along with mandated remediation deadlines for U.S. federal civilian agencies. Because inclusion requires evidence of real-world exploitation rather than theoretical risk, the KEV catalog is widely used across the industry as a prioritization signal beyond CVSS score alone.

Recent coverage mentioning KEV

CRITICAL
Vulnerabilities

N-able N-central RCE via CVE-2026-86218 Under Active Exploitation

CISA confirms active exploitation of CVE-2026-86218, a pre-authentication remote code execution flaw in N-able N-central, urging immediate mitigation.

Runtime Rebel Intel
3 min read · Sep 8, 2026
CRITICAL
Vulnerabilities

CVE-2026-75650: Adobe Commerce RCE via Template Engine Flaw

CISA warns of active exploitation of CVE-2026-75650, a critical RCE vulnerability in Adobe Commerce and Magento Open Source platforms.

Runtime Rebel Intel
3 min read · Sep 8, 2026
HIGH
Vulnerabilities

CVE-2026-59346: VMware Workstation & Fusion RCE Patch

Broadcom patches critical arbitrary code execution flaws (CVE-2026-59346, CVE-2026-59347) in VMware Workstation and Fusion, impacting host systems from compromised VMs.

Runtime Rebel Intel
4 min read · Sep 6, 2026
CVE-2026-63077: JetBrains Cadence Breach Exposes Credentials
CRITICAL
Data Breach

CVE-2026-63077: JetBrains Cadence Breach Exposes Credentials

JetBrains Cadence suffered a data breach via unpatched TeamCity (CVE-2026-63077), exposing AWS credentials, source code, and user data. Immediate action required.

Runtime Rebel Intel
4 min read · Sep 5, 2026
CRITICAL
Vulnerabilities

CVE-2026-83548: SonicWall SMA1000 SSRF Under Active Exploitation

A critical server-side request forgery (SSRF) vulnerability, CVE-2026-83548, in SonicWall SMA1000 Appliances is under active exploitation.

Runtime Rebel Intel
4 min read · Sep 2, 2026
CRITICAL
Vulnerabilities

CVE-2026-49869: Kestra OSS OS Command Injection Exploited

CISA has added CVE-2026-49869, an OS command injection in Kestra OSS, to its KEV catalog, confirming active exploitation by unauthenticated attackers.

Runtime Rebel Intel
4 min read · Sep 2, 2026

Advertisement

← All 285 glossary terms