BTC $71,807
2026 Bull Run Is Building Start trading with 5% OFF all fees
Sign Up Now
BTC $71,807
Bull Run 2026 | 5% Off Fees Open your Binance account today
Sign Up

CISA Adds Eight Exploited Vulnerabilities to KEV Catalog

U.S. agencies must urgently patch eight actively exploited flaws in Cisco, Quest, and JetBrains software.

  • The U.S. cybersecurity agency has flagged eight new software flaws being actively exploited by attackers.
  • Three of the vulnerabilities impact Cisco Catalyst SD-WAN Manager, with federal agencies given a critical deadline to patch.
  • Several critical flaws, including one with a maximum CVSS score of 10.0 in a Quest KACE appliance, are part of the urgent warning.
  • The catalog now includes older threats like a PaperCut bug tied to ransomware groups and newly observed exploits against JetBrains and Synacor software.

On April 21, 2026, the U.S. Cybersecurity and Infrastructure Security Agency (CISA) urgently added eight dangerous security vulnerabilities to its public catalog, citing clear evidence of active in-the-wild exploitation. Three of the critical flaws specifically target Cisco Catalyst SD-WAN Manager, a crucial networking component for many organizations.

- Advertisement -

Consequently, federal agencies have been ordered to patch the Cisco issues by April 23. They must address the remaining five vulnerabilities in the Known Exploited Vulnerabilities (KEV) catalog by May 4, 2026.

The list includes severe bugs like CVE-2025-32975, a perfect 10.0-scored flaw in Quest KACE Systems Management Appliance that allows complete user impersonation. Meanwhile, CVE-2024-27199 in JetBrains TeamCity and a cross-site scripting bug in Synacor Zimbra Collaboration Suite also pose significant risks.

However, older threats remain potent, as a 2023 PaperCut flaw (CVE-2023-27351) was previously used by the Lace Tempest group to deploy ransomware. Similarly, Cisco confirmed the active exploitation of two SD-WAN Manager bugs in March 2026, according to its security advisory.

Security firm Arctic Wolf recently observed attacks leveraging the Quest KACE vulnerability as well. This coordinated action by CISA underscores the persistent and widespread threat from unpatched enterprise software.

- Advertisement -

✅ Follow BITNEWSBOT on Telegram, Facebook, LinkedIn, X.com, and Google News for instant updates.

Previous Articles:

- Advertisement -
Ad
Altseason Is Loading. Don't watch from the sidelines.
SOL $90.51
DOGE $0.0963
LINK $9.02
SUI $1.00
5% off fees when you sign up
Start Trading
Ad
Pay Less on Every Trade. For Life.
$10K/mo volume Save $60/yr
$50K/mo volume Save $300/yr
$100K/mo volume Save $600/yr
5% off all trading fees when you sign up
Claim Your Discount

Latest News

Senate GOP Updated Clarity Act Targets Fake DeFi, Vote Set

Senate Republicans released an updated Clarity Act on Thursday targeting non-decentralized crypto trading protocols.The...

TSMC revenue hits record $16.3B, AI demand fuels 53% jump

TSMC reported a record August revenue of NT$514.8 billion ($16.3 billion), marking a 53.3%...

AI Leaves Banks Minutes to Fix Flaws: BIS

A BIS paper warns that AI is shortening the time banks have to repair...

US housing split: low-end sales down, luxury up on AI wealth

Compass CEO Robert Reffkin says U.S. housing market is splitting: low-end sales down 10%...

Trezor email partner breach exposes 347K users to phishing

Trezor's third-party email partner Brevo was breached, exposing 347,000 newsletter subscribers' email addresses.Hackers used...

Must Read

Top 9 VPNs That Accept Bitcoin And Crypto

CyberGhost | FastVPN | TorGuard | Private Internet Access | ExpressVPN | NordVPN | Private VPN | SurfShark | AirVPN | Why Buy VPN...
Ad
Altseason Is Loading. These 4 coins are trending right now.
SOL $92.12
DOGE $0.0950
LINK $9.02
SUI $1.02
5% off spot fees when you sign up
Start Trading