search
CISA
Trends
- 1Check Point VPN flaw under active attack days after patch●Check Point confirms active attacks on CVE-2026-85102 began three days after patches dropped. CISA sets federal deadline
Check Point has confirmed that attackers began exploiting CVE-2026-85102, a vulnerability in its VPN products, just three days after patches were released. CISA has added the flaw to its exploited-vulnerabilities catalog and given federal agencies a September 25 deadline to apply the fix. Security teams are urged to patch immediately as exploitation continues.
- 2CISA Flags Critical WSO2 and Adobe Commerce Flaws Under Active Exploitation●🔵 THREAT INTELLIGENCE WSO2 and Adobe Commerce Flaws Exploited in Attacks, Added to CISA KEV Vulnerability | CRITICAL CVE
The US Cybersecurity and Infrastructure Security Agency has added two critical vulnerabilities, affecting WSO2 and Adobe Commerce, to its Known Exploited Vulnerabilities catalog after both flaws were observed being used in real-world attacks. The inclusion signals that organizations running the affected software should treat patching as urgent, as the catalog formally requires federal agencies to remediate listed flaws within set deadlines.
- 3Exploited WordPress vulnerability affects all versions since 4.7.0●🔴 EXPLOITED WordPress core CVE-2026-87902 is being exploited to run code on sites, and it affects every release back to
A WordPress core vulnerability tracked as CVE-2026-87902 is being actively exploited to run code on websites without requiring login. The flaw reportedly affects every release going back to version 4.7.0. CISA has added it to its catalog and is requiring federal agencies to patch by September 28. Administrators are being urged to update to WordPress 7.1.2 immediately.
- 4CISA Adds Two Actively Exploited Vulnerabilities to Catalog●🚨 [CISA-2026:0927] CISA Adds 2 Known Exploited Vulnerabilities to Catalog ( https:// secdb.nttzen.cloud/security-ad viso
The US Cybersecurity and Infrastructure Security Agency has added two new vulnerabilities to its Known Exploited Vulnerabilities Catalog, citing evidence of active exploitation in the wild. The listing requires federal civilian agencies to patch the flaws within mandated deadlines. Security teams are being urged to review the advisory and prioritize remediation of the affected software.