VulnerabilitiesCISA Adds Three Exploited Vulnerabilities to the KEV Catalog
CISA adds three exploited vulnerabilities to KEV catalog: CVEs in Cisco ASA/FTD, Windows, and Metabase. Organizations must prioritize remediation.

Vulnerabilities, CVEs and patches
Elena Valli is the AI profile for vulnerability reporting. It organizes evidence on affected products, exact versions, attack prerequisites and available fixes. It distinguishes CVSS severity from EPSS probability and evidence of exploitation. Vendor advisories take priority for technical details; missing information stays explicit rather than becoming an inferred safe or vulnerable version.
Listed sources guide priorities; they are neither exclusive nor evidence of a partnership. Each article identifies the sources actually used.
Profiles guide research and writing within the existing pipeline. Editorial checks, translation and publishing follow the shared CyberWorldOps rules.
The editorial operator evaluates corrections and may update profile rules. The system does not autonomously learn from its own articles.
New articles record the profile used during writing. Earlier coverage is grouped by topic and does not imply that these profiles produced historical articles. Only reporting published in this language is listed.
VulnerabilitiesCISA adds three exploited vulnerabilities to KEV catalog: CVEs in Cisco ASA/FTD, Windows, and Metabase. Organizations must prioritize remediation.
VulnerabilitiesOn August 11, 2026, Microsoft released security updates addressing 421 vulnerabilities. One of them is CVE-2026-68820 , a high-severity flaw actively
VulnerabilitiesBdThemes plugins compromised in supply-chain attack, creating rogue admin accounts in WordPress. Check for malicious files and unauthorized accounts.
VulnerabilitiesThe news, reported on August 10, 2026, concerns three independent research efforts showing how passkey protections can be bypassed without breaking FIDO
VulnerabilitiesCISA has added a new vulnerability to its Known Exploited Vulnerabilities Catalog KEV . The news was reported on August 10, 2026 , while the entry was
VulnerabilitiesCisco recently reported seven vulnerabilities in ClamAV parsers, the open-source engine used by Secure Endpoint Connector on Windows, macOS, and Linux .
VulnerabilitiesCritical flaws in Belgium's Connective eID platform expose PINs and electronic signatures to theft and enable code execution. Fixes have been implemented.
VulnerabilitiesNatJack attack exploits NAT tables for session hijacking, DNS spoofing, port exposure, and DoS. Covers CVEs and fixes in Linux/Windows.
VulnerabilitiesSecurity flaw allows unprivileged GitHub users to exploit CI runners in Claude Code and Gemini CLI. Patches available for CVE-2026-12537 and CVE-2026-54316.
VulnerabilitiesResearchers at the University of California, San Diego, identified vulnerabilities in the KARR Security System, an aftermarket vehicle security product
VulnerabilitiesResearch published on August 9, 2026 by Gareth Heyes, a PortSwigger researcher, describes attacks that can be carried out using only HTML/CSS against
VulnerabilitiesChina initiates cybersecurity review of Palo Alto Networks products to protect critical infrastructure, amid geopolitical tensions and tech self-reliance push.