CISA Adds One Known Exploited Vulnerability to Catalog
2026-08-07T19:24:01Z•16d551a90b741a67e4883bfa929c3e8e27a5ace2bd74e429df8e103398107591
CVE-2025-68686CVE-2026-16812CVE-2026-18556CVE-2026-18577CVE-2026-20316CVE-2026-34486CVE-2026-63077CVE-2026-8037CVE-2026-9198CISAKEVOT securityPLCactively exploitedauthentication bypasscommand injectioncritical infrastructureransomware riskvulnerability managementwater and wastewater
What happened
CISA alerts report active exploitation of multiple vulnerabilities added to the Known Exploited Vulnerabilities (KEV) Catalog, including command injection, deserialization, code injection, authentication bypass, hard-coded credentials, sensitive information exposure, and missing encryption flaws affecting Progress LoadMaster, JetBrains TeamCity, IBM Langflow, N-able N-central, Apache Tomcat, Cisco Secure Firewall Management Center, Fortinet FortiOS, and Arista VeloCloud Orchestrator. CISA also warns that threat actors are targeting internet-exposed programmable logic controllers in the Water/W
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- cisa_ncas_current_activity
- Record identifier
- 16d551a90b741a67e4883bfa929c3e8e27a5ace2bd74e429df8e103398107591
- Enrichment time
- 2026-08-07T19:24:01Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.