CISA Adds One Known Exploited Vulnerability to Catalog

2026-08-07T19:24:01Z16d551a90b741a67e4883bfa929c3e8e27a5ace2bd74e429df8e103398107591
CVE-2025-68686CVE-2026-16812CVE-2026-18556CVE-2026-18577CVE-2026-20316CVE-2026-34486CVE-2026-63077CVE-2026-8037CVE-2026-9198CISAKEVOT securityPLCactively exploitedauthentication bypasscommand injectioncritical infrastructureransomware riskvulnerability managementwater and wastewater

What happened

CISA alerts report active exploitation of multiple vulnerabilities added to the Known Exploited Vulnerabilities (KEV) Catalog, including command injection, deserialization, code injection, authentication bypass, hard-coded credentials, sensitive information exposure, and missing encryption flaws affecting Progress LoadMaster, JetBrains TeamCity, IBM Langflow, N-able N-central, Apache Tomcat, Cisco Secure Firewall Management Center, Fortinet FortiOS, and Arista VeloCloud Orchestrator. CISA also warns that threat actors are targeting internet-exposed programmable logic controllers in the Water/W

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
cisa_ncas_current_activity
Record identifier
16d551a90b741a67e4883bfa929c3e8e27a5ace2bd74e429df8e103398107591
Enrichment time
2026-08-07T19:24:01Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.