CISA Adds Three Known Exploited Vulnerabilities to Catalog

2026-06-09T21:24:14Z8258b8d450f9a0fe3dd9ac947fdff86de96d7450a3ae7bfe2e02c87e3736e736
active-exploitationauthentication-bypassci/cdcisacommand-injectiondeserializationgithubkev-catalogknown-exploited-vulnerabilitiesnetworkingout-of-boundsresource-consumptionsupply-chainvs-code-extensionvulnerability-managementweb-browser

What happened

CISA added multiple vulnerabilities to its Known Exploited Vulnerabilities (KEV) Catalog in early June 2026 based on evidence of active exploitation. Newly listed CVEs include CVE-2026-7473 (Arista EOS), CVE-2026-11645 (Chromium V8), CVE-2026-20245 (Cisco Catalyst SD‑WAN Manager), CVE-2026-42271 (BerriAI LiteLLM), CVE-2026-50751 (Check Point Security Gateway), CVE-2026-28318 (SolarWinds Serv-U), CVE-2026-45247 (Mirasvit Full Page Cache Warmer), CVE-2022-0492 (Linux kernel), CVE-2025-48595 (Android Framework), CVE-2024-21182 (Oracle WebLogic), and CVE-2026-0257 (Palo Alto PAN-OS). CISA also is

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
cisa_ncas_current_activity
Record identifier
8258b8d450f9a0fe3dd9ac947fdff86de96d7450a3ae7bfe2e02c87e3736e736
Enrichment time
2026-06-09T21:24:14Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · CISA Adds Three Known Exploited Vulnerabilities to Catalog · Baitaphish