CISA Adds Two Known Exploited Vulnerabilities to Catalog

2026-09-01T19:24:01Z95c686f5cc00e5311ab03323ccada30515c57e7cd6b5e71012ae3ce8cd475f3f
CVE-2015-3246CVE-2015-5287CVE-2019-1068CVE-2021-23758CVE-2022-0995CVE-2023-49105CVE-2026-21962CVE-2026-53362CVE-2026-60004CVE-2026-66384CVE-2026-72529CVE-2026-72530CVE-2026-73570CVE-2026-81578CVE-2026-82078CVE-2026-8452CISACitrix NetScalerGiteaJFrog ArtifactoryKEVLinuxMicrosoft SQL ServerOracle WebLogicPaperCutRed HatTrueConfZimbraactive-exploitationknown-exploited-vulnerabilitiesownCloudpatch-prioritizationvulnerability-management

What happened

CISA's August 21–31, 2026 alerts announce 16 vulnerabilities added to the Known Exploited Vulnerabilities (KEV) Catalog based on evidence of active exploitation. Affected products include PaperCut, ownCloud, Linux, JFrog Artifactory, Red Hat components, Microsoft SQL Server, Ajax.NET Professional, Citrix NetScaler, Gitea, Oracle WebLogic/HTTP Server, Zimbra, and TrueConf Server. Organizations should prioritize rapid remediation, assess internet-facing assets, and investigate potential compromise before patching, following risk-based vulnerability management guidance and BOD 26-04 for FCEB2026?

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
cisa_ncas_current_activity
Record identifier
95c686f5cc00e5311ab03323ccada30515c57e7cd6b5e71012ae3ce8cd475f3f
Enrichment time
2026-09-01T19:24:01Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · CISA Adds Two Known Exploited Vulnerabilities to Catalog · Baitaphish