CISA Adds Two Known Exploited Vulnerabilities to Catalog
2026-09-01T19:24:01Z•95c686f5cc00e5311ab03323ccada30515c57e7cd6b5e71012ae3ce8cd475f3f
CVE-2015-3246CVE-2015-5287CVE-2019-1068CVE-2021-23758CVE-2022-0995CVE-2023-49105CVE-2026-21962CVE-2026-53362CVE-2026-60004CVE-2026-66384CVE-2026-72529CVE-2026-72530CVE-2026-73570CVE-2026-81578CVE-2026-82078CVE-2026-8452CISACitrix NetScalerGiteaJFrog ArtifactoryKEVLinuxMicrosoft SQL ServerOracle WebLogicPaperCutRed HatTrueConfZimbraactive-exploitationknown-exploited-vulnerabilitiesownCloudpatch-prioritizationvulnerability-management
What happened
CISA's August 21–31, 2026 alerts announce 16 vulnerabilities added to the Known Exploited Vulnerabilities (KEV) Catalog based on evidence of active exploitation. Affected products include PaperCut, ownCloud, Linux, JFrog Artifactory, Red Hat components, Microsoft SQL Server, Ajax.NET Professional, Citrix NetScaler, Gitea, Oracle WebLogic/HTTP Server, Zimbra, and TrueConf Server. Organizations should prioritize rapid remediation, assess internet-facing assets, and investigate potential compromise before patching, following risk-based vulnerability management guidance and BOD 26-04 for FCEB2026?
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- cisa_ncas_current_activity
- Record identifier
- 95c686f5cc00e5311ab03323ccada30515c57e7cd6b5e71012ae3ce8cd475f3f
- Enrichment time
- 2026-09-01T19:24:01Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.