CISA Adds One Known Exploited Vulnerability to Catalog
2026-07-07T21:24:11Z•cd1a5a4d3e3a638ad5526e98ede425b9aca18e8776818673d5a98b5f498a49b5
Adobe ColdFusionBOD-26-04CISACisco Unified Communications ManagerFortiBleedFortinetJoomShaperJoomlackKEV CatalogKnown Exploited VulnerabilitiesLangflowLantronixMicrosoft SharePointPTC WindchillSimpleHelpUbiquiti UniFi OSactive exploitationcredential exposureremediationvulnerability management
What happened
Between June 23 and July 7, 2026, CISA added multiple vulnerabilities to its Known Exploited Vulnerabilities (KEV) Catalog based on evidence of active exploitation. Newly listed CVEs include issues affecting Adobe ColdFusion, Microsoft SharePoint, multiple page builders (JoomShaper, Joomlack), Langflow, SimpleHelp, PTC Windchill/FlexPLM, Cisco UC Manager (SSRF), Lantronix EDS5000, and Ubiquiti UniFi OS. CISA also alerted on widespread Fortinet credential exposure activity (FortiBleed) impacting internet-accessible Fortinet devices and urged immediate remediation actions per BOD-26-04 guidance.
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- cisa_ncas_current_activity
- Record identifier
- cd1a5a4d3e3a638ad5526e98ede425b9aca18e8776818673d5a98b5f498a49b5
- Enrichment time
- 2026-07-07T21:24:11Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.