U.S. CISA adds Linux Kernel flaws to its Known Exploited Vulnerabilities catalog

2026-09-20T20:51:37Z•1486a15b202413b6e67ac9bbc0080574a6608dd2853d3dfffa72ab8d72449649
CVE-2026-91843AI securityAndroid malwareCISA KEVCheck PointDiscourseLinux kernelRATSSOaccount takeovercredential theftdata breachknown exploited vulnerabilitiesremote code executionroot privilegessupply-chain attackunauthenticated exploitationweb malware

What happened

Security Affairs reports active exploitation and major security incidents, including CISA additions of Linux kernel flaws to the KEV catalog, a critical unauthenticated root-code-execution vulnerability in Check Point Security Management and Log Servers (CVE-2026-91843), supply-chain malware affecting potentially more than 100,000 websites, and a Gyazo breach exposing approximately 23 million records. Additional coverage describes Android banking malware, AI security-test escapes, account takeover through a Discourse flaw, and risks from AI-generated intelligence errors.

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
securityaffairs
Record identifier
1486a15b202413b6e67ac9bbc0080574a6608dd2853d3dfffa72ab8d72449649
Enrichment time
2026-09-20T20:51:37Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.