U.S. CISA adds Cisco, Google Chromium V8, Fortinet, and Citrix NetScaler flaws to its Known Exploited Vulnerabilities catalog

2026-09-11T02:51:37Z1a6e476c5c1263af3635e83196d6628da4c3453e19bd49deab605ffe065f2c83
CVE-2026-20079CVE-2026-75650CVE-2026-87491AI securityAdobe CommerceCISA KEVChromeChromium V8CiscoCitrix NetScalerF5 BIG-IP APMFortinetLinux rootkitMagentoMicrosoft DefenderMicrosoft WindowsN-able N-centralactively exploited vulnerabilitiesexploit kitfileless malwarenation-state actorspatch managementweb shellzero-day

What happened

SecurityAffairs RSS aggregation highlighting active exploitation and major vulnerability disclosures, including CISA KEV additions affecting Cisco, Chromium V8, Fortinet, Citrix NetScaler, Microsoft, N-able, and Adobe; an actively exploited Chrome V8 zero-day; exploitation of F5 BIG-IP APM leading to a fileless rootkit and PHP web shells; a Microsoft Defender zero-day proof of concept; and Microsoft’s September 2026 Patch Tuesday with hundreds of fixes and wormable vulnerabilities. The feed also covers nation-state Chrome exploit-kit reuse and AI security risks.

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
securityaffairs
Record identifier
1a6e476c5c1263af3635e83196d6628da4c3453e19bd49deab605ffe065f2c83
Enrichment time
2026-09-11T02:51:37Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.