U.S. CISA adds SolarWinds Serv-U flaw to its Known Exploited Vulnerabilities catalog

2026-06-07T08:51:46Z4a2205ba8dce96ff8f6d7e61440dbddba9ebea39a58342eea8ac3ca8ab76a706
ai-securityanthropiccisa-kevcisco-sd-wancisco-unified-cmcloud-email-relaycvefake-context-alignmentfast-fluxgamaredongeminimirasvitmythosno-fixpcpjackpublic-pocsilent-ransom-groupsolarwinds-serv-uvulnerabilitieswinrar-exploitzcash

What happened

Multiple high-impact security developments: CISA added two flaws to its Known Exploited Vulnerabilities catalog — SolarWinds Serv-U (CVE-2026-28318, CVSS 7.5) and Mirasvit Full Page Cache Warmer (CVE-2026-45247, CVSS 9.3). Cisco disclosed two serious issues: an unauthenticated SSRF in Unified CM with public PoC (CVE-2026-20230) and an authenticated file-upload command-injection leading to root on SD‑WAN Manager (CVE-2026-20245) with no patch or workaround yet. Threat activity reporting includes Silent Ransom Group moving to DNS fast‑flux, PCPJack’s 230-node cloud email relay, and Gamaredon’s U

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
securityaffairs
Record identifier
4a2205ba8dce96ff8f6d7e61440dbddba9ebea39a58342eea8ac3ca8ab76a706
Enrichment time
2026-06-07T08:51:46Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · U.S. CISA adds SolarWinds Serv-U flaw to its Known Exploited Vulnerabilities catalog · Baitaphish