U.S. CISA adds SolarWinds Serv-U flaw to its Known Exploited Vulnerabilities catalog
2026-06-07T08:51:46Z•4a2205ba8dce96ff8f6d7e61440dbddba9ebea39a58342eea8ac3ca8ab76a706
ai-securityanthropiccisa-kevcisco-sd-wancisco-unified-cmcloud-email-relaycvefake-context-alignmentfast-fluxgamaredongeminimirasvitmythosno-fixpcpjackpublic-pocsilent-ransom-groupsolarwinds-serv-uvulnerabilitieswinrar-exploitzcash
What happened
Multiple high-impact security developments: CISA added two flaws to its Known Exploited Vulnerabilities catalog — SolarWinds Serv-U (CVE-2026-28318, CVSS 7.5) and Mirasvit Full Page Cache Warmer (CVE-2026-45247, CVSS 9.3). Cisco disclosed two serious issues: an unauthenticated SSRF in Unified CM with public PoC (CVE-2026-20230) and an authenticated file-upload command-injection leading to root on SD‑WAN Manager (CVE-2026-20245) with no patch or workaround yet. Threat activity reporting includes Silent Ransom Group moving to DNS fast‑flux, PCPJack’s 230-node cloud email relay, and Gamaredon’s U
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- securityaffairs
- Record identifier
- 4a2205ba8dce96ff8f6d7e61440dbddba9ebea39a58342eea8ac3ca8ab76a706
- Enrichment time
- 2026-06-07T08:51:46Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.