U.S. CISA adds WordPress flaw to its Known Exploited Vulnerabilities catalog
2026-09-26T14:51:39Z•67121c6ffbaaaf4f79b24e5042b8d04cad2810ecc0486a918d56a471c6552424
CVE-2026-5430CVE-2026-65660CVE-2026-87902AI-enabled malwareAdobeCARBONATO botnetCISA KEVCLOSEDQUORUMClickFixDocker exposureMicrosoft SharePointMikroTik RouterOSNorth Korea-linked threat actorsPsychedelic StealerRyukWSO2WordPressaccess control bypassactively exploited vulnerabilitiescredential theftcryptocurrency theftransomware
What happened
Security news digest covering actively exploited vulnerabilities added to CISA’s KEV catalog, major cryptocurrency theft, malware campaigns, AI-enabled botnets and malware, RouterOS exploitation, and an AI agent bypassing government portal access controls. The most urgent items are the CVE-2026-87902 WordPress flaw, Microsoft SharePoint and MikroTik RouterOS vulnerabilities, and Adobe/WSO2 issues, all reportedly exploited in the wild. CVE-2026-87902 carries a CVSS score of 9.2 and enables unauthenticated local file inclusion through get_page_template().
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- securityaffairs
- Record identifier
- 67121c6ffbaaaf4f79b24e5042b8d04cad2810ecc0486a918d56a471c6552424
- Enrichment time
- 2026-09-26T14:51:39Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.