Cisco Warns of Ongoing Exploitation of Critical Email Gateway Zero-Day
2026-09-15T20:51:35Z•d5446fa3118f0506f712c4c0ed8deda00385f12afb1833c88cd4662dd7c51c1e
CVE-2026-42016CVE-2026-76461AI-enabled cyberattacksAPTCISA KEVCheck Point VPNChromeCisco Secure Email GatewayConnectWise ScreenConnectGitLabJFrog ArtifactoryLiteSpeed EnterpriseTelegram DesktopVPN breachWindowsactive exploitationdata exposureespionageprivilege escalationroot accessstored XSSzero-day
What happened
SecurityAffairs feed highlights multiple active or high-risk cybersecurity issues, including a critical Cisco Secure Email Gateway zero-day exploited in the wild for unauthenticated root access, critical LiteSpeed Enterprise privilege escalation affecting shared hosting, Chrome/Windows zero-day exploitation in China-linked espionage campaigns, a Telegram Desktop stored XSS issue, a government VPN breach exposing approximately 246,000 records, and vulnerabilities added to CISA’s Known Exploited Vulnerabilities catalog. The most urgent items involve active exploitation, remote unauthenticated or
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- securityaffairs
- Record identifier
- d5446fa3118f0506f712c4c0ed8deda00385f12afb1833c88cd4662dd7c51c1e
- Enrichment time
- 2026-09-15T20:51:35Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.