CISA Adds 5 Actively Exploited Artifactory, ScreenConnect, and RouterOS Flaws to KEV
2026-09-12T19:23:59Z•3876e2962f5a906a9bc7283944b5fdce23f91d7e92a97f0b53a26fad10fcd388
CVE-2026-20079CVE-2026-42016CVE-2026-85706AI-assisted attacksAndroid malwareCISA KEVactive exploitationauthentication bypasscredential theftcritical vulnerabilitiescyber espionagedeveloper infrastructureenterprise securityinfostealersnetwork appliancespath traversalransomwareremote code executionsoftware supply chainstate-sponsored activityzero-day
What happened
The Hacker News feed highlights widespread active exploitation and high-impact vulnerabilities across enterprise software, network appliances, security products, and developer infrastructure. Key risks include CISA KEV-listed flaws, CVSS 10 vulnerabilities in GitLab and Cisco FMC, chained JFrog Artifactory exploitation, PaperCut compromises, ransomware deployment, credential theft, supply-chain attacks, AI-assisted exploitation, and malware campaigns targeting Android and Windows users.
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- the_hacker_news
- Record identifier
- 3876e2962f5a906a9bc7283944b5fdce23f91d7e92a97f0b53a26fad10fcd388
- Enrichment time
- 2026-09-12T19:23:59Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.