CISA Adds 5 Actively Exploited Artifactory, ScreenConnect, and RouterOS Flaws to KEV

2026-09-12T19:23:59Z•3876e2962f5a906a9bc7283944b5fdce23f91d7e92a97f0b53a26fad10fcd388
CVE-2026-20079CVE-2026-42016CVE-2026-85706AI-assisted attacksAndroid malwareCISA KEVactive exploitationauthentication bypasscredential theftcritical vulnerabilitiescyber espionagedeveloper infrastructureenterprise securityinfostealersnetwork appliancespath traversalransomwareremote code executionsoftware supply chainstate-sponsored activityzero-day

What happened

The Hacker News feed highlights widespread active exploitation and high-impact vulnerabilities across enterprise software, network appliances, security products, and developer infrastructure. Key risks include CISA KEV-listed flaws, CVSS 10 vulnerabilities in GitLab and Cisco FMC, chained JFrog Artifactory exploitation, PaperCut compromises, ransomware deployment, credential theft, supply-chain attacks, AI-assisted exploitation, and malware campaigns targeting Android and Windows users.

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
the_hacker_news
Record identifier
3876e2962f5a906a9bc7283944b5fdce23f91d7e92a97f0b53a26fad10fcd388
Enrichment time
2026-09-12T19:23:59Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.