CISA Adds Six Exploited Flaws to KEV, Including NetScaler, Linux, and SQL Server Bugs

2026-08-27T07:23:59Zca7780861de39e87de92c73cc69a4dea22aeb27e93c960b9c8e7d3433911d78e
CVE-2019-1068CVE-2026-19912CVE-2026-19913CVE-2026-21962CVE-2026-60004CVE-2026-61979AI securityCISA KEVChina-linked threat actorsCitrix NetScalerGiteaIran-linked threat actorsKaltura mwEmbedMicrosoft 365 phishingOracle WebLogicRATactive exploitationadversary-in-the-middleauthentication bypassbackdoorcredential theftcritical vulnerabilitiesmalwarenpm packagesphishing-as-a-serviceremote code executionsession hijackingstate-sponsored activitysupply-chain abuse

What happened

The feed highlights an active and evolving cyber threat landscape, including multiple vulnerabilities under active exploitation, remote code execution and authentication bypass flaws, phishing-as-a-service campaigns targeting Microsoft 365 and Apple users, state-sponsored espionage, malware delivery infrastructure, and supply-chain abuse. The most urgent items are CISA KEV additions, including critical Oracle WebLogic and Gitea RCEs, as well as unpatched Kaltura flaws enabling unauthenticated file read and code execution.

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
the_hacker_news
Record identifier
ca7780861de39e87de92c73cc69a4dea22aeb27e93c960b9c8e7d3433911d78e
Enrichment time
2026-08-27T07:23:59Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.