cisa known exploited

BigTech Companies

Cisco patches DoS flaw exploited against its firewalls

CVE-2026-20349 is an actively exploited denial-of-service vulnerability in Cisco Secure Firewall ASA and FTD software, added to CISA's Known Exploited…

Read More »
Business

Attackers Exploit Critical Check Point Bug to Hijack Firewall Mgmt

Attackers are actively exploiting a critical authentication bypass vulnerability (CVE-2026-16232) in Check Point Security Management and Multi-Domain Security Management servers,…

Read More »
BigTech Companies

Check Point SmartConsole zero-day actively exploited in attacks

Check Point has released a patch for CVE-2026-16232, a critical authentication bypass zero-day vulnerability in its SmartConsole GUI that is…

Read More »
BigTech Companies

Hackers exploit SolarWinds Serv-U flaw to crash servers

CISA confirmed active exploitation of a high-severity SolarWinds Serv-U denial-of-service vulnerability (CVE-2026-28318), which allows remote attackers to crash servers via…

Read More »
BigTech Companies

CISA Warns of Actively Exploited Trend Micro Apex One Bug

A critical zero-day vulnerability (CVE-2026-34926) in Trend Micro's Apex One on-premise platform is being actively exploited, with at least one…

Read More »
BigTech Companies

Microsoft Confirms Active 0-Day – Apply Emergency Fix Now

Microsoft has confirmed the CVE-2026-42897 zero-day spoofing flaw in on-premises Exchange Server 2016, 2019, and Subscription Edition, which CISA has…

Read More »
BigTech Companies

ScreenConnect Servers Attacked, SharePoint Flaw Exploited

Two critical software vulnerabilities are being actively exploited: a Microsoft SharePoint flaw (CVE-2026-20963) and a severe session hijacking issue in…

Read More »
BigTech Companies

Apple Issues Critical Security Update for Older iPhones and iPads

Apple has released a critical security update for older iPhone and iPad models to patch actively exploited vulnerabilities, including those…

Read More »
Cybersecurity

Patched RoundCube Flaws Actively Exploited, CISA Warns

CISA has mandated federal agencies to patch two actively exploited vulnerabilities in Roundcube Webmail within three weeks, highlighting the persistent…

Read More »
Cybersecurity

Patched FortiGate Firewalls Still Vulnerable to Hacks

A critical Fortinet firewall vulnerability (CVE-2025-59718) persists despite patches, allowing unauthorized admin access via the FortiCloud SSO feature even on…

Read More »
BigTech Companies

Urgent Apple Update Fixes Critical Security Exploits

Apple has released urgent security patches for two actively exploited zero-day vulnerabilities (CVE-2025-14174 and CVE-2025-43529) in its WebKit browser engine,…

Read More »
Business

Over 800 N-able Servers Exposed to Critical Unpatched Flaws

Over 800 N-able N-central servers remain vulnerable to two actively exploited critical flaws, CVE-2025-8875 and CVE-2025-8876, allowing attackers to execute…

Read More »