Find notable cyber news and cases, enriched with sources, timelines, and signals.

CISA adds four actively exploited flaws to KEV with FCEB deadlines

Public Sector Action
First reported
Last updated
Happening score
H score 35
2 unique sources, 2 articles

Summary

Hide ▲

CISA added four vulnerabilities to the Known Exploited Vulnerabilities (KEV) catalog after evidence of active exploitation, putting FCEB agencies on a forced remediation track. The update sets a February 15, 2026 deadline for CVE-2025-40536 and a March 5, 2026 deadline for the other three flaws. The move formalizes federal prioritization of bugs already being used in the wild.

Related Happenings

Windows User Profile Service arbitrary hive load elevation of privileges privilege-escalation flaw

Vulnerability
H score11 First: 15.07.2026 14:07 Last: 15.07.2026 14:07 Sources 1

About this happening: A new LegacyHive proof-of-concept exposes a Windows User Profile Service (ProfSvc) arbitrary hive-load elevation-of-privileges flaw on supported Windows desktop and...

Joomla extensions arbitrary file upload (multiple vulnerabilities, actively exploited)

Vulnerability
H score59 First: 13.07.2026 08:36 Last: 13.07.2026 08:36 Sources 1

About this happening: CISA added CVE-2026-48939 and CVE-2026-56291 to the KEV catalog, confirming zero-day exploitation of two Joomla extension flaws that allow arbitrary file u...

BeyondTrust Remote Support and Privileged Remote Access critical fixes

Security Patch Release
H score38 First: 07.07.2026 08:16 Last: 07.07.2026 08:16 Sources 1

About this happening: BeyondTrust released RS 25.3.3 and PRA 25.3.3 to fix four critical vulnerabilities in its remote-access appliances, including pre-authentication access-control b...

Ubiquiti UniFi OS actively exploited access control bypass, traversal, and RCE flaws (multiple vulnerabilities)

Vulnerability
H score43 First: 24.06.2026 17:35 Last: 24.06.2026 17:35 Sources 1

About this happening: Ubiquiti UniFi OS now has three actively exploited CVEs that can let attackers make unauthorized changes, expose sensitive files, and reach remote code execution on vu...

CI/CD pull-request privilege-escalation flaw (Cordyceps)

Vulnerability
H score32 First: 24.06.2026 15:48 Last: 24.06.2026 15:48 Sources 1

About this happening: Cordyceps exposed a CI/CD workflow privilege-escalation flaw in pull-request automation that let unauthenticated users hijack privileged workflows and reach open-s...

Timeline

  1. 13.02.2026 10:34 2 articles · 5mo ago

    CISA adds four flaws to KEV catalog

    Legal Policy Action Update

    CISA adds CVE-2026-20700, CVE-2025-15556, CVE-2025-40536, and CVE-2024-43468 to the Known Exploited Vulnerabilities catalog, directing Federal Civilian Executive Branch agencies to remediate CVE-2025-40536 by February 15, 2026 and the remaining three by March 5, 2026.

    Show sources