logo

U.S. CISA adds SimpleHelp, Samsung, and D-Link flaws to its Known Exploited Vulnerabilities catalog

ID: 1098125b-9c97-530d-ab8b-fa3fd31488f8

STIX ID: report--1098125b-9c97-530d-ab8b-fa3fd31488f8

Feed Name: Security Affairs

Threat Score
75/100

Date Published: 2026-04-25

Date Updated: 2026-04-25

Author: Pierluigi Paganini

...
...

CISA has added multiple high-severity vulnerabilities to its Known Exploited Vulnerabilities catalog — notably CVE-2024-7399 (Samsung MagicINFO RCE), CVE-2024-57726 and CVE-2024-57728 (SimpleHelp privilege-escalation/zip-slip), and CVE-2025-29635 (command injection) — with reports of active exploitation following public PoC releases and Mirai botnet activity; federal agencies are ordered to remediate by May 8, 2026.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.