CISA Urges Immediate Patching of Critical TrueConf Server Vulnerabilities
ID: cd5e8b38-e3b3-525b-a5cc-ea45253a56eb
STIX ID: report--cd5e8b38-e3b3-525b-a5cc-ea45253a56eb
Feed Name: ThreatCluster
Threat Score
CISA has ordered federal agencies to urgently patch two critical TrueConf Server vulnerabilities (CVE-2026-72529, CVE-2026-72530) that allow unauthenticated remote code execution; the flaws have been actively exploited since July 2026 by the Head Mare hacktivist group targeting Russian organizations, were added to CISA's Known Exploited Vulnerabilities catalog on August 20, 2026, and must be remediated by September 3, 2026.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
