logo

CISA Urges Immediate Patching of Critical TrueConf Server Vulnerabilities

ID: cd5e8b38-e3b3-525b-a5cc-ea45253a56eb

STIX ID: report--cd5e8b38-e3b3-525b-a5cc-ea45253a56eb

Feed Name: ThreatCluster

Threat Score
82/100

Date Published: 2026-08-21

Date Updated: 2026-08-21

...
...

CISA has ordered federal agencies to urgently patch two critical TrueConf Server vulnerabilities (CVE-2026-72529, CVE-2026-72530) that allow unauthenticated remote code execution; the flaws have been actively exploited since July 2026 by the Head Mare hacktivist group targeting Russian organizations, were added to CISA's Known Exploited Vulnerabilities catalog on August 20, 2026, and must be remediated by September 3, 2026.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.