logo

CISA Adds 7 Fresh Exploits to KEV Catalog

ID: 110dcf73-4d97-5a65-b3ca-181ef68d11a9

STIX ID: report--110dcf73-4d97-5a65-b3ca-181ef68d11a9

Feed Name: securityonline.info

Threat Score
85/100

Date Published: 2026-04-14

Date Updated: 2026-04-23

Author: Ddos

...
...

CISA has added seven actively exploited, high-risk CVEs to its KEV Catalog affecting Microsoft (legacy VBE DLL and multiple Windows/Exchange issues), Adobe Acrobat Reader (use-after-free and prototype pollution), and Fortinet FortiClientEMS (unauthenticated SQL injection). The flaws range from local privilege escalation in legacy Office components to remote code execution and unauthenticated server compromise, and the advisory urges immediate patching and version audits to mitigate ongoing attacks.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.