logo

February 2026 CVE Landscape: 13 Critical Vulnerabilities Mark 43% Drop from January

ID: d56b5c4e-c5c0-52cb-921b-e66551669d02

STIX ID: report--d56b5c4e-c5c0-52cb-921b-e66551669d02

Feed Name: Recorded Future Blog

Threat Score
90/100

Date Published: 2026-03-12

Date Updated: 2026-04-29

...
...

**February 2026 vulnerability and exploitation overview:** Recorded Future's Insikt Group documents 13 actively exploited, 'Very Critical' vulnerabilities (a 43% decrease from January) that include a Notepad++ supply-chain compromise delivering Cobalt Strike and the Chrysalis backdoor, MSHTML exploitation by APT28 via malicious .lnk files, and campaigns against Dell RecoverPoint and Cisco SD‑WAN by suspected state-aligned actors; the report provides affected versions, IoCs (IPs and hashes), detection rules, and prioritized remediation actions.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.