logo

CISA Adds Cisco, Chrome, and Arista Flaws to KEV Catalog Amid Active Exploitation

ID: c1a04e67-cacf-5580-9c8d-bb95c34ceeba

STIX ID: report--c1a04e67-cacf-5580-9c8d-bb95c34ceeba

Feed Name: The Hacker News

Threat Score
75/100

Date Published: 2026-06-10

Date Updated: 2026-06-11

Author: [email protected] (The Hacker News)

...
...

CISA added three vulnerabilities to its Known Exploited Vulnerabilities catalog — a high-severity Google Chrome V8 out-of-bounds issue (CVE-2026-11645), a Cisco Catalyst SD-WAN Manager command execution flaw (CVE-2026-20245), and an Arista EOS tunnel decapsulation vulnerability (CVE-2026-7473) reported as exploited in the wild; Arista will not issue a patch and recommends ACL mitigations while federal agencies were ordered to remediate or mitigate by June 23, 2026.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.