BEGIN:VCALENDAR
VERSION:2.0
PRODID:-//UK Cyber Defence//KEV deadline calendar//EN
CALSCALE:GREGORIAN
METHOD:PUBLISH
X-WR-CALNAME:CISA KEV deadlines
X-WR-CALDESC:Remediation due dates from CISA's Known Exploited Vulnerabilit
 ies catalogue. From UK Cyber Defence.
X-PUBLISHED-TTL:PT6H
REFRESH-INTERVAL;VALUE=DURATION:PT6H
BEGIN:VEVENT
UID:kev-cve-2026-72529@cyber-defence.io
DTSTAMP:20260920T100344Z
DTSTART;VALUE=DATE:20260823
DTEND;VALUE=DATE:20260824
SUMMARY:KEV due: CVE-2026-72529 (trueconf/trueconf server)
DESCRIPTION:TrueConf Server Missing Authentication for Critical Function Vu
 lnerability\nAffects: trueconf/trueconf server\nCVSS 9.3 CRITICAL; EPSS 1.
 6%\nAdded to KEV 2026-08-20\nApply mitigations in accordance with vendor i
 nstructions\, ensuring compliance with CISA’s BOD 26-04 Prioritizing Sec
 urity Updates Based on Risk (see URL in Notes) guidance and CISA’s “Fo
 rensics Triage Requirements” (see URL in Notes). Follow applicable BOD 2
 6-04 guidance for cloud services or discontinue use of the product if miti
 gations are unavailable. Stakeholders are responsible for evaluating each 
 asset's internet exposure and ensuring adherence to BOD 26-04 patching gui
 delines.\nhttps://www.cyber-defence.io/tools/cve/CVE-2026-72529
URL:https://www.cyber-defence.io/tools/cve/CVE-2026-72529
CATEGORIES:CISA KEV
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:kev-cve-2026-73570@cyber-defence.io
DTSTAMP:20260920T100344Z
DTSTART;VALUE=DATE:20260824
DTEND;VALUE=DATE:20260825
SUMMARY:KEV due: CVE-2026-73570 (synacor/zimbra collaboration suite)
DESCRIPTION:Zimbra Collaboration Suite (ZCS) OS Command Injection Vulnerabi
 lity\nAffects: synacor/zimbra collaboration suite\nCVSS 8.9 HIGH; EPSS 32.
 4%\nAdded to KEV 2026-08-21\nApply mitigations in accordance with vendor i
 nstructions\, ensuring compliance with CISA’s BOD 26-04 Prioritizing Sec
 urity Updates Based on Risk (see URL in Notes) guidance and CISA’s “Fo
 rensics Triage Requirements” (see URL in Notes). Follow applicable BOD 2
 6-04 guidance for cloud services or discontinue use of the product if miti
 gations are unavailable. Stakeholders are responsible for evaluating each 
 asset's internet exposure and ensuring adherence to BOD 26-04 patching gui
 delines.\nhttps://www.cyber-defence.io/tools/cve/CVE-2026-73570
URL:https://www.cyber-defence.io/tools/cve/CVE-2026-73570
CATEGORIES:CISA KEV
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:kev-cve-2026-68820@cyber-defence.io
DTSTAMP:20260920T100344Z
DTSTART;VALUE=DATE:20260825
DTEND;VALUE=DATE:20260826
SUMMARY:KEV due: CVE-2026-68820 (microsoft/windows 10 1607)
DESCRIPTION:Microsoft Windows Ancillary Function Driver for WinSock Use-Aft
 er-Free Vulnerability\nAffects: microsoft/windows 10 1607\, microsoft/wind
 ows 10 1809\, microsoft/windows 10 21h2\, microsoft/windows 10 22h2\, micr
 osoft/windows 11 23h2\nCVSS 7.0 HIGH; EPSS 6.2%\nAdded to KEV 2026-08-11\n
 Apply mitigations in accordance with vendor instructions\, ensuring compli
 ance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (
 see URL in Notes) guidance and CISA’s “Forensics Triage Requirements
 ” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud ser
 vices or discontinue use of the product if mitigations are unavailable. St
 akeholders are responsible for evaluating each asset's internet exposure a
 nd ensuring adherence to BOD 26-04 patching guidelines.\nhttps://www.cyber
 -defence.io/tools/cve/CVE-2026-68820
URL:https://www.cyber-defence.io/tools/cve/CVE-2026-68820
CATEGORIES:CISA KEV
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:kev-cve-2026-21962@cyber-defence.io
DTSTAMP:20260920T100344Z
DTSTART;VALUE=DATE:20260827
DTEND;VALUE=DATE:20260828
SUMMARY:KEV due: CVE-2026-21962 (oracle/http server)
DESCRIPTION:Oracle HTTP Server and Oracle Weblogic Server Proxy Plug-in Imp
 roper Access Control Vulnerability\nAffects: oracle/http server\, oracle/w
 eblogic server proxy plug-in\nCVSS 10.0 CRITICAL; EPSS 42.5%\nAdded to KEV
  2026-08-24\nApply mitigations in accordance with vendor instructions\, en
 suring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Ba
 sed on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage R
 equirements” (see URL in Notes). Follow applicable BOD 26-04 guidance fo
 r cloud services or discontinue use of the product if mitigations are unav
 ailable. Stakeholders are responsible for evaluating each asset's internet
  exposure and ensuring adherence to BOD 26-04 patching guidelines.\nhttps:
 //www.cyber-defence.io/tools/cve/CVE-2026-21962
URL:https://www.cyber-defence.io/tools/cve/CVE-2026-21962
CATEGORIES:CISA KEV
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:kev-cve-2026-60004@cyber-defence.io
DTSTAMP:20260920T100344Z
DTSTART;VALUE=DATE:20260828
DTEND;VALUE=DATE:20260829
SUMMARY:KEV due: CVE-2026-60004 (gitea/gitea)
DESCRIPTION:Gitea Code Injection Vulnerability\nAffects: gitea/gitea\nCVSS 
 9.8 CRITICAL; EPSS 86.8%\nAdded to KEV 2026-08-25\nApply mitigations in ac
 cordance with vendor instructions\, ensuring compliance with CISA’s BOD 
 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guida
 nce and CISA’s “Forensics Triage Requirements” (see URL in Notes). F
 ollow applicable BOD 26-04 guidance for cloud services or discontinue use 
 of the product if mitigations are unavailable. Stakeholders are responsibl
 e for evaluating each asset's internet exposure and ensuring adherence to 
 BOD 26-04 patching guidelines.\nhttps://www.cyber-defence.io/tools/cve/CVE
 -2026-60004
URL:https://www.cyber-defence.io/tools/cve/CVE-2026-60004
CATEGORIES:CISA KEV
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:kev-cve-2019-1068@cyber-defence.io
DTSTAMP:20260920T100344Z
DTSTART;VALUE=DATE:20260829
DTEND;VALUE=DATE:20260830
SUMMARY:KEV due: CVE-2019-1068 (microsoft/sql server)
DESCRIPTION:Microsoft SQL Server Remote Code Execution Vulnerability\nAffec
 ts: microsoft/sql server\, microsoft/sql server 2016\, microsoft/sql serve
 r 2017\nCVSS 8.8 HIGH; EPSS 52.8%\nAdded to KEV 2026-08-26\nApply mitigati
 ons in accordance with vendor instructions\, ensuring compliance with CISA
 ’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Not
 es) guidance and CISA’s “Forensics Triage Requirements” (see URL in 
 Notes). Follow applicable BOD 26-04 guidance for cloud services or discont
 inue use of the product if mitigations are unavailable. Stakeholders are r
 esponsible for evaluating each asset's internet exposure and ensuring adhe
 rence to BOD 26-04 patching guidelines.\nhttps://www.cyber-defence.io/tool
 s/cve/CVE-2019-1068
URL:https://www.cyber-defence.io/tools/cve/CVE-2019-1068
CATEGORIES:CISA KEV
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:kev-cve-2026-8452@cyber-defence.io
DTSTAMP:20260920T100344Z
DTSTART;VALUE=DATE:20260829
DTEND;VALUE=DATE:20260830
SUMMARY:KEV due: CVE-2026-8452 (citrix/netscaler application delivery contr
 oller)
DESCRIPTION:Citrix NetScaler ADC and NetScaler Gateway Improper Restriction
  of Operations within the Bounds of a Memory Buffer Vulnerability\nAffects
 : citrix/netscaler application delivery controller\, citrix/netscaler gate
 way\nCVSS 8.8 HIGH; EPSS 1.6%\nAdded to KEV 2026-08-26\nApply mitigations 
 in accordance with vendor instructions\, ensuring compliance with CISA’s
  BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) 
 guidance and CISA’s “Forensics Triage Requirements” (see URL in Note
 s). Follow applicable BOD 26-04 guidance for cloud services or discontinue
  use of the product if mitigations are unavailable. Stakeholders are respo
 nsible for evaluating each asset's internet exposure and ensuring adherenc
 e to BOD 26-04 patching guidelines.\nhttps://www.cyber-defence.io/tools/cv
 e/CVE-2026-8452
URL:https://www.cyber-defence.io/tools/cve/CVE-2026-8452
CATEGORIES:CISA KEV
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:kev-cve-2023-49105@cyber-defence.io
DTSTAMP:20260920T100344Z
DTSTART;VALUE=DATE:20260830
DTEND;VALUE=DATE:20260831
SUMMARY:KEV due: CVE-2023-49105 (owncloud/owncloud server)
DESCRIPTION:ownCloud Improper Authentication Vulnerability\nAffects: ownclo
 ud/owncloud server\nCVSS 9.8 CRITICAL; EPSS 43.2%\nAdded to KEV 2026-08-27
 \nApply mitigations in accordance with vendor instructions\, ensuring comp
 liance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk
  (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements
 ” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud ser
 vices or discontinue use of the product if mitigations are unavailable. St
 akeholders are responsible for evaluating each asset's internet exposure a
 nd ensuring adherence to BOD 26-04 patching guidelines.\nhttps://www.cyber
 -defence.io/tools/cve/CVE-2023-49105
URL:https://www.cyber-defence.io/tools/cve/CVE-2023-49105
CATEGORIES:CISA KEV
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:kev-cve-2026-53362@cyber-defence.io
DTSTAMP:20260920T100344Z
DTSTART;VALUE=DATE:20260830
DTEND;VALUE=DATE:20260831
SUMMARY:KEV due: CVE-2026-53362 (linux/linux kernel)
DESCRIPTION:Linux Kernel Unspecified Vulnerability\nAffects: linux/linux ke
 rnel\nCVSS 7.8 HIGH; EPSS 0.5%\nAdded to KEV 2026-08-27\nApply mitigations
  in accordance with vendor instructions\, ensuring compliance with CISA’
 s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes)
  guidance and CISA’s “Forensics Triage Requirements” (see URL in Not
 es). Follow applicable BOD 26-04 guidance for cloud services or discontinu
 e use of the product if mitigations are unavailable. Stakeholders are resp
 onsible for evaluating each asset's internet exposure and ensuring adheren
 ce to BOD 26-04 patching guidelines.\nhttps://www.cyber-defence.io/tools/c
 ve/CVE-2026-53362
URL:https://www.cyber-defence.io/tools/cve/CVE-2026-53362
CATEGORIES:CISA KEV
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:kev-cve-2026-64849@cyber-defence.io
DTSTAMP:20260920T100344Z
DTSTART;VALUE=DATE:20260902
DTEND;VALUE=DATE:20260903
SUMMARY:KEV due: CVE-2026-64849 (lfprojects/mlflow)
DESCRIPTION:MLflow Server-Side Request Forgery Vulnerability\nAffects: lfpr
 ojects/mlflow\nCVSS 9.3 CRITICAL; EPSS 16.4%\nAdded to KEV 2026-08-19\nApp
 ly mitigations in accordance with vendor instructions\, ensuring complianc
 e with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see
  URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (
 see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services
  or discontinue use of the product if mitigations are unavailable. Stakeho
 lders are responsible for evaluating each asset's internet exposure and en
 suring adherence to BOD 26-04 patching guidelines.\nhttps://www.cyber-defe
 nce.io/tools/cve/CVE-2026-64849
URL:https://www.cyber-defence.io/tools/cve/CVE-2026-64849
CATEGORIES:CISA KEV
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:kev-cve-2026-72530@cyber-defence.io
DTSTAMP:20260920T100344Z
DTSTART;VALUE=DATE:20260903
DTEND;VALUE=DATE:20260904
SUMMARY:KEV due: CVE-2026-72530 (trueconf/trueconf server)
DESCRIPTION:TrueConf Server Code Injection Vulnerability\nAffects: trueconf
 /trueconf server\nCVSS 9.5 CRITICAL; EPSS 1.8%\nAdded to KEV 2026-08-20\nA
 pply mitigations in accordance with vendor instructions\, ensuring complia
 nce with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (s
 ee URL in Notes) guidance and CISA’s “Forensics Triage Requirements”
  (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud servic
 es or discontinue use of the product if mitigations are unavailable. Stake
 holders are responsible for evaluating each asset's internet exposure and 
 ensuring adherence to BOD 26-04 patching guidelines.\nhttps://www.cyber-de
 fence.io/tools/cve/CVE-2026-72530
URL:https://www.cyber-defence.io/tools/cve/CVE-2026-72530
CATEGORIES:CISA KEV
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:kev-cve-2026-49869@cyber-defence.io
DTSTAMP:20260920T100344Z
DTSTART;VALUE=DATE:20260905
DTEND;VALUE=DATE:20260906
SUMMARY:KEV due: CVE-2026-49869 (kestra/kestra)
DESCRIPTION:Kestra OSS OS Command Injection Vulnerability\nAffects: kestra/
 kestra\nCVSS 10.0 CRITICAL; EPSS 1.9%\nAdded to KEV 2026-09-02\nApply miti
 gations in accordance with vendor instructions\, ensuring compliance with 
 CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in
  Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL
  in Notes). Follow applicable BOD 26-04 guidance for cloud services or dis
 continue use of the product if mitigations are unavailable. Stakeholders a
 re responsible for evaluating each asset's internet exposure and ensuring 
 adherence to BOD 26-04 patching guidelines.\nhttps://www.cyber-defence.io/
 tools/cve/CVE-2026-49869
URL:https://www.cyber-defence.io/tools/cve/CVE-2026-49869
CATEGORIES:CISA KEV
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:kev-cve-2026-82329@cyber-defence.io
DTSTAMP:20260920T100344Z
DTSTART;VALUE=DATE:20260905
DTEND;VALUE=DATE:20260906
SUMMARY:KEV due: CVE-2026-82329 (jfrog/artifactory)
DESCRIPTION:JFrog Artifactory Improper Authentication Vulnerability\nAffect
 s: jfrog/artifactory\nCVSS 9.8 CRITICAL; EPSS 7.7%\nAdded to KEV 2026-09-0
 2\nApply mitigations in accordance with vendor instructions\, ensuring com
 pliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Ris
 k (see URL in Notes) guidance and CISA’s “Forensics Triage Requirement
 s” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud se
 rvices or discontinue use of the product if mitigations are unavailable. S
 takeholders are responsible for evaluating each asset's internet exposure 
 and ensuring adherence to BOD 26-04 patching guidelines.\nhttps://www.cybe
 r-defence.io/tools/cve/CVE-2026-82329
URL:https://www.cyber-defence.io/tools/cve/CVE-2026-82329
CATEGORIES:CISA KEV
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:kev-cve-2026-83548@cyber-defence.io
DTSTAMP:20260920T100344Z
DTSTART;VALUE=DATE:20260905
DTEND;VALUE=DATE:20260906
SUMMARY:KEV due: CVE-2026-83548 (sonicwall/sma8200v)
DESCRIPTION:SonicWall SMA1000 Appliances Server-Side Request Forgery Vulner
 ability\nAffects: sonicwall/sma8200v\, sonicwall/sma6210 firmware\, sonicw
 all/sma7210 firmware\nCVSS 10.0 CRITICAL; EPSS 4.7%\nAdded to KEV 2026-09-
 02\nApply mitigations in accordance with vendor instructions\, ensuring co
 mpliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Ri
 sk (see URL in Notes) guidance and CISA’s “Forensics Triage Requiremen
 ts” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud s
 ervices or discontinue use of the product if mitigations are unavailable. 
 Stakeholders are responsible for evaluating each asset's internet exposure
  and ensuring adherence to BOD 26-04 patching guidelines.\nhttps://www.cyb
 er-defence.io/tools/cve/CVE-2026-83548
URL:https://www.cyber-defence.io/tools/cve/CVE-2026-83548
CATEGORIES:CISA KEV
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:kev-cve-2026-83549@cyber-defence.io
DTSTAMP:20260920T100344Z
DTSTART;VALUE=DATE:20260905
DTEND;VALUE=DATE:20260906
SUMMARY:KEV due: CVE-2026-83549 (sonicwall/sma8200v)
DESCRIPTION:SonicWall SMA1000 Appliances OS Command Injection Vulnerability
 \nAffects: sonicwall/sma8200v\, sonicwall/sma6210 firmware\, sonicwall/sma
 7210 firmware\nCVSS 7.8 HIGH; EPSS 8.5%\nAdded to KEV 2026-09-02\nApply mi
 tigations in accordance with vendor instructions\, ensuring compliance wit
 h CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL 
 in Notes) guidance and CISA’s “Forensics Triage Requirements” (see U
 RL in Notes). Follow applicable BOD 26-04 guidance for cloud services or d
 iscontinue use of the product if mitigations are unavailable. Stakeholders
  are responsible for evaluating each asset's internet exposure and ensurin
 g adherence to BOD 26-04 patching guidelines.\nhttps://www.cyber-defence.i
 o/tools/cve/CVE-2026-83549
URL:https://www.cyber-defence.io/tools/cve/CVE-2026-83549
CATEGORIES:CISA KEV
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:kev-cve-2026-9586@cyber-defence.io
DTSTAMP:20260920T100344Z
DTSTART;VALUE=DATE:20260905
DTEND;VALUE=DATE:20260906
SUMMARY:KEV due: CVE-2026-9586 (sangoma/switchvox)
DESCRIPTION:Sangoma Switchvox SQL Injection Vulnerability\nAffects: sangoma
 /switchvox\nCVSS 9.3 CRITICAL; EPSS 11.8%\nAdded to KEV 2026-09-02\nApply 
 mitigations in accordance with vendor instructions\, ensuring compliance w
 ith CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see UR
 L in Notes) guidance and CISA’s “Forensics Triage Requirements” (see
  URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or
  discontinue use of the product if mitigations are unavailable. Stakeholde
 rs are responsible for evaluating each asset's internet exposure and ensur
 ing adherence to BOD 26-04 patching guidelines.\nhttps://www.cyber-defence
 .io/tools/cve/CVE-2026-9586
URL:https://www.cyber-defence.io/tools/cve/CVE-2026-9586
CATEGORIES:CISA KEV
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:kev-cve-2015-3246@cyber-defence.io
DTSTAMP:20260920T100344Z
DTSTART;VALUE=DATE:20260909
DTEND;VALUE=DATE:20260910
SUMMARY:KEV due: CVE-2015-3246 (redhat/enterprise linux)
DESCRIPTION:Red Hat Libuser Race Condition Vulnerability\nAffects: redhat/e
 nterprise linux\, opensuse/opensuse\, libuser project/libuser\nCVSS 5.1 ME
 DIUM; EPSS 8.8%\nAdded to KEV 2026-08-26\nApply mitigations in accordance 
 with vendor instructions\, ensuring compliance with CISA’s BOD 26-04 Pri
 oritizing Security Updates Based on Risk (see URL in Notes) guidance and C
 ISA’s “Forensics Triage Requirements” (see URL in Notes). Follow app
 licable BOD 26-04 guidance for cloud services or discontinue use of the pr
 oduct if mitigations are unavailable. Stakeholders are responsible for eva
 luating each asset's internet exposure and ensuring adherence to BOD 26-04
  patching guidelines.\nhttps://www.cyber-defence.io/tools/cve/CVE-2015-324
 6
URL:https://www.cyber-defence.io/tools/cve/CVE-2015-3246
CATEGORIES:CISA KEV
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:kev-cve-2015-5287@cyber-defence.io
DTSTAMP:20260920T100344Z
DTSTART;VALUE=DATE:20260909
DTEND;VALUE=DATE:20260910
SUMMARY:KEV due: CVE-2015-5287 (redhat/automatic bug reporting tool)
DESCRIPTION:Red Hat Automatic Bug Reporting Tool Privilege Escalation Vulne
 rability\nAffects: redhat/automatic bug reporting tool\, oracle/linux\, re
 dhat/enterprise linux\, redhat/enterprise linux desktop\, redhat/enterpris
 e linux hpc node\nCVSS 7.8 HIGH; EPSS 5.0%\nAdded to KEV 2026-08-26\nApply
  mitigations in accordance with vendor instructions\, ensuring compliance 
 with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see U
 RL in Notes) guidance and CISA’s “Forensics Triage Requirements” (se
 e URL in Notes). Follow applicable BOD 26-04 guidance for cloud services o
 r discontinue use of the product if mitigations are unavailable. Stakehold
 ers are responsible for evaluating each asset's internet exposure and ensu
 ring adherence to BOD 26-04 patching guidelines.\nhttps://www.cyber-defenc
 e.io/tools/cve/CVE-2015-5287
URL:https://www.cyber-defence.io/tools/cve/CVE-2015-5287
CATEGORIES:CISA KEV
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:kev-cve-2021-23758@cyber-defence.io
DTSTAMP:20260920T100344Z
DTSTART;VALUE=DATE:20260909
DTEND;VALUE=DATE:20260910
SUMMARY:KEV due: CVE-2021-23758 (ajaxpro.2 project/ajaxpro.2)
DESCRIPTION:Ajax.NET Professional Deserialization of Untrusted Data Vulnera
 bility\nAffects: ajaxpro.2 project/ajaxpro.2\, michaelschwarz/ajax.net pro
 fessional\nCVSS 9.8 CRITICAL; EPSS 83.6%\nAdded to KEV 2026-08-26\nApply m
 itigations in accordance with vendor instructions\, ensuring compliance wi
 th CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL
  in Notes) guidance and CISA’s “Forensics Triage Requirements” (see 
 URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or 
 discontinue use of the product if mitigations are unavailable. Stakeholder
 s are responsible for evaluating each asset's internet exposure and ensuri
 ng adherence to BOD 26-04 patching guidelines.\nhttps://www.cyber-defence.
 io/tools/cve/CVE-2021-23758
URL:https://www.cyber-defence.io/tools/cve/CVE-2021-23758
CATEGORIES:CISA KEV
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:kev-cve-2022-0995@cyber-defence.io
DTSTAMP:20260920T100344Z
DTSTART;VALUE=DATE:20260909
DTEND;VALUE=DATE:20260910
SUMMARY:KEV due: CVE-2022-0995 (linux/linux kernel)
DESCRIPTION:Linux Kernel Out-of-Bounds Write Vulnerability\nAffects: linux/
 linux kernel\, fedoraproject/fedora\, netapp/h300e firmware\, netapp/h300s
  firmware\, netapp/h410c firmware\nCVSS 7.8 HIGH; EPSS 9.4%\nAdded to KEV 
 2026-08-26\nApply mitigations in accordance with vendor instructions\, ens
 uring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Bas
 ed on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Re
 quirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for
  cloud services or discontinue use of the product if mitigations are unava
 ilable. Stakeholders are responsible for evaluating each asset's internet 
 exposure and ensuring adherence to BOD 26-04 patching guidelines.\nhttps:/
 /www.cyber-defence.io/tools/cve/CVE-2022-0995
URL:https://www.cyber-defence.io/tools/cve/CVE-2022-0995
CATEGORIES:CISA KEV
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:kev-cve-2026-66384@cyber-defence.io
DTSTAMP:20260920T100344Z
DTSTART;VALUE=DATE:20260910
DTEND;VALUE=DATE:20260911
SUMMARY:KEV due: CVE-2026-66384 (jfrog/artifactory)
DESCRIPTION:JFrog Artifactory Improper Limitation of a Pathname to a Restri
 cted Directory Vulnerability\nAffects: jfrog/artifactory\nCVSS 5.3 MEDIUM;
  EPSS 0.6%\nAdded to KEV 2026-08-27\nApply mitigations in accordance with 
 vendor instructions\, ensuring compliance with CISA’s BOD 26-04 Prioriti
 zing Security Updates Based on Risk (see URL in Notes) guidance and CISA
 ’s “Forensics Triage Requirements” (see URL in Notes). Follow applic
 able BOD 26-04 guidance for cloud services or discontinue use of the produ
 ct if mitigations are unavailable. Stakeholders are responsible for evalua
 ting each asset's internet exposure and ensuring adherence to BOD 26-04 pa
 tching guidelines.\nhttps://www.cyber-defence.io/tools/cve/CVE-2026-66384
URL:https://www.cyber-defence.io/tools/cve/CVE-2026-66384
CATEGORIES:CISA KEV
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:kev-cve-2026-75650@cyber-defence.io
DTSTAMP:20260920T100344Z
DTSTART;VALUE=DATE:20260911
DTEND;VALUE=DATE:20260912
SUMMARY:KEV due: CVE-2026-75650 (adobe/commerce)
DESCRIPTION:Adobe Commerce and Magento Improper Neutralization of Special E
 lements Used in a Template Engine Vulnerability\nAffects: adobe/commerce\,
  adobe/commerce b2b\, adobe/magento\nCVSS 10.0 CRITICAL; EPSS 2.1%\nAdded 
 to KEV 2026-09-08\nApply mitigations in accordance with vendor instruction
 s\, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Upda
 tes Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Tr
 iage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guida
 nce for cloud services or discontinue use of the product if mitigations ar
 e unavailable. Stakeholders are responsible for evaluating each asset's in
 ternet exposure and ensuring adherence to BOD 26-04 patching guidelines.\n
 https://www.cyber-defence.io/tools/cve/CVE-2026-75650
URL:https://www.cyber-defence.io/tools/cve/CVE-2026-75650
CATEGORIES:CISA KEV
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:kev-cve-2026-86218@cyber-defence.io
DTSTAMP:20260920T100344Z
DTSTART;VALUE=DATE:20260911
DTEND;VALUE=DATE:20260912
SUMMARY:KEV due: CVE-2026-86218 (n-able/n-central)
DESCRIPTION:N-able N-central Static Code Injection Vulnerability\nAffects: 
 n-able/n-central\nCVSS 10.0 CRITICAL; EPSS 7.5%\nAdded to KEV 2026-09-08\n
 Apply mitigations in accordance with vendor instructions\, ensuring compli
 ance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (
 see URL in Notes) guidance and CISA’s “Forensics Triage Requirements
 ” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud ser
 vices or discontinue use of the product if mitigations are unavailable. St
 akeholders are responsible for evaluating each asset's internet exposure a
 nd ensuring adherence to BOD 26-04 patching guidelines.\nhttps://www.cyber
 -defence.io/tools/cve/CVE-2026-86218
URL:https://www.cyber-defence.io/tools/cve/CVE-2026-86218
CATEGORIES:CISA KEV
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:kev-cve-2025-25249@cyber-defence.io
DTSTAMP:20260920T100344Z
DTSTART;VALUE=DATE:20260912
DTEND;VALUE=DATE:20260913
SUMMARY:KEV due: CVE-2025-25249 (fortinet/fortios)
DESCRIPTION:Fortinet Multiple Products Heap-based Buffer Overflow Vulnerabi
 lity\nAffects: fortinet/fortios\, fortinet/fortiswitchmanager\, fortinet/f
 ortisase\, siemens/ruggedcom ape1808 firmware\nCVSS 9.8 CRITICAL; EPSS 2.4
 %\nAdded to KEV 2026-09-09\nApply mitigations in accordance with vendor in
 structions\, ensuring compliance with CISA’s BOD 26-04 Prioritizing Secu
 rity Updates Based on Risk (see URL in Notes) guidance and CISA’s “For
 ensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26
 -04 guidance for cloud services or discontinue use of the product if mitig
 ations are unavailable. Stakeholders are responsible for evaluating each a
 sset's internet exposure and ensuring adherence to BOD 26-04 patching guid
 elines.\nhttps://www.cyber-defence.io/tools/cve/CVE-2025-25249
URL:https://www.cyber-defence.io/tools/cve/CVE-2025-25249
CATEGORIES:CISA KEV
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:kev-cve-2026-19490@cyber-defence.io
DTSTAMP:20260920T100344Z
DTSTART;VALUE=DATE:20260912
DTEND;VALUE=DATE:20260913
SUMMARY:KEV due: CVE-2026-19490 (citrix/netscaler application delivery cont
 roller)
DESCRIPTION:Citrix NetScaler Authentication Bypass Using an Alternate Path 
 or Channel Vulnerability\nAffects: citrix/netscaler application delivery c
 ontroller\, citrix/netscaler gateway\nCVSS 9.3 CRITICAL; EPSS 5.6%\nAdded 
 to KEV 2026-09-09\nApply mitigations in accordance with vendor instruction
 s\, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Upda
 tes Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Tr
 iage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guida
 nce for cloud services or discontinue use of the product if mitigations ar
 e unavailable. Stakeholders are responsible for evaluating each asset's in
 ternet exposure and ensuring adherence to BOD 26-04 patching guidelines.\n
 https://www.cyber-defence.io/tools/cve/CVE-2026-19490
URL:https://www.cyber-defence.io/tools/cve/CVE-2026-19490
CATEGORIES:CISA KEV
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:kev-cve-2026-20079@cyber-defence.io
DTSTAMP:20260920T100344Z
DTSTART;VALUE=DATE:20260912
DTEND;VALUE=DATE:20260913
SUMMARY:KEV due: CVE-2026-20079 (cisco/secure firewall management center)
DESCRIPTION:Cisco Firewall Management Center Authentication Bypass Using an
  Alternate Path or Channel Vulnerability\nAffects: cisco/secure firewall m
 anagement center\nCVSS 10.0 CRITICAL; EPSS 75.8%\nAdded to KEV 2026-09-09\
 nApply mitigations in accordance with vendor instructions\, ensuring compl
 iance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk 
 (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements
 ” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud ser
 vices or discontinue use of the product if mitigations are unavailable. St
 akeholders are responsible for evaluating each asset's internet exposure a
 nd ensuring adherence to BOD 26-04 patching guidelines.\nhttps://www.cyber
 -defence.io/tools/cve/CVE-2026-20079
URL:https://www.cyber-defence.io/tools/cve/CVE-2026-20079
CATEGORIES:CISA KEV
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:kev-cve-2026-67277@cyber-defence.io
DTSTAMP:20260920T100344Z
DTSTART;VALUE=DATE:20260913
DTEND;VALUE=DATE:20260914
SUMMARY:KEV due: CVE-2026-67277 (mikrotik/routeros)
DESCRIPTION:MikroTik RouterOS Missing Authentication for Critical Function 
 Vulnerability\nAffects: mikrotik/routeros\nCVSS 8.8 HIGH; EPSS 0.9%\nAdded
  to KEV 2026-09-10\nApply mitigations in accordance with vendor instructio
 ns\, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Upd
 ates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics T
 riage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guid
 ance for cloud services or discontinue use of the product if mitigations a
 re unavailable. Stakeholders are responsible for evaluating each asset's i
 nternet exposure and ensuring adherence to BOD 26-04 patching guidelines.\
 nhttps://www.cyber-defence.io/tools/cve/CVE-2026-67277
URL:https://www.cyber-defence.io/tools/cve/CVE-2026-67277
CATEGORIES:CISA KEV
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:kev-cve-2026-86060@cyber-defence.io
DTSTAMP:20260920T100344Z
DTSTART;VALUE=DATE:20260913
DTEND;VALUE=DATE:20260914
SUMMARY:KEV due: CVE-2026-86060 (mikrotik/routeros)
DESCRIPTION:MikroTik RouterOS Improper Neutralization of Argument Delimiter
 s in a Command Vulnerability\nAffects: mikrotik/routeros\nCVSS 9.2 CRITICA
 L; EPSS 1.1%\nAdded to KEV 2026-09-10\nApply mitigations in accordance wit
 h vendor instructions\, ensuring compliance with CISA’s BOD 26-04 Priori
 tizing Security Updates Based on Risk (see URL in Notes) guidance and CISA
 ’s “Forensics Triage Requirements” (see URL in Notes). Follow applic
 able BOD 26-04 guidance for cloud services or discontinue use of the produ
 ct if mitigations are unavailable. Stakeholders are responsible for evalua
 ting each asset's internet exposure and ensuring adherence to BOD 26-04 pa
 tching guidelines.\nhttps://www.cyber-defence.io/tools/cve/CVE-2026-86060
URL:https://www.cyber-defence.io/tools/cve/CVE-2026-86060
CATEGORIES:CISA KEV
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:kev-cve-2026-84869@cyber-defence.io
DTSTAMP:20260920T100344Z
DTSTART;VALUE=DATE:20260914
DTEND;VALUE=DATE:20260915
SUMMARY:KEV due: CVE-2026-84869 (connectwise/screenconnect)
DESCRIPTION:ConnectWise ScreenConnect Improper Privilege Management and Mis
 sing Authorization Vulnerability\nAffects: connectwise/screenconnect\nCVSS
  9.9 CRITICAL; EPSS 0.7%\nAdded to KEV 2026-09-11\nApply mitigations in ac
 cordance with vendor instructions\, ensuring compliance with CISA’s BOD 
 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guida
 nce and CISA’s “Forensics Triage Requirements” (see URL in Notes). F
 ollow applicable BOD 26-04 guidance for cloud services or discontinue use 
 of the product if mitigations are unavailable. Stakeholders are responsibl
 e for evaluating each asset's internet exposure and ensuring adherence to 
 BOD 26-04 patching guidelines.\nhttps://www.cyber-defence.io/tools/cve/CVE
 -2026-84869
URL:https://www.cyber-defence.io/tools/cve/CVE-2026-84869
CATEGORIES:CISA KEV
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:kev-cve-2026-85706@cyber-defence.io
DTSTAMP:20260920T100344Z
DTSTART;VALUE=DATE:20260914
DTEND;VALUE=DATE:20260915
SUMMARY:KEV due: CVE-2026-85706 (gitlab/gitlab)
DESCRIPTION:GitLab Community Edition and Enterprise Edition Path Traversal 
 Vulnerability\nAffects: gitlab/gitlab\nCVSS 10.0 CRITICAL; EPSS 14.6%\nAdd
 ed to KEV 2026-09-11\nApply mitigations in accordance with vendor instruct
 ions\, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security U
 pdates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics
  Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 gu
 idance for cloud services or discontinue use of the product if mitigations
  are unavailable. Stakeholders are responsible for evaluating each asset's
  internet exposure and ensuring adherence to BOD 26-04 patching guidelines
 .\nhttps://www.cyber-defence.io/tools/cve/CVE-2026-85706
URL:https://www.cyber-defence.io/tools/cve/CVE-2026-85706
CATEGORIES:CISA KEV
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:kev-cve-2026-81578@cyber-defence.io
DTSTAMP:20260920T100344Z
DTSTART;VALUE=DATE:20260914
DTEND;VALUE=DATE:20260915
SUMMARY:KEV due: CVE-2026-81578 (papercut/papercut mf)
DESCRIPTION:PaperCut NG/MF Missing Authentication for Critical Function Vul
 nerability\nAffects: papercut/papercut mf\, papercut/papercut ng\nCVSS 8.8
  HIGH; EPSS 3.3%\nAdded to KEV 2026-08-31\nApply mitigations in accordance
  with vendor instructions\, ensuring compliance with CISA’s BOD 26-04 Pr
 ioritizing Security Updates Based on Risk (see URL in Notes) guidance and 
 CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow ap
 plicable BOD 26-04 guidance for cloud services or discontinue use of the p
 roduct if mitigations are unavailable. Stakeholders are responsible for ev
 aluating each asset's internet exposure and ensuring adherence to BOD 26-0
 4 patching guidelines.\nhttps://www.cyber-defence.io/tools/cve/CVE-2026-81
 578
URL:https://www.cyber-defence.io/tools/cve/CVE-2026-81578
CATEGORIES:CISA KEV
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:kev-cve-2026-82078@cyber-defence.io
DTSTAMP:20260920T100344Z
DTSTART;VALUE=DATE:20260914
DTEND;VALUE=DATE:20260915
SUMMARY:KEV due: CVE-2026-82078 (papercut/papercut mf)
DESCRIPTION:PaperCut NG/MF Unsafe Reflection Vulnerability\nAffects: paperc
 ut/papercut mf\, papercut/papercut ng\nCVSS 9.4 CRITICAL; EPSS 3.6%\nAdded
  to KEV 2026-08-31\nApply mitigations in accordance with vendor instructio
 ns\, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Upd
 ates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics T
 riage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guid
 ance for cloud services or discontinue use of the product if mitigations a
 re unavailable. Stakeholders are responsible for evaluating each asset's i
 nternet exposure and ensuring adherence to BOD 26-04 patching guidelines.\
 nhttps://www.cyber-defence.io/tools/cve/CVE-2026-82078
URL:https://www.cyber-defence.io/tools/cve/CVE-2026-82078
CATEGORIES:CISA KEV
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:kev-cve-2026-48710@cyber-defence.io
DTSTAMP:20260920T100344Z
DTSTART;VALUE=DATE:20260916
DTEND;VALUE=DATE:20260917
SUMMARY:KEV due: CVE-2026-48710 (encode/starlette)
DESCRIPTION:Kludex Starlette HTTP Request/Response Smuggling Vulnerability\
 nAffects: encode/starlette\, redhat/ai inference server\, redhat/ansible a
 utomation platform\, redhat/migration toolkit for applications\, redhat/op
 enshift ai\nCVSS 6.5 MEDIUM; EPSS 36.3%\nAdded to KEV 2026-09-02\nApply mi
 tigations in accordance with vendor instructions\, ensuring compliance wit
 h CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL 
 in Notes) guidance and CISA’s “Forensics Triage Requirements” (see U
 RL in Notes). Follow applicable BOD 26-04 guidance for cloud services or d
 iscontinue use of the product if mitigations are unavailable. Stakeholders
  are responsible for evaluating each asset's internet exposure and ensurin
 g adherence to BOD 26-04 patching guidelines.\nhttps://www.cyber-defence.i
 o/tools/cve/CVE-2026-48710
URL:https://www.cyber-defence.io/tools/cve/CVE-2026-48710
CATEGORIES:CISA KEV
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:kev-cve-2026-59822@cyber-defence.io
DTSTAMP:20260920T100344Z
DTSTART;VALUE=DATE:20260916
DTEND;VALUE=DATE:20260917
SUMMARY:KEV due: CVE-2026-59822 (litellm/litellm)
DESCRIPTION:BerriAI LiteLLM Improper Authentication Vulnerability\nAffects:
  litellm/litellm\nCVSS 8.8 HIGH; EPSS 0.9%\nAdded to KEV 2026-09-02\nApply
  mitigations in accordance with vendor instructions\, ensuring compliance 
 with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see U
 RL in Notes) guidance and CISA’s “Forensics Triage Requirements” (se
 e URL in Notes). Follow applicable BOD 26-04 guidance for cloud services o
 r discontinue use of the product if mitigations are unavailable. Stakehold
 ers are responsible for evaluating each asset's internet exposure and ensu
 ring adherence to BOD 26-04 patching guidelines.\nhttps://www.cyber-defenc
 e.io/tools/cve/CVE-2026-59822
URL:https://www.cyber-defence.io/tools/cve/CVE-2026-59822
CATEGORIES:CISA KEV
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:kev-cve-2026-76461@cyber-defence.io
DTSTAMP:20260920T100344Z
DTSTART;VALUE=DATE:20260917
DTEND;VALUE=DATE:20260918
SUMMARY:KEV due: CVE-2026-76461 (cisco/asyncos)
DESCRIPTION:Cisco Secure Email Gateway SQL Injection Vulnerability\nAffects
 : cisco/asyncos\nCVSS 9.8 CRITICAL; EPSS 2.0%\nAdded to KEV 2026-09-14\nAp
 ply mitigations in accordance with vendor instructions\, ensuring complian
 ce with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (se
 e URL in Notes) guidance and CISA’s “Forensics Triage Requirements” 
 (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud service
 s or discontinue use of the product if mitigations are unavailable. Stakeh
 olders are responsible for evaluating each asset's internet exposure and e
 nsuring adherence to BOD 26-04 patching guidelines.\nhttps://www.cyber-def
 ence.io/tools/cve/CVE-2026-76461
URL:https://www.cyber-defence.io/tools/cve/CVE-2026-76461
CATEGORIES:CISA KEV
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:kev-cve-2026-85046@cyber-defence.io
DTSTAMP:20260920T100344Z
DTSTART;VALUE=DATE:20260918
DTEND;VALUE=DATE:20260919
SUMMARY:KEV due: CVE-2026-85046 (google/chrome)
DESCRIPTION:Google Chromium V8 Type Confusion Vulnerability\nAffects: googl
 e/chrome\, google/v8\nCVSS 8.8 HIGH; EPSS 1.5%\nAdded to KEV 2026-09-04\nA
 pply mitigations in accordance with vendor instructions\, ensuring complia
 nce with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (s
 ee URL in Notes) guidance and CISA’s “Forensics Triage Requirements”
  (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud servic
 es or discontinue use of the product if mitigations are unavailable. Stake
 holders are responsible for evaluating each asset's internet exposure and 
 ensuring adherence to BOD 26-04 patching guidelines.\nhttps://www.cyber-de
 fence.io/tools/cve/CVE-2026-85046
URL:https://www.cyber-defence.io/tools/cve/CVE-2026-85046
CATEGORIES:CISA KEV
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:kev-cve-2026-58704@cyber-defence.io
DTSTAMP:20260920T100344Z
DTSTART;VALUE=DATE:20260919
DTEND;VALUE=DATE:20260920
SUMMARY:KEV due: CVE-2026-58704 (google/android)
DESCRIPTION:Google Pixel Improper Authorization Vulnerability\nAffects: goo
 gle/android\nCVSS 8.8 HIGH; EPSS 0.2%\nAdded to KEV 2026-09-16\nApply miti
 gations in accordance with vendor instructions\, ensuring compliance with 
 CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in
  Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL
  in Notes). Follow applicable BOD 26-04 guidance for cloud services or dis
 continue use of the product if mitigations are unavailable. Stakeholders a
 re responsible for evaluating each asset's internet exposure and ensuring 
 adherence to BOD 26-04 patching guidelines.\nhttps://www.cyber-defence.io/
 tools/cve/CVE-2026-58704
URL:https://www.cyber-defence.io/tools/cve/CVE-2026-58704
CATEGORIES:CISA KEV
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:kev-cve-2026-76460@cyber-defence.io
DTSTAMP:20260920T100344Z
DTSTART;VALUE=DATE:20260919
DTEND;VALUE=DATE:20260920
SUMMARY:KEV due: CVE-2026-76460 (cisco/identity services engine)
DESCRIPTION:Cisco Identity Services Engine Incorrect Use of Privileged APIs
  Vulnerability\nAffects: cisco/identity services engine\, cisco/identity s
 ervices engine passive identity connector\nCVSS 10.0 CRITICAL; EPSS 0.8%\n
 Added to KEV 2026-09-16\nApply mitigations in accordance with vendor instr
 uctions\, ensuring compliance with CISA’s BOD 26-04 Prioritizing Securit
 y Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forens
 ics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04
  guidance for cloud services or discontinue use of the product if mitigati
 ons are unavailable. Stakeholders are responsible for evaluating each asse
 t's internet exposure and ensuring adherence to BOD 26-04 patching guideli
 nes.\nhttps://www.cyber-defence.io/tools/cve/CVE-2026-76460
URL:https://www.cyber-defence.io/tools/cve/CVE-2026-76460
CATEGORIES:CISA KEV
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:kev-cve-2026-87886@cyber-defence.io
DTSTAMP:20260920T100344Z
DTSTART;VALUE=DATE:20260919
DTEND;VALUE=DATE:20260920
SUMMARY:KEV due: CVE-2026-87886 (acronis/acronis backup)
DESCRIPTION:Acronis Backup Incorrect Default Permissions Vulnerability\nAff
 ects: acronis/acronis backup\nCVSS 7.8 HIGH; EPSS 0.3%\nAdded to KEV 2026-
 09-16\nApply mitigations in accordance with vendor instructions\, ensuring
  compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on
  Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Require
 ments” (see URL in Notes). Follow applicable BOD 26-04 guidance for clou
 d services or discontinue use of the product if mitigations are unavailabl
 e. Stakeholders are responsible for evaluating each asset's internet expos
 ure and ensuring adherence to BOD 26-04 patching guidelines.\nhttps://www.
 cyber-defence.io/tools/cve/CVE-2026-87886
URL:https://www.cyber-defence.io/tools/cve/CVE-2026-87886
CATEGORIES:CISA KEV
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:kev-cve-2025-39682@cyber-defence.io
DTSTAMP:20260920T100344Z
DTSTART;VALUE=DATE:20260921
DTEND;VALUE=DATE:20260922
SUMMARY:KEV due: CVE-2025-39682 (linux/linux kernel)
DESCRIPTION:Linux Kernel Improper Check for Unusual or Exceptional Conditio
 ns Vulnerability\nAffects: linux/linux kernel\, debian/debian linux\nCVSS 
 7.1 HIGH; EPSS 1.2%\nAdded to KEV 2026-09-18\nApply mitigations in accorda
 nce with vendor instructions\, ensuring compliance with CISA’s BOD 26-04
  Prioritizing Security Updates Based on Risk (see URL in Notes) guidance a
 nd CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow
  applicable BOD 26-04 guidance for cloud services or discontinue use of th
 e product if mitigations are unavailable. Stakeholders are responsible for
  evaluating each asset's internet exposure and ensuring adherence to BOD 2
 6-04 patching guidelines.\nhttps://www.cyber-defence.io/tools/cve/CVE-2025
 -39682
URL:https://www.cyber-defence.io/tools/cve/CVE-2025-39682
CATEGORIES:CISA KEV
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:kev-cve-2025-39964@cyber-defence.io
DTSTAMP:20260920T100344Z
DTSTART;VALUE=DATE:20260921
DTEND;VALUE=DATE:20260922
SUMMARY:KEV due: CVE-2025-39964 (linux/linux kernel)
DESCRIPTION:Linux Kernel Race Condition Vulnerability\nAffects: linux/linux
  kernel\, siemens/simatic s7-1500 cpu 1518-4 pn\\/dp mfp firmware\, siemen
 s/simatic s7-1500 cpu 1518f-4 pn\\/dp mfp firmware\nCVSS 5.5 MEDIUM; EPSS 
 0.8%\nAdded to KEV 2026-09-18\nApply mitigations in accordance with vendor
  instructions\, ensuring compliance with CISA’s BOD 26-04 Prioritizing S
 ecurity Updates Based on Risk (see URL in Notes) guidance and CISA’s “
 Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD
  26-04 guidance for cloud services or discontinue use of the product if mi
 tigations are unavailable. Stakeholders are responsible for evaluating eac
 h asset's internet exposure and ensuring adherence to BOD 26-04 patching g
 uidelines.\nhttps://www.cyber-defence.io/tools/cve/CVE-2025-39964
URL:https://www.cyber-defence.io/tools/cve/CVE-2025-39964
CATEGORIES:CISA KEV
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:kev-cve-2026-53266@cyber-defence.io
DTSTAMP:20260920T100344Z
DTSTART;VALUE=DATE:20260921
DTEND;VALUE=DATE:20260922
SUMMARY:KEV due: CVE-2026-53266 (linux/linux kernel)
DESCRIPTION:Linux Kernel Out-of-Bounds Write Vulnerability\nAffects: linux/
 linux kernel\nCVSS 8.8 HIGH; EPSS 0.3%\nAdded to KEV 2026-09-18\nApply mit
 igations in accordance with vendor instructions\, ensuring compliance with
  CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL i
 n Notes) guidance and CISA’s “Forensics Triage Requirements” (see UR
 L in Notes). Follow applicable BOD 26-04 guidance for cloud services or di
 scontinue use of the product if mitigations are unavailable. Stakeholders 
 are responsible for evaluating each asset's internet exposure and ensuring
  adherence to BOD 26-04 patching guidelines.\nhttps://www.cyber-defence.io
 /tools/cve/CVE-2026-53266
URL:https://www.cyber-defence.io/tools/cve/CVE-2026-53266
CATEGORIES:CISA KEV
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:kev-cve-2026-81963@cyber-defence.io
DTSTAMP:20260920T100344Z
DTSTART;VALUE=DATE:20260922
DTEND;VALUE=DATE:20260923
SUMMARY:KEV due: CVE-2026-81963 (microsoft/windows 11 23h2)
DESCRIPTION:Microsoft Windows Link Following Vulnerability\nAffects: micros
 oft/windows 11 23h2\, microsoft/windows 11 24h2\, microsoft/windows 11 25h
 2\, microsoft/windows 11 26h1\, microsoft/windows server 2025\nCVSS 7.8 HI
 GH; EPSS 0.6%\nAdded to KEV 2026-09-08\nApply mitigations in accordance wi
 th vendor instructions\, ensuring compliance with CISA’s BOD 26-04 Prior
 itizing Security Updates Based on Risk (see URL in Notes) guidance and CIS
 A’s “Forensics Triage Requirements” (see URL in Notes). Follow appli
 cable BOD 26-04 guidance for cloud services or discontinue use of the prod
 uct if mitigations are unavailable. Stakeholders are responsible for evalu
 ating each asset's internet exposure and ensuring adherence to BOD 26-04 p
 atching guidelines.\nhttps://www.cyber-defence.io/tools/cve/CVE-2026-81963
URL:https://www.cyber-defence.io/tools/cve/CVE-2026-81963
CATEGORIES:CISA KEV
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:kev-cve-2026-85880@cyber-defence.io
DTSTAMP:20260920T100344Z
DTSTART;VALUE=DATE:20260922
DTEND;VALUE=DATE:20260923
SUMMARY:KEV due: CVE-2026-85880 (microsoft/windows 10 1607)
DESCRIPTION:Microsoft Windows Heap-Based Buffer Overflow Vulnerability\nAff
 ects: microsoft/windows 10 1607\, microsoft/windows 10 1809\, microsoft/wi
 ndows 10 21h2\, microsoft/windows 10 22h2\, microsoft/windows server 2012\
 nCVSS 7.8 HIGH; EPSS 0.6%\nAdded to KEV 2026-09-08\nApply mitigations in a
 ccordance with vendor instructions\, ensuring compliance with CISA’s BOD
  26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guid
 ance and CISA’s “Forensics Triage Requirements” (see URL in Notes). 
 Follow applicable BOD 26-04 guidance for cloud services or discontinue use
  of the product if mitigations are unavailable. Stakeholders are responsib
 le for evaluating each asset's internet exposure and ensuring adherence to
  BOD 26-04 patching guidelines.\nhttps://www.cyber-defence.io/tools/cve/CV
 E-2026-85880
URL:https://www.cyber-defence.io/tools/cve/CVE-2026-85880
CATEGORIES:CISA KEV
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:kev-cve-2026-87491@cyber-defence.io
DTSTAMP:20260920T100344Z
DTSTART;VALUE=DATE:20260923
DTEND;VALUE=DATE:20260924
SUMMARY:KEV due: CVE-2026-87491 (google/chrome)
DESCRIPTION:Google Chromium V8 Out of Bounds Write Vulnerability\nAffects: 
 google/chrome\nCVSS 8.8 HIGH; EPSS 1.0%\nAdded to KEV 2026-09-09\nApply mi
 tigations in accordance with vendor instructions\, ensuring compliance wit
 h CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL 
 in Notes) guidance and CISA’s “Forensics Triage Requirements” (see U
 RL in Notes). Follow applicable BOD 26-04 guidance for cloud services or d
 iscontinue use of the product if mitigations are unavailable. Stakeholders
  are responsible for evaluating each asset's internet exposure and ensurin
 g adherence to BOD 26-04 patching guidelines.\nhttps://www.cyber-defence.i
 o/tools/cve/CVE-2026-87491
URL:https://www.cyber-defence.io/tools/cve/CVE-2026-87491
CATEGORIES:CISA KEV
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:kev-cve-2026-42016@cyber-defence.io
DTSTAMP:20260920T100344Z
DTSTART;VALUE=DATE:20260925
DTEND;VALUE=DATE:20260926
SUMMARY:KEV due: CVE-2026-42016 (jfrog/artifactory)
DESCRIPTION:JFrog Artifactory Incorrect Authorization Vulnerability\nAffect
 s: jfrog/artifactory\nCVSS 8.8 HIGH; EPSS 9.1%\nAdded to KEV 2026-09-11\nA
 pply mitigations in accordance with vendor instructions\, ensuring complia
 nce with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (s
 ee URL in Notes) guidance and CISA’s “Forensics Triage Requirements”
  (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud servic
 es or discontinue use of the product if mitigations are unavailable. Stake
 holders are responsible for evaluating each asset's internet exposure and 
 ensuring adherence to BOD 26-04 patching guidelines.\nhttps://www.cyber-de
 fence.io/tools/cve/CVE-2026-42016
URL:https://www.cyber-defence.io/tools/cve/CVE-2026-42016
CATEGORIES:CISA KEV
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:kev-cve-2026-42018@cyber-defence.io
DTSTAMP:20260920T100344Z
DTSTART;VALUE=DATE:20260925
DTEND;VALUE=DATE:20260926
SUMMARY:KEV due: CVE-2026-42018 (jfrog/artifactory)
DESCRIPTION:JFrog Artifactory Improper Authentication Vulnerability\nAffect
 s: jfrog/artifactory\nCVSS 7.5 HIGH; EPSS 11.0%\nAdded to KEV 2026-09-11\n
 Apply mitigations in accordance with vendor instructions\, ensuring compli
 ance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (
 see URL in Notes) guidance and CISA’s “Forensics Triage Requirements
 ” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud ser
 vices or discontinue use of the product if mitigations are unavailable. St
 akeholders are responsible for evaluating each asset's internet exposure a
 nd ensuring adherence to BOD 26-04 patching guidelines.\nhttps://www.cyber
 -defence.io/tools/cve/CVE-2026-42018
URL:https://www.cyber-defence.io/tools/cve/CVE-2026-42018
CATEGORIES:CISA KEV
TRANSP:TRANSPARENT
END:VEVENT
END:VCALENDAR
