Close Menu
    Facebook X (Twitter) Instagram
    Wifi PortalWifi Portal
    • Blogging
    • SEO & Digital Marketing
    • WiFi / Internet & Networking
    • Cybersecurity
    • Tech Tools & Mobile / Apps
    • Privacy & Online Earning
    Facebook X (Twitter) Instagram
    Wifi PortalWifi Portal
    Home»Cybersecurity»CISA Adds 8 Exploited Flaws to KEV, Sets April-May 2026 Federal Deadlines
    Cybersecurity

    CISA Adds 8 Exploited Flaws to KEV, Sets April-May 2026 Federal Deadlines

    adminBy adminApril 21, 2026No Comments3 Mins Read
    Facebook Twitter LinkedIn Telegram Pinterest Tumblr Reddit WhatsApp Email
    CISA Adds 8 Exploited Flaws to KEV, Sets April-May 2026 Federal Deadlines
    Share
    Facebook Twitter LinkedIn Pinterest Email

    Ravie LakshmananApr 21, 2026Network Security / Threat Intelligence

    The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Monday added eight new vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog, including three flaws impacting Cisco Catalyst SD-WAN Manager, citing evidence of active exploitation.

    The list of vulnerabilities is as follows –

    • CVE-2023-27351 (CVSS score: 8.2) – An improper authentication vulnerability in PaperCut NG/MF that could allow an attacker to bypass authentication on affected installations via the SecurityRequestFilter class.
    • CVE-2024-27199 (CVSS score: 7.3) – A relative path traversal vulnerability in JetBrains TeamCity that could allow an attacker to perform limited admin actions.
    • CVE-2025-2749 (CVSS score: 7.2) – A path traversal vulnerability in Kentico Xperience that could allow an authenticated user’s Staging Sync Server to upload arbitrary data to path relative locations.
    • CVE-2025-32975 (CVSS score: 10.0) – An improper authentication vulnerability in Quest KACE Systems Management Appliance (SMA) that could allow an attacker to impersonate legitimate users without valid credentials. 
    • CVE-2025-48700 (CVSS score: 6.1) – A cross-site scripting vulnerability in Synacor Zimbra Collaboration Suite (ZCS) that could allow an attacker to execute arbitrary JavaScript within the user’s session, resulting in unauthorized access to sensitive information.
    • CVE-2026-20122 (CVSS score: 5.4) – An incorrect use of privileged APIs vulnerability in Cisco Catalyst SD-WAN Manager that could allow an attacker to upload and overwrite arbitrary files on the affected system and gain vmanage user privileges.
    • CVE-2026-20128 (CVSS score: 7.5) – A storing passwords in a recoverable format vulnerability in Cisco Catalyst SD-WAN Manager that could allow an authenticated, local attacker to gain DCA user privileges by accessing a credential file for the DCA user on the filesystem as a low-privileged user.
    • CVE-2026-20133 (CVSS score: 6.5) – An exposure of sensitive information to an unauthorized actor vulnerability in Cisco Catalyst SD-WAN Manager that could allow remote attackers to view sensitive information on affected systems.

    It’s worth noting that CISA added CVE-2024-27198, another flaw impacting on-premise versions of JetBrains TeamCity, to the KEV catalog in March 2024. It’s not known at this stage if both vulnerabilities are being exploited together and if the activity is the work of the same threat actor.

    The exploitation of CVE-2023-27351, on the other hand, was attributed to Lace Tempest in April 2023 in connection with attacks delivering Cl0p and LockBit ransomware families.

    As for CVE-2025-32975, Arctic Wolf said it observed unknown threat actors weaponizing the bug to target unpatched SMA systems as late last month, although the exact end goals of the campaign remain unknown.

    Cisco, for its part, also said it became aware of the exploitation of CVE-2026-20122 and CVE-2026-20128 in March 2026. The company has yet to revise its advisory to reflect the in-the-wild abuse of CVE-2026-20133.

    In light of active exploitation, Federal Civilian Executive Branch (FCEB) agencies have been recommended to address the three Cisco vulnerabilities by April 23, 2026, and the rest by May 4, 2026.

    adds AprilMay CISA Deadlines Exploited federal Flaws KEV sets
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Telegram Email
    Previous ArticleAuthority, Freshness & First-Party Signals
    Next Article Why you should buy a 2025 Razr now
    admin
    • Website

    Related Posts

    CISA flags new SD-WAN flaw as actively exploited in attacks

    April 21, 2026

    Organizations Warned of Exploited Cisco, Kentico, Zimbra Vulnerabilities

    April 21, 2026

    Researchers build an encrypted routing layer for private AI inference

    April 21, 2026
    Add A Comment
    Leave A Reply Cancel Reply

    Search Blog
    About
    About

    At WifiPortal.tech, we share simple, easy-to-follow guides on cybersecurity, online privacy, and digital opportunities. Our goal is to help everyday users browse safely, protect personal data, and explore smart ways to earn online. Whether you’re new to the digital world or looking to strengthen your online knowledge, our content is here to keep you informed and secure.

    Trending Blogs

    CISA flags new SD-WAN flaw as actively exploited in attacks

    April 21, 2026

    Amazon’s $5B Anthropic bet is really about compute, not just cash

    April 21, 2026

    Organizations Warned of Exploited Cisco, Kentico, Zimbra Vulnerabilities

    April 21, 2026

    Yelp launches AI-powered Assistant to streamline local search and bookings

    April 21, 2026
    Categories
    • Blogging (66)
    • Cybersecurity (1,426)
    • Privacy & Online Earning (175)
    • SEO & Digital Marketing (865)
    • Tech Tools & Mobile / Apps (1,712)
    • WiFi / Internet & Networking (235)

    Subscribe to Updates

    Stay updated with the latest tips on cybersecurity, online privacy, and digital opportunities straight to your inbox.

    WifiPortal.tech is a blogging platform focused on cybersecurity, online privacy, and digital opportunities. We share easy-to-follow guides, tips, and resources to help you stay safe online and explore new ways of working in the digital world.

    Our Picks

    CISA flags new SD-WAN flaw as actively exploited in attacks

    April 21, 2026

    Amazon’s $5B Anthropic bet is really about compute, not just cash

    April 21, 2026

    Organizations Warned of Exploited Cisco, Kentico, Zimbra Vulnerabilities

    April 21, 2026
    Most Popular
    • CISA flags new SD-WAN flaw as actively exploited in attacks
    • Amazon’s $5B Anthropic bet is really about compute, not just cash
    • Organizations Warned of Exploited Cisco, Kentico, Zimbra Vulnerabilities
    • Yelp launches AI-powered Assistant to streamline local search and bookings
    • NotebookLM just launched a major update that is everything I wanted from the app
    • Why you should buy a 2025 Razr now
    • CISA Adds 8 Exploited Flaws to KEV, Sets April-May 2026 Federal Deadlines
    • Authority, Freshness & First-Party Signals
    © 2026 WifiPortal.tech. Designed by WifiPortal.tech.
    • Home
    • About Us
    • Contact Us
    • Privacy Policy
    • Terms and Conditions
    • Disclaimer

    Type above and press Enter to search. Press Esc to cancel.