Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
CISA Highlights New Vulnerabilities, Sets Federal Deadlines

CISA Highlights New Vulnerabilities, Sets Federal Deadlines

Posted on April 21, 2026 By CWS

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has recently expanded its Known Exploited Vulnerabilities (KEV) catalog by including eight new security flaws. This update, announced on Monday, highlights three vulnerabilities affecting Cisco Catalyst SD-WAN Manager, based on current evidence of active exploitation.

Details of the Newly Added Vulnerabilities

The vulnerabilities added to the KEV catalog are significant, with varying CVSS scores indicating their potential impact. Among them is CVE-2023-27351, an improper authentication flaw in PaperCut NG/MF, which could enable attackers to bypass authentication measures. Another notable vulnerability, CVE-2024-27199, involves a path traversal issue in JetBrains TeamCity, potentially allowing limited administrative actions by attackers.

Furthermore, CVE-2025-2749 targets Kentico Xperience with a path traversal vulnerability that might let authenticated users upload arbitrary data. Quest KACE Systems Management Appliance is impacted by CVE-2025-32975, a critical authentication flaw that could lead to user impersonation without valid credentials.

Impact on Cisco and Other Platforms

Several vulnerabilities affect Cisco Catalyst SD-WAN Manager, including CVE-2026-20122, which misuses privileged APIs, allowing unauthorized file uploads. Another, CVE-2026-20128, involves the storage of passwords in a recoverable format, posing a risk of privilege escalation. Additionally, CVE-2026-20133 presents a risk of sensitive data exposure to unauthorized parties.

Synacor Zimbra Collaboration Suite is also affected by CVE-2025-48700, a cross-site scripting issue that could result in unauthorized JavaScript execution within user sessions, compromising sensitive information.

Current Exploitation and Federal Response

The vulnerabilities are actively being exploited, prompting CISA to urge Federal Civilian Executive Branch (FCEB) agencies to address the Cisco vulnerabilities by April 23, 2026, and the rest by May 4, 2026. Past exploits have been linked to threat actors such as Lace Tempest, known for deploying ransomware like Cl0p and LockBit.

Security firm Arctic Wolf has observed unknown actors targeting unpatched Quest KACE systems, though their ultimate objectives remain unclear. Cisco has acknowledged the exploitation of CVE-2026-20122 and CVE-2026-20128 but has yet to update advisories concerning CVE-2026-20133.

These developments underscore the importance of timely security updates and vigilance against potential cyber threats. Organizations are encouraged to prioritize patching and monitoring to mitigate these risks effectively.

The Hacker News Tags:CISA, Cisco, Cybersecurity, federal deadlines, JetBrains, Kentico Xperience, PaperCut, Quest KACE, security flaws, Synacor Zimbra, Vulnerabilities

Post navigation

Previous Post: Gardyn Smart Garden Flaws Risk Remote Control by Hackers
Next Post: GitHub AI Agents Exposed to New Vulnerability

Related Posts

Two Critical Flaws Uncovered in Wondershare RepairIt Exposing User Data and AI Models Two Critical Flaws Uncovered in Wondershare RepairIt Exposing User Data and AI Models The Hacker News
Context Is the Key to Effective Incident Response Context Is the Key to Effective Incident Response The Hacker News
Understanding Help Desk Scams and How to Defend Your Organization Understanding Help Desk Scams and How to Defend Your Organization The Hacker News
EdgeStepper Implant Reroutes DNS Queries to Deploy Malware via Hijacked Software Updates EdgeStepper Implant Reroutes DNS Queries to Deploy Malware via Hijacked Software Updates The Hacker News
Hackers Use Fake VPN and Browser NSIS Installers to Deliver Winos 4.0 Malware Hackers Use Fake VPN and Browser NSIS Installers to Deliver Winos 4.0 Malware The Hacker News
SolarWinds WHD Exploited in Complex Multi-Stage Cyber Attacks SolarWinds WHD Exploited in Complex Multi-Stage Cyber Attacks The Hacker News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • North Korean Group Implicated in $290M Kelp DAO Crypto Theft
  • SideWinder Targets Government Emails with Fake PDF Viewer
  • GitHub AI Agents Exposed to New Vulnerability
  • CISA Highlights New Vulnerabilities, Sets Federal Deadlines
  • Gardyn Smart Garden Flaws Risk Remote Control by Hackers

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • North Korean Group Implicated in $290M Kelp DAO Crypto Theft
  • SideWinder Targets Government Emails with Fake PDF Viewer
  • GitHub AI Agents Exposed to New Vulnerability
  • CISA Highlights New Vulnerabilities, Sets Federal Deadlines
  • Gardyn Smart Garden Flaws Risk Remote Control by Hackers

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark