Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
CISA Highlights New Vulnerabilities, Sets Federal Deadlines

CISA Highlights New Vulnerabilities, Sets Federal Deadlines

Posted on April 21, 2026 By CWS

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has recently expanded its Known Exploited Vulnerabilities (KEV) catalog by including eight new security flaws. This update, announced on Monday, highlights three vulnerabilities affecting Cisco Catalyst SD-WAN Manager, based on current evidence of active exploitation.

Details of the Newly Added Vulnerabilities

The vulnerabilities added to the KEV catalog are significant, with varying CVSS scores indicating their potential impact. Among them is CVE-2023-27351, an improper authentication flaw in PaperCut NG/MF, which could enable attackers to bypass authentication measures. Another notable vulnerability, CVE-2024-27199, involves a path traversal issue in JetBrains TeamCity, potentially allowing limited administrative actions by attackers.

Furthermore, CVE-2025-2749 targets Kentico Xperience with a path traversal vulnerability that might let authenticated users upload arbitrary data. Quest KACE Systems Management Appliance is impacted by CVE-2025-32975, a critical authentication flaw that could lead to user impersonation without valid credentials.

Impact on Cisco and Other Platforms

Several vulnerabilities affect Cisco Catalyst SD-WAN Manager, including CVE-2026-20122, which misuses privileged APIs, allowing unauthorized file uploads. Another, CVE-2026-20128, involves the storage of passwords in a recoverable format, posing a risk of privilege escalation. Additionally, CVE-2026-20133 presents a risk of sensitive data exposure to unauthorized parties.

Synacor Zimbra Collaboration Suite is also affected by CVE-2025-48700, a cross-site scripting issue that could result in unauthorized JavaScript execution within user sessions, compromising sensitive information.

Current Exploitation and Federal Response

The vulnerabilities are actively being exploited, prompting CISA to urge Federal Civilian Executive Branch (FCEB) agencies to address the Cisco vulnerabilities by April 23, 2026, and the rest by May 4, 2026. Past exploits have been linked to threat actors such as Lace Tempest, known for deploying ransomware like Cl0p and LockBit.

Security firm Arctic Wolf has observed unknown actors targeting unpatched Quest KACE systems, though their ultimate objectives remain unclear. Cisco has acknowledged the exploitation of CVE-2026-20122 and CVE-2026-20128 but has yet to update advisories concerning CVE-2026-20133.

These developments underscore the importance of timely security updates and vigilance against potential cyber threats. Organizations are encouraged to prioritize patching and monitoring to mitigate these risks effectively.

The Hacker News Tags:CISA, Cisco, Cybersecurity, federal deadlines, JetBrains, Kentico Xperience, PaperCut, Quest KACE, security flaws, Synacor Zimbra, Vulnerabilities

Post navigation

Previous Post: Gardyn Smart Garden Flaws Risk Remote Control by Hackers
Next Post: GitHub AI Agents Exposed to New Vulnerability

Related Posts

Russian Group EncryptHub Exploits MSC EvilTwin Vulnerability to Deploy Fickle Stealer Malware Russian Group EncryptHub Exploits MSC EvilTwin Vulnerability to Deploy Fickle Stealer Malware The Hacker News
Nation-State Hackers Deploy New Airstalk Malware in Suspected Supply Chain Attack Nation-State Hackers Deploy New Airstalk Malware in Suspected Supply Chain Attack The Hacker News
AsyncRAT Exploits ConnectWise ScreenConnect to Steal Credentials and Crypto AsyncRAT Exploits ConnectWise ScreenConnect to Steal Credentials and Crypto The Hacker News
North Korean Hackers Exploit npm Packages for Malware North Korean Hackers Exploit npm Packages for Malware The Hacker News
Hackers Leverage Microsoft Teams to Spread Matanbuchus 3.0 Malware to Targeted Firms Hackers Leverage Microsoft Teams to Spread Matanbuchus 3.0 Malware to Targeted Firms The Hacker News
Two New Windows Zero-Days Exploited in the Wild — One Affects Every Version Ever Shipped Two New Windows Zero-Days Exploited in the Wild — One Affects Every Version Ever Shipped The Hacker News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Google Unveils Gemini 3.5 Flash Cyber for Faster Vulnerability Fixes
  • Cisco Introduces Cost-Effective AI for Code Security
  • Accelerating Exploit Timelines Challenge Defenders
  • Teach Claude Skills Easily with Screen Recording
  • Trump Initiates Defense Supply Chain Security Overhaul

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • July 2026
  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Google Unveils Gemini 3.5 Flash Cyber for Faster Vulnerability Fixes
  • Cisco Introduces Cost-Effective AI for Code Security
  • Accelerating Exploit Timelines Challenge Defenders
  • Teach Claude Skills Easily with Screen Recording
  • Trump Initiates Defense Supply Chain Security Overhaul

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark