CISA Adds 11 Exploited Vulnerabilities to KEV Catalog, Including PaperCut Zero-Days
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added 11 new vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog, mandating federal agencies to address them by specific deadlines. This includes critical flaws in widely used software such as ownCloud (CVE-2023-49105), the Linux kernel (CVE-2026-53362), and JFrog Artifactory (CVE-2026-66384). Additionally, PaperCut Software released a second emergency patch for two actively exploited zero-day vulnerabilities, CVE-2026-82078 and CVE-2026-81578, which allow unauthenticated attackers to bypass authentication and achieve remote code execution. The Linux kernel vulnerability was reportedly exploited by AI agents, highlighting the evolving threat landscape.
Open NewsSnap.ai for the full app experience, including audio, personalization, and more news tools.
Open NewsSnap.ai