
CISA KEV: FortiSandbox CVE-2026-25089 and CVE-2026-39808 Update Checklist
CISA added two connected FortiSandbox CVEs to KEV. Confirm the deployed branch, use Fortinet-supported upgrades, protect recovery, and validate normal security operations.

CISA added two connected FortiSandbox CVEs to KEV. Confirm the deployed branch, use Fortinet-supported upgrades, protect recovery, and validate normal security operations.

CISA added Microsoft SharePoint CVE-2026-58644 to KEV. Assign an owner, protect recovery, follow Microsoft guidance, and verify approved collaboration services after maintenance.

Set up WordPress MCP safely with a staging-first, read-only pilot, dedicated accounts, reviewed abilities, backups, monitoring, and clear revocation.

CISA added Microsoft AD FS CVE-2026-56155 to KEV. Confirm identity-service ownership, follow Microsoft guidance, protect recovery, and verify authorized sign-ins after maintenance.

CISA KEV guidance for SonicWall SMA1000 CVE-2026-15409 and CVE-2026-15410, including vendor-confirmed active exploitation and fixed firmware builds.

CISA added Microsoft SharePoint Server CVE-2026-56164 to KEV. Identify affected servers, follow Microsoft update guidance, and verify recovery and normal service health.

Ubuntu USN-8533-1 updates OpenSSH for eight CVEs. Protect the workload, apply Canonical packages through the approved process, and verify normal server access.

Ubuntu USN-8532-1 fixes high-severity libssh2 CVE-2026-58050. Inventory client-library copies, back up the workload, apply Canonical updates, and verify dependent services.

RabbitMQ CVE-2026-57219 affects certain OAuth-enabled management deployments. Back up, update to the fixed branch release, rotate the related credential, and validate broker health.

Use this backup-first Joomla security update checklist to move supported sites to 5.4.7 or 6.1.2, test core workflows, and review extensions separately.