SimpleHelp CVE-2026-48558: Patch the KEV Remote Support Auth Bypass
CISA added SimpleHelp CVE-2026-48558 to KEV. Patch SimpleHelp remote support servers, review OIDC, MFA, sessions, and technician access.
Learn More
CISA added SimpleHelp CVE-2026-48558 to KEV. Patch SimpleHelp remote support servers, review OIDC, MFA, sessions, and technician access.
Learn MoreCISA added Lantronix EDS5000 CVE-2025-67038 to KEV. Patch affected serial device servers, restrict management access, and verify industrial network exposure.
Learn MorePatch Ubiquiti UniFi OS CVE-2026-34908, CVE-2026-34909, and CVE-2026-34910, then verify model-specific fixed versions and exposure.
Learn MoreCISA added Joomla Content Editor CVE-2026-48907 to KEV. Update JCE Pro to 2.9.99.6 or later, apply the vendor patch package for older sites, and review Joomla for cleanup.
Learn MoreCISA added Cisco Catalyst SD-WAN Manager CVE-2026-20262 to KEV on June 15, 2026. Patch fixed software, restrict management access, and review admin activity.
Learn MoreCISA KEV now lists Oracle PeopleSoft CVE-2026-35273. Apply Oracle mitigation guidance, restrict HTTP exposure, review logs, and plan patch work.
Learn MoreCISA added Arista EOS CVE-2026-7473 to KEV on June 9, 2026. Patch affected EOS switches, review VXLAN/GRE decapsulation exposure, and verify fabric behavior.
Learn MoreCISA added Cisco Catalyst SD-WAN Manager CVE-2026-20245 to KEV on June 9, 2026. Patch SD-WAN Manager, review edge configuration changes, and protect management access.
Learn MoreCISA added Chrome CVE-2026-11645 to KEV on June 9, 2026. Patch Chrome and Chromium-based admin browsers, restart, verify versions, and review risky sessions.
Learn MoreCISA added LiteLLM CVE-2026-42271 to KEV on June 8, 2026. Patch AI gateways, restrict exposed proxy access, rotate keys where needed, and verify routes.
Learn More