Check Point CVE-2026-50751: Patch the VPN Authentication Bypass
CISA added Check Point Security Gateway CVE-2026-50751 to KEV on June 8, 2026. Patch affected VPN gateways, review IKEv1 exposure, audit logs, and verify remote access.
Learn More
CISA added Check Point Security Gateway CVE-2026-50751 to KEV on June 8, 2026. Patch affected VPN gateways, review IKEv1 exposure, audit logs, and verify remote access.
Learn MoreCISA added SolarWinds Serv-U CVE-2026-28318 to KEV on June 5, 2026. Update to Serv-U 15.5.4 Hotfix 1 or the current fixed SolarWinds build.
Learn MoreCISA added Mirasvit Full Page Cache Warmer CVE-2026-45247 to KEV. Magento 2 stores should update to 1.11.12 or newer, or disable the module until patched.
Learn MoreCISA added Oracle WebLogic Server CVE-2024-21182 to KEV on June 1, 2026. Patch affected WebLogic 12.2.1.4.0 and 14.1.1.0.0 systems and restrict T3/IIOP exposure.
Learn MoreCISA added Android Framework CVE-2025-48595 to KEV after Google flagged limited targeted exploitation. Check June 2026 Android patch levels on business and admin devices.
Learn MoreCISA added Linux kernel CVE-2022-0492 to KEV on June 2, 2026. Patch and reboot container hosts, shared hosting nodes, CI runners, and Linux servers that run untrusted workloads.
Learn MoreCISA added PAN-OS CVE-2026-0257 to KEV after limited exploit attempts. Check GlobalProtect authentication override cookies, mitigate, patch, and verify VPN logs.
Learn MoreCISA KEV guide for DAEMON Tools Lite CVE-2026-8398: remove affected free builds, scan Windows workstations, update, and rotate admin credentials if needed.
Learn MoreCISA KEV guide for Nx Console CVE-2026-48027: update the VS Code extension, review affected workstations, rotate secrets, and rebuild safely.
Learn MoreCISA now lists Drupal CVE-2026-9082 in KEV. Patch PostgreSQL-backed Drupal sites first, then update Symfony and Twig dependencies across supported Drupal 10 and 11 sites.
Learn More