Windows Server CISA KEV: Patch CVE-2026-68820
CISA added Windows CVE-2026-68820 to KEV. Apply Microsoft August updates on supported Windows Server releases, restart deliberately, and confirm critical hosting services return normally.

CISA added Windows CVE-2026-68820 to KEV. Apply Microsoft August updates on supported Windows Server releases, restart deliberately, and confirm critical hosting services return normally.
CISA added Langflow CVE-2026-9198 to KEV. Self-hosted Langflow OSS 1.0.0 through 1.10.0 should move to 1.10.1 and review service exposure and connected credentials.
CISA added DD-WRT CVE-2021-27137 to KEV. Update builds before 45724, keep router administration private, and disable unnecessary UPnP.
CISA added Langflow CVE-2026-0770 to KEV. Update affected AI workflow servers to 1.9.0 or later, restrict access, and review connected credentials.
Cloudflare issued an emergency managed-WAF release for active exploitation of critical framework issues. Verify coverage, review security events, and patch origins.
CISA added Microsoft SharePoint Server CVE-2026-56164 to KEV. Identify affected servers, follow Microsoft update guidance, and verify recovery and normal service health.
Ubuntu USN-8533-1 updates OpenSSH for eight CVEs. Protect the workload, apply Canonical packages through the approved process, and verify normal server access.
Ubuntu USN-8532-1 fixes high-severity libssh2 CVE-2026-58050. Inventory client-library copies, back up the workload, apply Canonical updates, and verify dependent services.
Use this backup-first Joomla security update checklist to move supported sites to 5.4.7 or 6.1.2, test core workflows, and review extensions separately.