< BACK TO NEWS
importantSYS.SOURCE: The Hacker News2026-09-12T21:24:45+05:30

CISA Updates KEV Catalog with Five Actively Exploited Vulnerabilities in Artifactory, ScreenConnect, and RouterOS

CISA has added five actively exploited vulnerabilities in JFrog Artifactory, ConnectWise ScreenConnect, and MikroTik RouterOS to its KEV catalog, with attackers chaining flaws to gain administrative control and deploy backdoors. The updates require urgent patching by federal agencies to mitigate risks of privilege escalation, data exposure, and system compromise.

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added five security flaws impacting JFrog Artifactory, ConnectWise ScreenConnect, and MikroTik RouterOS to its Known Exploited Vulnerabilities (KEV) catalog, following reports of active exploitation in the wild.

Details of the vulnerabilities are as follows -

CVE-2026-42016 (CVSS score: 8.1) - An incorrect authorization

Read original article

*** END OF TRANSMISSION ***