cisa-kev
Safeguard articles tagged "cisa-kev" — guides, analysis, and best practices for software supply chain and application security.
100 articles
SolarWinds Web Help Desk's Deserialization Problem, Confirmed for Ransomware
Two separate deserialization RCEs and a security-control bypass in Web Help Desk, one confirmed for ransomware use, plus a denial-of-service bug in Serv-U.
The Same Code Injection Bug Hit Ivanti's Mobile Manager Twice in Two Months
Two nearly identical unauthenticated RCE vulnerabilities in Ivanti Endpoint Manager Mobile, plus a perfect-10 in Sentry and a credential-leaking bypass in Endpoint Manager.
FortiClient EMS and FortiWeb Add Five More Confirmed-Exploited CVEs to Fortinet's Year
A SQL injection and an access-control bug in FortiClient EMS, a path traversal and command injection pair in FortiWeb — Fortinet's endpoint management and WAF products join the list.
Three of Oracle's Five Confirmed-Exploited CVEs Are Tied to Ransomware
PeopleSoft and E-Business Suite together account for three ransomware-associated Oracle vulnerabilities in a single year — an unusually high concentration for one vendor.
Eight More Chromium Bugs Confirmed Exploited, Beyond V8
V8, Dawn, Skia, ANGLE, and Chromium's CSS engine each produced confirmed-exploited vulnerabilities — ten total this year across five distinct browser subsystems.
Nine Apple Memory-Safety Bugs Confirmed Exploited Across iOS, macOS, and Safari
Use-after-free, memory corruption, integer overflow — nine Apple vulnerabilities spanning nearly a decade of disclosure dates were confirmed exploited across the company's full platform range.
A Second Cisco Firewall Management Center Bug, This One Confirmed for Ransomware
CVE-2026-20131 in Cisco FMC carries CISA's confirmed ransomware flag — the second FMC vulnerability covered in this series, alongside new findings in Email Gateway, ASA/FTD, and Unified CM.
Cisco's Catalyst SD-WAN Line Produced Seven Confirmed-Exploited CVEs in a Year
From a perfect-10 peering authentication bypass to CLI privilege escalation, seven distinct vulnerabilities across Cisco's SD-WAN Controller, Manager, and underlying software were confirmed exploited.
Nine Windows Privilege Escalation Bugs Confirmed Exploited — Why the Quiet Ones Matter Most
Nine local privilege-escalation and access-control vulnerabilities in Windows were confirmed exploited over the past year. None individually dramatic, together they define how far an intrusion spreads.
Microsoft Defender Had Three of Its Own Vulnerabilities Confirmed Exploited
Security software is software first: two local privilege-escalation bugs and a denial-of-service flaw in Microsoft Defender itself were confirmed exploited in the wild.
SharePoint and Exchange Produce Four More Confirmed-Exploited CVEs
Beyond the five-CVE cluster covered earlier, four more SharePoint and Exchange vulnerabilities were confirmed exploited across the year — including a 2023 Exchange bug confirmed nearly three years later.
WSUS and Configuration Manager: When Patch Infrastructure Itself Needs Patching
CVE-2025-59287 in WSUS and CVE-2024-43468 in Configuration Manager both scored CVSS 9.8 — critical bugs in the very tools organizations use to distribute trust across their fleet.
Self-healing security runs on Safeguard.
Your first fix PR is minutes away.
No sales call required, even your agent can complete the purchase over MCP.