Safeguard
Tag

cisa-kev

Safeguard articles tagged "cisa-kev" — guides, analysis, and best practices for software supply chain and application security.

100 articles

Vulnerability Analysis

SolarWinds Web Help Desk's Deserialization Problem, Confirmed for Ransomware

Two separate deserialization RCEs and a security-control bypass in Web Help Desk, one confirmed for ransomware use, plus a denial-of-service bug in Serv-U.

Sep 16, 20264 min read
Vulnerability Analysis

The Same Code Injection Bug Hit Ivanti's Mobile Manager Twice in Two Months

Two nearly identical unauthenticated RCE vulnerabilities in Ivanti Endpoint Manager Mobile, plus a perfect-10 in Sentry and a credential-leaking bypass in Endpoint Manager.

Sep 16, 20264 min read
Vulnerability Analysis

FortiClient EMS and FortiWeb Add Five More Confirmed-Exploited CVEs to Fortinet's Year

A SQL injection and an access-control bug in FortiClient EMS, a path traversal and command injection pair in FortiWeb — Fortinet's endpoint management and WAF products join the list.

Sep 16, 20264 min read
Vulnerability Analysis

Three of Oracle's Five Confirmed-Exploited CVEs Are Tied to Ransomware

PeopleSoft and E-Business Suite together account for three ransomware-associated Oracle vulnerabilities in a single year — an unusually high concentration for one vendor.

Sep 16, 20264 min read
Vulnerability Analysis

Eight More Chromium Bugs Confirmed Exploited, Beyond V8

V8, Dawn, Skia, ANGLE, and Chromium's CSS engine each produced confirmed-exploited vulnerabilities — ten total this year across five distinct browser subsystems.

Sep 16, 20264 min read
Vulnerability Analysis

Nine Apple Memory-Safety Bugs Confirmed Exploited Across iOS, macOS, and Safari

Use-after-free, memory corruption, integer overflow — nine Apple vulnerabilities spanning nearly a decade of disclosure dates were confirmed exploited across the company's full platform range.

Sep 16, 20264 min read
Vulnerability Analysis

A Second Cisco Firewall Management Center Bug, This One Confirmed for Ransomware

CVE-2026-20131 in Cisco FMC carries CISA's confirmed ransomware flag — the second FMC vulnerability covered in this series, alongside new findings in Email Gateway, ASA/FTD, and Unified CM.

Sep 16, 20264 min read
Vulnerability Analysis

Cisco's Catalyst SD-WAN Line Produced Seven Confirmed-Exploited CVEs in a Year

From a perfect-10 peering authentication bypass to CLI privilege escalation, seven distinct vulnerabilities across Cisco's SD-WAN Controller, Manager, and underlying software were confirmed exploited.

Sep 16, 20264 min read
Vulnerability Analysis

Nine Windows Privilege Escalation Bugs Confirmed Exploited — Why the Quiet Ones Matter Most

Nine local privilege-escalation and access-control vulnerabilities in Windows were confirmed exploited over the past year. None individually dramatic, together they define how far an intrusion spreads.

Sep 16, 20264 min read
Vulnerability Analysis

Microsoft Defender Had Three of Its Own Vulnerabilities Confirmed Exploited

Security software is software first: two local privilege-escalation bugs and a denial-of-service flaw in Microsoft Defender itself were confirmed exploited in the wild.

Sep 16, 20264 min read
Vulnerability Analysis

SharePoint and Exchange Produce Four More Confirmed-Exploited CVEs

Beyond the five-CVE cluster covered earlier, four more SharePoint and Exchange vulnerabilities were confirmed exploited across the year — including a 2023 Exchange bug confirmed nearly three years later.

Sep 16, 20264 min read
Vulnerability Analysis

WSUS and Configuration Manager: When Patch Infrastructure Itself Needs Patching

CVE-2025-59287 in WSUS and CVE-2024-43468 in Configuration Manager both scored CVSS 9.8 — critical bugs in the very tools organizations use to distribute trust across their fleet.

Sep 16, 20264 min read

Self-healing security runs on Safeguard.

Your first fix PR is minutes away.

No sales call required, even your agent can complete the purchase over MCP.