cisa

A collection of 47 posts
cisa

CISA Warns of Critical Progress LoadMaster Flaw Actively Exploited by Hackers

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) warns that hackers are actively exploiting a critical-severity command injection vulnerability in Progress Kemp LoadMaster. The flaw, tracked as CVE-2026-8037, allows unauthenticated attackers to execute arbitrary commands on unpatched appliances by exploiting unsanitized API inputs across multiple command endpoints. Nearly 300
1 min read
cisa

CISA Urges Immediate Patching of Actively Exploited SharePoint Vulnerabilities

CISA warns that attackers are actively exploiting three serious vulnerabilities in Internet-exposed, on-premises Microsoft SharePoint Server instances. These flaws, tracked as CVE-2026-32201, CVE-2026-45659, and CVE-2026-56164, affect all supported self-hosted versions of SharePoint Server. Attackers use them to bypass authentication, execute remote code, and establish persistence on compromised systems. According to
1 min read