CISA Adds Three Known Exploited Vulnerabilities to Catalog

By George Bailey   Published: 09/02/26   Updated: 09/02/26   2 min read
Security analyst reviewing alerts on multiple monitors

What Changed

CISA added three vulnerabilities to the Known Exploited Vulnerabilities catalog based on evidence of active exploitation: CVE-2023-49105 in ownCloud, CVE-2026-53362 in the Linux kernel, and CVE-2026-66384 in JFrog Artifactory.

That matters because the three products sit in very different parts of enterprise environments. ownCloud can expose stored business data, Artifactory sits in software-delivery and package trust paths, and the Linux kernel can underpin far broader infrastructure than an application team may realize at first glance.

Why The KEV Label Matters More Than Another Vulnerability Roundup

Security teams rarely fail because they missed the headline. They fail because the affected technology is spread across different owners, asset maps are incomplete, and the normal change window was never designed for an actively exploited issue spanning collaboration platforms, infrastructure, and build systems at once.

CISA's BOD 26-04 framing is the useful part here. The agency is pushing federal teams to prioritize KEV issues on publicly exposed assets that can grant total control after exploitation and to check whether compromise happened before patching. Even outside government, that is the right mental model.

What To Verify First

Source Context

CyberExperts used CISA's KEV alert as the primary source for this article and preserved the details that change defender behavior: the specific CVEs, the affected technologies, the fact that active exploitation exists, and the expectation that teams check for compromise instead of treating patching as the whole job.

Related In The Daily Brief

See this item in The 5-Minute Cyber Brief

George Bailey

George Bailey is a cybersecurity researcher and writer at CyberExperts, covering cyber threats, AI, cloud security, vulnerabilities, and defensive strategies. His goal is to help security professionals quickly understand what matters most and how it impacts their organizations.

Keep Reading