Go hunt on your SharePoint shit. https:// blog.previdian.com/cve-2026-65 660-previdian-observes-two-stage-sharepoint-exploitation-attempts/ Update September 25th, 2026: The exploitation creates a webs
mastodon:infosec-exchange 4d ago
By September 5, 2026, threat actors were actively exploiting CVE-2026-19490, a critical authentication bypass vulnerability in Citrix NetScaler ADC and Gateway appliances. Previdian confirmed active exploitation in the wild, urging immediate patching.
The U.S. Cybersecurity and Infrastructure Security Agency added six actively exploited vulnerabilities to its Known Exploited Vulnerabilities catalog on August 27, 2026, including remote code execution flaws in Citrix NetScaler (CVE-2026-8452), Microsoft SQL Server (CVE-2019-1068), and a Linux kernel out-of-bounds write (CVE-2022-0995). The Citrix flaw was exploited in the wild within 12 days of proof-of-concept release.