These CVEs are listed in CISA's Known Exploited Vulnerabilities (KEV) catalog. They are confirmed to be actively exploited in the wild. Immediate remediation is strongly recommended.

Known Exploited VulnerabilitiesACTIVE THREATS

Vulnerabilities confirmed by CISA to be actively exploited. These should be prioritized for immediate patching and remediation in your environment.

8KEV Listed
4Critical
3High
⚠ KEV Catalog Entries (8)
CVE IDTitleSeverityCVSSKEV DateFix
CVE-2026-3502TrueConf Client Update Integrity Bypass — Remote Code Execution via Tampered Updateshigh7.8Apr 2, 2026YES
CVE-2026-5281Google Chrome Dawn Use-After-Free Zero-Day (WebGPU)high8.8Apr 1, 2026YES
CVE-2026-3055Citrix NetScaler ADC/Gateway SAML IDP Memory Overread (Critical)critical9.8Mar 31, 2026YES
CVE-2025-31277Apple DarkSword: WebKit Buffer Overflow Exploited in iOS Spy Campaignhigh8.8Mar 20, 2026YES
CVE-2025-43520Apple DarkSword Buffer Overflow — Actively Exploited iOS/macOS Kernel Writemedium5.5Mar 20, 2026YES
CVE-2026-20127Cisco IOS XE Web UI Authentication Bypasscritical9.8Mar 15, 2026YES
CVE-2026-25108Unauthenticated Remote Code Execution in Acme Cloud Platformcritical9.8Mar 15, 2026YES
CVE-2025-49113Remote Code Execution in Apache Struts Framework via OGNL Expression Injectioncritical9.8Mar 15, 2025YES