Our takeCISA added three vulnerabilities to its KEV catalog: CVE-2023-49105 (ownCloud improper auth), CVE-2026-53362 (Linux kernel), and CVE-2026-66384 (JFrog Artifactory path traversal). All are confirmed exploited in the wild. Patch them now.Cyber Resilience desk
Sources (1)
- cisa_advisories · cisa_advisories
What this means for you — Security leader:CISA added CVE-2023-49105 (ownCloud), CVE-2026-53362 (Linux Kernel), and CVE-2026-66384 (JFrog Artifactory) to the KEV catalog: all three are confirmed exploited in the wild. Prioritize patching or mitigation immediately if you run any of them.
What this means for you — Lean IT orgs:CISA added three vulnerabilities to its Known Exploited Vulnerabilities list because attackers are actively using them. Check whether you use ownCloud, JFrog Artifactory, or certain Linux kernels and update them right away.
What this means for you — MSP:CISA added CVE-2023-49105 (ownCloud improper auth), CVE-2026-53362 (Linux Kernel), and CVE-2026-66384 (JFrog Artifactory path traversal) to the KEV catalog — all confirmed exploited in the wild. Review client environments for these and patch or isolate immediately.
What this means for you — Researcher:CISA added three new entries to the KEV catalog: CVE-2023-49105, CVE-2026-53362, and CVE-2026-66384. All are confirmed exploited in the wild.