MSP This WeekWeekly
MSP this week: package the exploited-vulnerability list as a maintenance window
Updated 12 August 2026 · Timeframe: New KEV this week; 52-week trend chart
5 vulnerabilities entered CISA's KEV catalog this week. Across a client base that is one scheduled maintenance window: sweep every tenant for the affected products and patch what is exposed.
Why it matters
For an MSP, this week's exploited-vulnerability set is both a patch task and a sellable service. Every item maps to a control, and every control maps to a service you can offer. The list scopes the work; it also scopes the pitch.
What to do
- Security leaders. If you serve MSP clients, expect this week's KEV set to drive their patch asks; get ahead of it.
- Lean IT orgs. If you rely on an MSP, ask which of this week's exploited products they have already patched for you.
- MSPs. Run the portfolio sweep, patch the exposed tenants, send the client advisory, then book it as a recurring window.
Our take
The strongest MSP security offer is not fear, it is cadence. Turning the exploited-vulnerability list into a scheduled, billable maintenance window protects the client and pays the practice from the same work.
Earlier issues
Past states of this signal, most recent first.
10 August 2026 MSP this week: package the exploited-vulnerability list as a maintenance window
Timeframe: New KEV this week; 52-week trend chart
6 vulnerabilities entered CISA's KEV catalog this week. Across a client base that is one scheduled maintenance window: sweep every tenant for the affected products and patch what is exposed.
03 August 2026 MSP this week: package the exploited-vulnerability list as a maintenance window
Timeframe: New KEV this week; 52-week trend chart
3 vulnerabilities entered CISA's KEV catalog this week. Across a client base that is one scheduled maintenance window: sweep every tenant for the affected products and patch what is exposed.
27 July 2026 MSP this week: package the exploited-vulnerability list as a maintenance window
Timeframe: New KEV this week; 52-week trend chart
6 vulnerabilities entered CISA's KEV catalog this week. Across a client base that is one scheduled maintenance window: sweep every tenant for the affected products and patch what is exposed.