Posting Date: 2026/09/16

【Vulnerability Alert】CISA Added 11 Known Exploited Vulnerabilities to the KEV Catalog (2026/08/24-2026/08/30)

  • Subject:【Vulnerability Alert】CISA Added 11 Known Exploited Vulnerabilities to the KEV Catalog (2026/08/24-2026/08/30)


  • Description:
    • Forwarded from TWCERTCC (Taiwan Computer Network Crisis Response and Coordination Center) Security Alert TWCERTCC-200-202609-00000008
    • 【CVE-2026-21962】Oracle HTTP Server and Oracle Weblogic Server Proxy Plug-in Improper Access Control Vulnerability (CVSS v3.1: 10.0)
    • 【Exploited by Ransomware: Unknown】 Oracle HTTP Server and Oracle WebLogic Server Proxy Plug-in have an improper access control vulnerability that may allow unauthorized users to gain permissions to create, delete, or modify critical data, access critical data without authorization, and in some cases gain full access to all data accessible by Oracle HTTP Server and Oracle WebLogic Server Proxy Plug-in.
    • 【CVE-2026-60004】Gitea Code Injection Vulnerability (CVSS v31: 9.8)
    • 【Exploited by Ransomware: Unknown】 Gitea has a code injection vulnerability. An attacker with repository write permissions can send a malicious patch to the diffpatch API endpoint, implant an executable Git hook, and execute shell commands under the identity of the Gitea service account.
    • 【CVE-2021-23758】Ajax.NET Professional Deserialization of Untrusted Data Vulnerability (CVSS v3.1: 8.1)
    • 【Exploited by Ransomware: Unknown】 Ajax.NET Professional (AjaxPro) has a deserialization of untrusted data vulnerability that may allow an attacker to execute remote code by leveraging arbitrary .NET classes. The affected product may have reached End of Life (EoL) and/or End of Service (EoS). Users are advised to stop using the affected product and/or migrate to a supported version.
    • 【CVE-2015-3246】Red Hat Libuser Race Condition Vulnerability (CVSS v3.1: 5.1)
    • 【Exploited by Ransomware: Unknown】 Red Hat libuser has a race condition vulnerability that allows an authenticated local user to corrupt the /etc/passwd file, potentially leading to a denial of service or privilege escalation.
    • 【CVE-2015-5287】Red Hat Automatic Bug Reporting Tool Privilege Escalation Vulnerability (CVSS v3.1: 7.8)
    • 【Exploited by Ransomware: Unknown】 Red Hat Automatic Bug Reporting Tool (ABRT) has a privilege escalation vulnerability that may allow a local user with specific permissions to gain higher privileges by launching a symbolic link attack against files with predictable names. The affected product may have reached End of Life (EoL) and/or End of Service (EoS). Users are advised to stop using the affected product and/or migrate to a supported version.
    • 【CVE-2022-0995】Linux Kernel Out-of-Bounds Write Vulnerability (CVSS v3.1: 7.8)
    • 【Exploited by Ransomware: Unknown】 The Linux Kernel has an out-of-bounds write vulnerability that may allow a local user to gain privileged access or cause a denial of service on the system.
    • 【CVE-2026-8452】Citrix NetScaler ADC and NetScaler Gateway Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability (CVSS v3.1: 9.8)
    • 【Exploited by Ransomware: Unknown】 Citrix NetScaler ADC and NetScaler Gateway have an improper restriction of operations within the bounds of a memory buffer vulnerability that may lead to a denial of service.
    • 【CVE-2019-1068】Microsoft SQL Server Remote Code Execution Vulnerability (CVSS v3.1: 8.8)
    • 【Exploited by Ransomware: Unknown】 Microsoft SQL Server has a remote code execution vulnerability that may allow an attacker to execute code under the identity of the SQL Server Database Engine service account.
    • 【CVE-2023-49105】ownCloud Improper Authentication Vulnerability (CVSS v3.1: 9.8)
    • 【Exploited by Ransomware: Unknown】 ownCloud has an improper authentication vulnerability. If an attacker knows the victim's username and the victim has not configured a signing key, the attacker can access, modify, or delete any file without authentication.
    • 【CVE-2026-53362】Linux Kernel Unspecified Vulnerability (CVSS v3.1: 7.8)
    • 【Exploited by Ransomware: Unknown】 The Linux Kernel has an unspecified vulnerability that may allow an attacker to escalate privileges via the IPv6 network subsystem. This vulnerability may affect multiple products, including but not limited to Suse, Red Hat, and other products using Linux.
    • 【CVE-2026-66384】JFrog Artifactory Improper Limitation of a Pathname to a Restricted Directory Vulnerability (CVSS v3.1: 5.3)
    • 【Exploited by Ransomware: Unknown】 JFrog Artifactory has a vulnerability of improper limitation of a pathname to a restricted directory. Under specific remote repository conditions, this vulnerability may allow an authenticated user to write data to locations other than the expected Docker cache path.
  • Affected Platforms:
  • Recommended Actions:
  • References:

Computer and Communication Center
Network System Division