chiprook
← Security
SecuritySeptember 18, 2026, 16:19

Cisco's two exploited flaws and CISA's patch clock

CISA added two Cisco vulnerabilities to the KEV catalog: CVE-2026-76461 in Secure Email Gateway (RCE with root via SQL injection in email) and CVE-2026-76460 in ISE (authentication bypass, CVSS 10.0). US federal agencies have deadlines of September 17 and 19 respectively.

Cisco's two exploited flaws and CISA's patch clock
#Cisco#CISA
Read next
Security

Kaspersky finds MovieReaper trojan in pirated films, C2 hidden on Solana blockchain

Security

npm Trusted Publishing Abused to Ship GHAPPIER Loader

Security

Orchid Security Delivers AI Readiness Controls With Application-Level Kill Switches

Security

Mandiant: hijacked AI coding session spread Shai-Hulud worm across ~100 repos