chiprook
← Security
SecuritySeptember 26, 2026, 04:03

CISA adds Microsoft SharePoint and MikroTik RouterOS flaws to KEV catalog

CISA added a Microsoft SharePoint code-injection flaw (CVE-2026-65660, CVSS 8.8) and a MikroTik RouterOS SSH authentication bypass (CVE-2026-67279, CVSS 6.9) to its Known Exploited Vulnerabilities catalog. Both are actively exploited, and U.S. federal agencies must patch by September 28, 2026.

CISA adds Microsoft SharePoint and MikroTik RouterOS flaws to KEV catalog
#Microsoft#SharePoint#MikroTik#CISA
Read next
Security

CISA Adds Actively Exploited Zyxel Switch Flaw to KEV Catalog

Security

CISA adds Acronis Backup, Cisco ISE, and Google Pixel flaws to Known Exploited Vulnerabilities catalog

Security

Exposed Router Management: 8.09 Million RouterOS Assets and the 9,560 That Still Answer on SSH

Security

MikroTik patches three RouterOS flaws, including SSH auth bypass