CISA Adds One Known Exploited Vulnerability to Catalog
CISA Cybersecurity Advisories·11h·Official
CISA has added one new vulnerability to its Known Exploited Vulnerabilities (KEV) Catalog, based on evidence of active exploitation. CVE-2026-48907 Widget Factory Joomla Content Editor Improper Access Control Vulnerability This type of vulnerability is a frequent attack vector for malicious cyber actors and poses significant risks to the federal enterprise. Binding Operational Directive (BOD) 26-04: Prioritizing Security Updates Based on Risk establishes vulnerability management requirements for
Categories cybersecurity · government-security · privacy · vulnerability
Original source / advisory ↗Published
6/16/2026, 12:00:00 PM
Fetched
6/16/2026, 9:19:00 PM
Trust
official · 100/100
Language
en