THE Known Exploited Vulnerabilities (KEV) Catalog, maintained by CISA, serves as an authoritative resource for vulnerabilities that have been actively exploited in the wild. It assists organizations in managing vulnerabilities within their systems and prioritizing security updates based on risk factors. The catalog includes a specific vulnerability (CVE-2026-18556) involving an authentication bypass in N-able N-central. Key actions for organizations include applying vendor mitigations and following CISA's guidance.
The catalog is available in various formats, including CSV and JSON, and users are encouraged to report any unlisted vulnerabilities.