www.cisa.gov 8/21/2026, 2:03:34 AM · external

CISA KEV Lists CVE-2026-72530 TrueConf Server Code Injection Flaw

Developing story vulnerability 5 articles tracked
CVE-2026-72529 exposes TrueConf Server auth bypass on port 4307
CyberSIXT Evidence Panel Source marked as original reporting
CISA KEV Listed in KEV
Patch Patch Status Unknown

THE page provides information about the "Known Exploited Vulnerabilities Catalog" maintained by CISA to help organizations manage vulnerabilities and threat activities. It emphasizes the importance of using the catalog in vulnerability management prioritization. The catalog features a specific vulnerability, CVE-2026-72530, affecting TrueConf Server, which poses a risk through code injection enabling unauthorized remote attacks. Details include mitigation strategies, a date added, and a due date for compliance. Additional resources and formats for accessing the KEV catalog are also provided.

View full article

Article by CyberSIXT

Timeline Coverage

Swipe to explore timeline