THE Known Exploited Vulnerabilities (KEV) Catalog, maintained by CISA, serves as an authoritative resource to assist organizations in managing vulnerabilities and addressing cybersecurity threats. The catalog includes details on vulnerabilities exploited in the wild and encourages organizations to integrate it into their vulnerability management frameworks.
A recent entry, CVE-2026-72529, pertains to TrueConf Server, which has a critical authentication vulnerability allowing unauthorized remote access via TCP port 4307. Users are advised to implement vendor mitigations and follow CISA's guidance on security updates. The catalog can be accessed in various formats, including CSV and JSON.