ON August 27, 2026, CISA added three actively exploited vulnerabilities to the KEV Catalog, affecting ownCloud, the Linux Kernel, and JFrog Artifactory. These vulnerabilities are critical, with the highest severity rated at 9.8 (Critical · CVSSv3). They allow attackers to compromise device integrity through privilege escalation, system crashes, and data corruption. System administrators are urged to apply patches immediately to mitigate the risks.
The specific vulnerabilities are CVE-2023-49105, CVE-2026-53362, and CVE-2026-66384, each exploiting different mechanisms across platforms, highlighting the urgency for organizations to update their systems.