SEVEN active exploits have been detected today, including vulnerabilities in BerriAI, Kludex, Kestra OSS, JFrog Artifactory, Sangoma Switchvox, and SonicWall SMA1000. Specifically, the Cisco Nexus 9000 vulnerability (CVE-2026-20212) allows unauthenticated remote code execution with a critical CVSS score of 9.8. Affected devices include various models of Nexus 9000 switches that utilize a Silicon One ASIC.
While there is currently no evidence of exploitation, immediate action is advised, including applying software updates or implementing access control lists to mitigate risks.