CISA adds exploited SharePoint and MikroTik RouterOS flaws to KEV
CISA added CVE-2026-65660, a Microsoft SharePoint code-injection vulnerability, and CVE-2026-67279, a MikroTik RouterOS vulnerability, to its Known Exploited Vulnerabilities catalog based on evidence of active exploitation. The agency encourages organizations to prioritize remediation of KEV-listed flaws; its binding directive applies to federal civilian agencies.
Why it matters Federal civilian security teams must weigh these findings against asset exposure and impact: the directive prioritizes KEV-listed flaws on publicly exposed assets where exploitation grants total control, rather than treating every affected asset equally.
US Certs Alerts ↗