<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:media="http://search.yahoo.com/mrss/">
  <channel>
    <title>IsItPatched — Newly exploited CVEs (CISA KEV)</title>
    <link>https://isitpatched.com/exploited</link>
    <atom:link href="https://isitpatched.com/feed/exploited.xml" rel="self" type="application/rss+xml" />
    <description>Vulnerabilities just added to CISA&apos;s Known Exploited Vulnerabilities catalog that affect software tracked by IsItPatched.</description>
    <language>en</language>
    <copyright>Compiled by IsItPatched (isitpatched.com) from NVD, CISA KEV, EPSS and endoflife.date.</copyright>
    <generator>IsItPatched (https://isitpatched.com)</generator>
    <docs>https://www.rssboard.org/rss-specification</docs>
    <ttl>15</ttl>
    <image>
      <url>https://isitpatched.com/icon-192.png</url>
      <title>IsItPatched — Newly exploited CVEs (CISA KEV)</title>
      <link>https://isitpatched.com/exploited</link>
    </image>
    <lastBuildDate>Tue, 16 Jun 2026 22:43:51 GMT</lastBuildDate>
    <item>
      <title>CVE-2026-20262 — Catalyst SD-WAN Manager (Medium, actively exploited)</title>
      <link>https://isitpatched.com/cve/CVE-2026-20262</link>
      <guid isPermaLink="true">https://isitpatched.com/cve/CVE-2026-20262</guid>
      <description>Severity: Medium (CVSS 6.5) · Path traversal · Affects: Catalyst SD-WAN Manager · EPSS 2%</description>
      <category>Medium</category>
      <enclosure url="https://isitpatched.com/og/cve/CVE-2026-20262.png" type="image/png" length="0" />
      <media:thumbnail url="https://isitpatched.com/og/cve/CVE-2026-20262.png" />
      <media:content url="https://isitpatched.com/og/cve/CVE-2026-20262.png" type="image/png" medium="image" />
      <source url="https://isitpatched.com/feed/exploited.xml">IsItPatched</source>
      <pubDate>Tue, 16 Jun 2026 15:24:47 GMT</pubDate>
    </item>
    <item>
      <title>CVE-2026-54420 — cPanel Plugin (High, actively exploited)</title>
      <link>https://isitpatched.com/cve/CVE-2026-54420</link>
      <guid isPermaLink="true">https://isitpatched.com/cve/CVE-2026-54420</guid>
      <description>Severity: High (CVSS 8.5) · CWE-61 · Affects: cPanel Plugin · EPSS 1%</description>
      <category>High</category>
      <enclosure url="https://isitpatched.com/og/cve/CVE-2026-54420.png" type="image/png" length="0" />
      <media:thumbnail url="https://isitpatched.com/og/cve/CVE-2026-54420.png" />
      <media:content url="https://isitpatched.com/og/cve/CVE-2026-54420.png" type="image/png" medium="image" />
      <source url="https://isitpatched.com/feed/exploited.xml">IsItPatched</source>
      <pubDate>Mon, 15 Jun 2026 21:29:38 GMT</pubDate>
    </item>
    <item>
      <title>CVE-2026-35273 — PeopleSoft Enterprise PeopleTools (Critical, actively exploited)</title>
      <link>https://isitpatched.com/cve/CVE-2026-35273</link>
      <guid isPermaLink="true">https://isitpatched.com/cve/CVE-2026-35273</guid>
      <description>Severity: Critical (CVSS 9.8) · Missing authentication · Affects: PeopleSoft Enterprise PeopleTools · Linked to ransomware campaigns · EPSS 1%</description>
      <category>Ransomware-linked</category>
      <enclosure url="https://isitpatched.com/og/cve/CVE-2026-35273.png" type="image/png" length="0" />
      <media:thumbnail url="https://isitpatched.com/og/cve/CVE-2026-35273.png" />
      <media:content url="https://isitpatched.com/og/cve/CVE-2026-35273.png" type="image/png" medium="image" />
      <source url="https://isitpatched.com/feed/exploited.xml">IsItPatched</source>
      <pubDate>Fri, 12 Jun 2026 20:33:25 GMT</pubDate>
    </item>
    <item>
      <title>CVE-2026-10520 — Sentry (Critical, actively exploited)</title>
      <link>https://isitpatched.com/cve/CVE-2026-10520</link>
      <guid isPermaLink="true">https://isitpatched.com/cve/CVE-2026-10520</guid>
      <description>Severity: Critical (CVSS 10) · OS command injection · Affects: Sentry · EPSS 60%</description>
      <category>Critical</category>
      <enclosure url="https://isitpatched.com/og/cve/CVE-2026-10520.png" type="image/png" length="0" />
      <media:thumbnail url="https://isitpatched.com/og/cve/CVE-2026-10520.png" />
      <media:content url="https://isitpatched.com/og/cve/CVE-2026-10520.png" type="image/png" medium="image" />
      <source url="https://isitpatched.com/feed/exploited.xml">IsItPatched</source>
      <pubDate>Fri, 12 Jun 2026 13:18:36 GMT</pubDate>
    </item>
    <item>
      <title>CVE-2026-45247 — Mirasvit Full Page Cache Warmer (Critical, actively exploited)</title>
      <link>https://isitpatched.com/cve/CVE-2026-45247</link>
      <guid isPermaLink="true">https://isitpatched.com/cve/CVE-2026-45247</guid>
      <description>Severity: Critical (CVSS 9.8) · Insecure deserialization · Affects: Mirasvit Full Page Cache Warmer · EPSS 2%</description>
      <category>Critical</category>
      <enclosure url="https://isitpatched.com/og/cve/CVE-2026-45247.png" type="image/png" length="0" />
      <media:thumbnail url="https://isitpatched.com/og/cve/CVE-2026-45247.png" />
      <media:content url="https://isitpatched.com/og/cve/CVE-2026-45247.png" type="image/png" medium="image" />
      <source url="https://isitpatched.com/feed/exploited.xml">IsItPatched</source>
      <pubDate>Fri, 12 Jun 2026 08:00:31 GMT</pubDate>
    </item>
    <item>
      <title>CVE-2026-20245 — Catalyst SD-WAN Manager (High, actively exploited)</title>
      <link>https://isitpatched.com/cve/CVE-2026-20245</link>
      <guid isPermaLink="true">https://isitpatched.com/cve/CVE-2026-20245</guid>
      <description>Severity: High (CVSS 7.8) · CWE-116 · Affects: Catalyst SD-WAN Manager · EPSS 1%</description>
      <category>High</category>
      <enclosure url="https://isitpatched.com/og/cve/CVE-2026-20245.png" type="image/png" length="0" />
      <media:thumbnail url="https://isitpatched.com/og/cve/CVE-2026-20245.png" />
      <media:content url="https://isitpatched.com/og/cve/CVE-2026-20245.png" type="image/png" medium="image" />
      <source url="https://isitpatched.com/feed/exploited.xml">IsItPatched</source>
      <pubDate>Fri, 12 Jun 2026 08:00:31 GMT</pubDate>
    </item>
    <item>
      <title>CVE-2026-42271 — LiteLLM (High, actively exploited)</title>
      <link>https://isitpatched.com/cve/CVE-2026-42271</link>
      <guid isPermaLink="true">https://isitpatched.com/cve/CVE-2026-42271</guid>
      <description>Severity: High (CVSS 8.8) · Command injection · Affects: LiteLLM · EPSS 54%</description>
      <category>High</category>
      <enclosure url="https://isitpatched.com/og/cve/CVE-2026-42271.png" type="image/png" length="0" />
      <media:thumbnail url="https://isitpatched.com/og/cve/CVE-2026-42271.png" />
      <media:content url="https://isitpatched.com/og/cve/CVE-2026-42271.png" type="image/png" medium="image" />
      <source url="https://isitpatched.com/feed/exploited.xml">IsItPatched</source>
      <pubDate>Fri, 12 Jun 2026 08:00:31 GMT</pubDate>
    </item>
    <item>
      <title>CVE-2026-7473 — EOS (Medium, actively exploited)</title>
      <link>https://isitpatched.com/cve/CVE-2026-7473</link>
      <guid isPermaLink="true">https://isitpatched.com/cve/CVE-2026-7473</guid>
      <description>Severity: Medium (CVSS 5.8) · CWE-1023 · Affects: EOS · EPSS 0%</description>
      <category>Medium</category>
      <enclosure url="https://isitpatched.com/og/cve/CVE-2026-7473.png" type="image/png" length="0" />
      <media:thumbnail url="https://isitpatched.com/og/cve/CVE-2026-7473.png" />
      <media:content url="https://isitpatched.com/og/cve/CVE-2026-7473.png" type="image/png" medium="image" />
      <source url="https://isitpatched.com/feed/exploited.xml">IsItPatched</source>
      <pubDate>Fri, 12 Jun 2026 08:00:31 GMT</pubDate>
    </item>
    <item>
      <title>CVE-2026-50751 — Check Point Gaia (Critical, actively exploited)</title>
      <link>https://isitpatched.com/cve/CVE-2026-50751</link>
      <guid isPermaLink="true">https://isitpatched.com/cve/CVE-2026-50751</guid>
      <description>Severity: Critical (CVSS 9.3) · Improper authentication · Affects: Check Point Gaia · Linked to ransomware campaigns · EPSS 6%</description>
      <category>Ransomware-linked</category>
      <enclosure url="https://isitpatched.com/og/cve/CVE-2026-50751.png" type="image/png" length="0" />
      <media:thumbnail url="https://isitpatched.com/og/cve/CVE-2026-50751.png" />
      <media:content url="https://isitpatched.com/og/cve/CVE-2026-50751.png" type="image/png" medium="image" />
      <source url="https://isitpatched.com/feed/exploited.xml">IsItPatched</source>
      <pubDate>Fri, 12 Jun 2026 08:00:31 GMT</pubDate>
    </item>
    <item>
      <title>CVE-2024-21182 — Oracle WebLogic (High, actively exploited)</title>
      <link>https://isitpatched.com/cve/CVE-2024-21182</link>
      <guid isPermaLink="true">https://isitpatched.com/cve/CVE-2024-21182</guid>
      <description>Severity: High (CVSS 7.5) · Affects: Oracle WebLogic · EPSS 48%</description>
      <category>High</category>
      <enclosure url="https://isitpatched.com/og/cve/CVE-2024-21182.png" type="image/png" length="0" />
      <media:thumbnail url="https://isitpatched.com/og/cve/CVE-2024-21182.png" />
      <media:content url="https://isitpatched.com/og/cve/CVE-2024-21182.png" type="image/png" medium="image" />
      <source url="https://isitpatched.com/feed/exploited.xml">IsItPatched</source>
      <pubDate>Fri, 12 Jun 2026 08:00:31 GMT</pubDate>
    </item>
    <item>
      <title>CVE-2026-0257 — Palo Alto PAN-OS (Critical, actively exploited)</title>
      <link>https://isitpatched.com/cve/CVE-2026-0257</link>
      <guid isPermaLink="true">https://isitpatched.com/cve/CVE-2026-0257</guid>
      <description>Severity: Critical (CVSS 9.1) · CWE-565 · Affects: Palo Alto PAN-OS · EPSS 19%</description>
      <category>Critical</category>
      <enclosure url="https://isitpatched.com/og/cve/CVE-2026-0257.png" type="image/png" length="0" />
      <media:thumbnail url="https://isitpatched.com/og/cve/CVE-2026-0257.png" />
      <media:content url="https://isitpatched.com/og/cve/CVE-2026-0257.png" type="image/png" medium="image" />
      <source url="https://isitpatched.com/feed/exploited.xml">IsItPatched</source>
      <pubDate>Fri, 29 May 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>CVE-2026-48027 — Nx Console (Critical, actively exploited)</title>
      <link>https://isitpatched.com/cve/CVE-2026-48027</link>
      <guid isPermaLink="true">https://isitpatched.com/cve/CVE-2026-48027</guid>
      <description>Severity: Critical (CVSS 9.8) · CWE-506 · Affects: Nx Console · Linked to ransomware campaigns · EPSS 1%</description>
      <category>Ransomware-linked</category>
      <enclosure url="https://isitpatched.com/og/cve/CVE-2026-48027.png" type="image/png" length="0" />
      <media:thumbnail url="https://isitpatched.com/og/cve/CVE-2026-48027.png" />
      <media:content url="https://isitpatched.com/og/cve/CVE-2026-48027.png" type="image/png" medium="image" />
      <source url="https://isitpatched.com/feed/exploited.xml">IsItPatched</source>
      <pubDate>Wed, 27 May 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>CVE-2026-48172 — cPanel Plugin (Critical, actively exploited)</title>
      <link>https://isitpatched.com/cve/CVE-2026-48172</link>
      <guid isPermaLink="true">https://isitpatched.com/cve/CVE-2026-48172</guid>
      <description>Severity: Critical (CVSS 9.8) · CWE-266 · Affects: cPanel Plugin · EPSS 1%</description>
      <category>Critical</category>
      <enclosure url="https://isitpatched.com/og/cve/CVE-2026-48172.png" type="image/png" length="0" />
      <media:thumbnail url="https://isitpatched.com/og/cve/CVE-2026-48172.png" />
      <media:content url="https://isitpatched.com/og/cve/CVE-2026-48172.png" type="image/png" medium="image" />
      <source url="https://isitpatched.com/feed/exploited.xml">IsItPatched</source>
      <pubDate>Tue, 26 May 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>CVE-2026-9082 — Drupal (Critical, actively exploited)</title>
      <link>https://isitpatched.com/cve/CVE-2026-9082</link>
      <guid isPermaLink="true">https://isitpatched.com/cve/CVE-2026-9082</guid>
      <description>Severity: Critical (CVSS 9.8) · SQL injection · Affects: Drupal · EPSS 34%</description>
      <category>Critical</category>
      <enclosure url="https://isitpatched.com/og/cve/CVE-2026-9082.png" type="image/png" length="0" />
      <media:thumbnail url="https://isitpatched.com/og/cve/CVE-2026-9082.png" />
      <media:content url="https://isitpatched.com/og/cve/CVE-2026-9082.png" type="image/png" medium="image" />
      <source url="https://isitpatched.com/feed/exploited.xml">IsItPatched</source>
      <pubDate>Fri, 22 May 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>CVE-2026-34926 — Apex One (Medium, actively exploited)</title>
      <link>https://isitpatched.com/cve/CVE-2026-34926</link>
      <guid isPermaLink="true">https://isitpatched.com/cve/CVE-2026-34926</guid>
      <description>Severity: Medium (CVSS 6.7) · Path traversal · Affects: Apex One · EPSS 1%</description>
      <category>Medium</category>
      <enclosure url="https://isitpatched.com/og/cve/CVE-2026-34926.png" type="image/png" length="0" />
      <media:thumbnail url="https://isitpatched.com/og/cve/CVE-2026-34926.png" />
      <media:content url="https://isitpatched.com/og/cve/CVE-2026-34926.png" type="image/png" medium="image" />
      <source url="https://isitpatched.com/feed/exploited.xml">IsItPatched</source>
      <pubDate>Thu, 21 May 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>CVE-2025-34291 — Langflow (High, actively exploited)</title>
      <link>https://isitpatched.com/cve/CVE-2025-34291</link>
      <guid isPermaLink="true">https://isitpatched.com/cve/CVE-2025-34291</guid>
      <description>Severity: High (CVSS 8.8) · CWE-346 · Affects: Langflow · EPSS 25%</description>
      <category>High</category>
      <enclosure url="https://isitpatched.com/og/cve/CVE-2025-34291.png" type="image/png" length="0" />
      <media:thumbnail url="https://isitpatched.com/og/cve/CVE-2025-34291.png" />
      <media:content url="https://isitpatched.com/og/cve/CVE-2025-34291.png" type="image/png" medium="image" />
      <source url="https://isitpatched.com/feed/exploited.xml">IsItPatched</source>
      <pubDate>Thu, 21 May 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>CVE-2026-41091 — Malware Protection Engine (High, actively exploited)</title>
      <link>https://isitpatched.com/cve/CVE-2026-41091</link>
      <guid isPermaLink="true">https://isitpatched.com/cve/CVE-2026-41091</guid>
      <description>Severity: High (CVSS 7.8) · CWE-59 · Affects: Malware Protection Engine · EPSS 1%</description>
      <category>High</category>
      <enclosure url="https://isitpatched.com/og/cve/CVE-2026-41091.png" type="image/png" length="0" />
      <media:thumbnail url="https://isitpatched.com/og/cve/CVE-2026-41091.png" />
      <media:content url="https://isitpatched.com/og/cve/CVE-2026-41091.png" type="image/png" medium="image" />
      <source url="https://isitpatched.com/feed/exploited.xml">IsItPatched</source>
      <pubDate>Wed, 20 May 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>CVE-2009-3459 — Acrobat and Reader (High, actively exploited)</title>
      <link>https://isitpatched.com/cve/CVE-2009-3459</link>
      <guid isPermaLink="true">https://isitpatched.com/cve/CVE-2009-3459</guid>
      <description>Severity: High (CVSS 8.8) · Memory corruption · Affects: Acrobat and Reader · EPSS 86%</description>
      <category>High</category>
      <enclosure url="https://isitpatched.com/og/cve/CVE-2009-3459.png" type="image/png" length="0" />
      <media:thumbnail url="https://isitpatched.com/og/cve/CVE-2009-3459.png" />
      <media:content url="https://isitpatched.com/og/cve/CVE-2009-3459.png" type="image/png" medium="image" />
      <source url="https://isitpatched.com/feed/exploited.xml">IsItPatched</source>
      <pubDate>Wed, 20 May 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>CVE-2009-1537 — DirectX (High, actively exploited)</title>
      <link>https://isitpatched.com/cve/CVE-2009-1537</link>
      <guid isPermaLink="true">https://isitpatched.com/cve/CVE-2009-1537</guid>
      <description>Severity: High (CVSS 8.8) · CWE-158 · Affects: DirectX · EPSS 51%</description>
      <category>High</category>
      <enclosure url="https://isitpatched.com/og/cve/CVE-2009-1537.png" type="image/png" length="0" />
      <media:thumbnail url="https://isitpatched.com/og/cve/CVE-2009-1537.png" />
      <media:content url="https://isitpatched.com/og/cve/CVE-2009-1537.png" type="image/png" medium="image" />
      <source url="https://isitpatched.com/feed/exploited.xml">IsItPatched</source>
      <pubDate>Wed, 20 May 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>CVE-2010-0806 — Internet Explorer (High, actively exploited)</title>
      <link>https://isitpatched.com/cve/CVE-2010-0806</link>
      <guid isPermaLink="true">https://isitpatched.com/cve/CVE-2010-0806</guid>
      <description>Severity: High (CVSS 8.8) · CWE-399 · Affects: Internet Explorer · EPSS 82%</description>
      <category>High</category>
      <enclosure url="https://isitpatched.com/og/cve/CVE-2010-0806.png" type="image/png" length="0" />
      <media:thumbnail url="https://isitpatched.com/og/cve/CVE-2010-0806.png" />
      <media:content url="https://isitpatched.com/og/cve/CVE-2010-0806.png" type="image/png" medium="image" />
      <source url="https://isitpatched.com/feed/exploited.xml">IsItPatched</source>
      <pubDate>Wed, 20 May 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>CVE-2010-0249 — Internet Explorer (High, actively exploited)</title>
      <link>https://isitpatched.com/cve/CVE-2010-0249</link>
      <guid isPermaLink="true">https://isitpatched.com/cve/CVE-2010-0249</guid>
      <description>Severity: High (CVSS 8.8) · Use-after-free · Affects: Internet Explorer · EPSS 92%</description>
      <category>High</category>
      <enclosure url="https://isitpatched.com/og/cve/CVE-2010-0249.png" type="image/png" length="0" />
      <media:thumbnail url="https://isitpatched.com/og/cve/CVE-2010-0249.png" />
      <media:content url="https://isitpatched.com/og/cve/CVE-2010-0249.png" type="image/png" medium="image" />
      <source url="https://isitpatched.com/feed/exploited.xml">IsItPatched</source>
      <pubDate>Wed, 20 May 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>CVE-2026-42897 — Microsoft Exchange Server (High, actively exploited)</title>
      <link>https://isitpatched.com/cve/CVE-2026-42897</link>
      <guid isPermaLink="true">https://isitpatched.com/cve/CVE-2026-42897</guid>
      <description>Severity: High (CVSS 8.1) · Cross-site scripting (XSS) · Affects: Microsoft Exchange Server · EPSS 3%</description>
      <category>High</category>
      <enclosure url="https://isitpatched.com/og/cve/CVE-2026-42897.png" type="image/png" length="0" />
      <media:thumbnail url="https://isitpatched.com/og/cve/CVE-2026-42897.png" />
      <media:content url="https://isitpatched.com/og/cve/CVE-2026-42897.png" type="image/png" medium="image" />
      <source url="https://isitpatched.com/feed/exploited.xml">IsItPatched</source>
      <pubDate>Fri, 15 May 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>CVE-2026-20182 — Catalyst SD-WAN Manager (Critical, actively exploited)</title>
      <link>https://isitpatched.com/cve/CVE-2026-20182</link>
      <guid isPermaLink="true">https://isitpatched.com/cve/CVE-2026-20182</guid>
      <description>Severity: Critical (CVSS 10) · Improper authentication · Affects: Catalyst SD-WAN Manager · EPSS 78%</description>
      <category>Critical</category>
      <enclosure url="https://isitpatched.com/og/cve/CVE-2026-20182.png" type="image/png" length="0" />
      <media:thumbnail url="https://isitpatched.com/og/cve/CVE-2026-20182.png" />
      <media:content url="https://isitpatched.com/og/cve/CVE-2026-20182.png" type="image/png" medium="image" />
      <source url="https://isitpatched.com/feed/exploited.xml">IsItPatched</source>
      <pubDate>Thu, 14 May 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>CVE-2026-42208 — LiteLLM (Critical, actively exploited)</title>
      <link>https://isitpatched.com/cve/CVE-2026-42208</link>
      <guid isPermaLink="true">https://isitpatched.com/cve/CVE-2026-42208</guid>
      <description>Severity: Critical (CVSS 9.8) · SQL injection · Affects: LiteLLM · EPSS 93%</description>
      <category>Critical</category>
      <enclosure url="https://isitpatched.com/og/cve/CVE-2026-42208.png" type="image/png" length="0" />
      <media:thumbnail url="https://isitpatched.com/og/cve/CVE-2026-42208.png" />
      <media:content url="https://isitpatched.com/og/cve/CVE-2026-42208.png" type="image/png" medium="image" />
      <source url="https://isitpatched.com/feed/exploited.xml">IsItPatched</source>
      <pubDate>Fri, 08 May 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>CVE-2026-6973 — Endpoint Manager Mobile (EPMM) (High, actively exploited)</title>
      <link>https://isitpatched.com/cve/CVE-2026-6973</link>
      <guid isPermaLink="true">https://isitpatched.com/cve/CVE-2026-6973</guid>
      <description>Severity: High (CVSS 7.2) · Improper input validation · Affects: Endpoint Manager Mobile (EPMM) · EPSS 20%</description>
      <category>High</category>
      <enclosure url="https://isitpatched.com/og/cve/CVE-2026-6973.png" type="image/png" length="0" />
      <media:thumbnail url="https://isitpatched.com/og/cve/CVE-2026-6973.png" />
      <media:content url="https://isitpatched.com/og/cve/CVE-2026-6973.png" type="image/png" medium="image" />
      <source url="https://isitpatched.com/feed/exploited.xml">IsItPatched</source>
      <pubDate>Thu, 07 May 2026 00:00:00 GMT</pubDate>
    </item>
  </channel>
</rss>