CISA Adds Cisco, Chrome, and Arista Flaws to KEV Catalog Amid Active Exploitation
CISA has added three newly exploited vulnerabilities to its KEV catalog, impacting Cisco, Google Chrome, and Arista Networks. These vulnerabilities – one in Cisco SD-WAN Manager, another in Chrome’s V8 engine, and a third in Arista EOS – have been actively exploited. The disclosures and subsequent guidance highlight the importance of timely patching and mitigation strategies to prevent potential compromise.
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) responded to reports of active exploitation by adding three critical vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog. The first, CVE-2026-20245, affects Cisco Catalyst SD-WAN Manager, allowing authenticated local attackers to execute arbitrary commands. The second, CVE-2026-11645, is a remote code execution vulnerability within Google Chrome’s V8 engine, potentially exploitable through crafted HTML pages. Finally, CVE-2026-7473, found in Arista EOS, allows for the processing of unexpected tunnel traffic if a specific configuration is in place.
