ELEVATED 2 min read 16 Jun 2026

Watchlist: CISA KEV Adds Cisco Catalyst SD-WAN Manager CVE-2026-20262

Condensed watchlist digest of 38 findings under continued review, each summarising the exposure validation and fixed-version checks to confirm for affected deployments.

Key findings
01
Update: CISA KEV Adds Cisco Catalyst SD-WAN Manager CVE-2026-20262
MEDIUM
Action: Review exposure and confirm fixed versions.
02
Update: CISA KEV Adds LiteSpeed cPanel Plugin CVE-2026-54420
MEDIUM
Action: Review exposure and confirm fixed versions.
03
Update: OpenStack Ironic CVE-2026-46447 Boot Script Injection Before 35.0.2
MEDIUM
Action: Review exposure for CVE-2026-46447 and confirm fixed versions.
04
Update: Spring AI CVE-2026-47835 Vector-Store Metadata Query Injection
MEDIUM
Action: Review exposure and confirm fixed versions.
05
Update: Flowise CVE-2026-46476 Cross-Workspace Template Takeover
MEDIUM
Action: Review exposure and confirm fixed versions.
06
Update: Adobe ColdFusion CVE-2026-47930 Read/Write Bypass Patch Work
MEDIUM
Action: Review exposure and confirm fixed versions.
07
Update: Mattermost Server CERTFR-2026-AVI-0752 Routes Nine MMSA Fixes
MEDIUM
Action: Review exposure and confirm fixed versions.
08
Update: UNC6508 Targets Medical, Academic, And Military Research Networks
MEDIUM
Action: Review exposure and confirm fixed versions.
09
Update: MSRC Chromium/Edge CVE-2026-11629 Through CVE-2026-11700 Patch Batch
MEDIUM
Action: Review exposure for CVE-2026-11629, CVE-2026-11700 and confirm fixed versions.
10
Update: React Router CVE-2026-53663 Document Method CSRF Review
MEDIUM
Action: Review exposure for CVE-2026-53663 and confirm fixed versions.
11
Update: Oracle Critical Security Patch Update June 2026 Owner Routing
MEDIUM
Action: Review exposure and confirm fixed versions.
12
Update: vLLM CVE-2026-41523 Code Execution Advisory
MEDIUM
Action: Review exposure and confirm fixed versions.
13
Update: Grafana CVE-2026-11769 Privilege Escalation Advisory
MEDIUM
Action: Review exposure and confirm fixed versions.
14
Update: Automation Control-Plane CVE-2026-53830 And CVE-2026-53836
MEDIUM
Action: Review exposure and confirm fixed versions.
15
Update: Devolutions Remote Desktop Manager CVE-2026-12161 And CVE-2026-12162
MEDIUM
Action: Review exposure and confirm fixed versions.
16
Update: BigBlueButton WID-SEC-2026-1916 Multiple Vulnerabilities
MEDIUM
Action: Review exposure and confirm fixed versions.
17
Update: OPNsense CVE-2026-53582 Information Disclosure
MEDIUM
Action: Review exposure and confirm fixed versions.
18
Update: Red Hat OpenStack CVE-2026-54421 Information Disclosure
MEDIUM
Action: Review exposure and confirm fixed versions.
19
Update: Redmine CVE-2026-1836 Information Disclosure
MEDIUM
Action: Review exposure and confirm fixed versions.
20
Update: Aqua Security Trivy WID-SEC-2026-1924 File-Manipulation Issue
MEDIUM
Action: Review exposure and confirm fixed versions.

Watchlist: CISA KEV Adds Cisco Catalyst SD-WAN Manager CVE-2026-20262

Update: CISA KEV Adds Cisco Catalyst SD-WAN Manager CVE-2026-20262

Action: Review exposure and confirm fixed versions.

Update: CISA KEV Adds LiteSpeed cPanel Plugin CVE-2026-54420

Action: Review exposure and confirm fixed versions.

Update: OpenStack Ironic CVE-2026-46447 Boot Script Injection Before 35.0.2

Action: Review exposure for CVE-2026-46447 and confirm fixed versions.

Update: Spring AI CVE-2026-47835 Vector-Store Metadata Query Injection

Action: Review exposure and confirm fixed versions.

Update: Flowise CVE-2026-46476 Cross-Workspace Template Takeover

Action: Review exposure and confirm fixed versions.

Update: Adobe ColdFusion CVE-2026-47930 Read/Write Bypass Patch Work

Action: Review exposure and confirm fixed versions.

Update: Mattermost Server CERTFR-2026-AVI-0752 Routes Nine MMSA Fixes

Action: Review exposure and confirm fixed versions.

Update: UNC6508 Targets Medical, Academic, And Military Research Networks

Action: Review exposure and confirm fixed versions.

Update: MSRC Chromium/Edge CVE-2026-11629 Through CVE-2026-11700 Patch Batch

Action: Review exposure for CVE-2026-11629, CVE-2026-11700 and confirm fixed versions.

Update: React Router CVE-2026-53663 Document Method CSRF Review

Action: Review exposure for CVE-2026-53663 and confirm fixed versions.

Update: Oracle Critical Security Patch Update June 2026 Owner Routing

Action: Review exposure and confirm fixed versions.

Update: vLLM CVE-2026-41523 Code Execution Advisory

Action: Review exposure and confirm fixed versions.

Update: Grafana CVE-2026-11769 Privilege Escalation Advisory

Action: Review exposure and confirm fixed versions.

Update: Automation Control-Plane CVE-2026-53830 And CVE-2026-53836

Action: Review exposure and confirm fixed versions.

Update: Devolutions Remote Desktop Manager CVE-2026-12161 And CVE-2026-12162

Action: Review exposure and confirm fixed versions.

Update: BigBlueButton WID-SEC-2026-1916 Multiple Vulnerabilities

Action: Review exposure and confirm fixed versions.

Update: OPNsense CVE-2026-53582 Information Disclosure

Action: Review exposure and confirm fixed versions.

Update: Red Hat OpenStack CVE-2026-54421 Information Disclosure

Action: Review exposure and confirm fixed versions.

Update: Redmine CVE-2026-1836 Information Disclosure

Action: Review exposure and confirm fixed versions.

Update: Aqua Security Trivy WID-SEC-2026-1924 File-Manipulation Issue

Action: Review exposure and confirm fixed versions.

Update: Snipe-IT WID-SEC-2026-1918 GHSA Batch

Action: Review exposure and confirm fixed versions.

Update: Perl GD CVE-2026-11526 Command Injection And File Overwrite

Action: Review exposure and confirm fixed versions.

Update: Angular CVE-2026-54267 Hydration DOM Clobbering And Cache Poisoning

Action: Review exposure and confirm fixed versions.

Update: MSRC Chromium/Edge CVE-2026-12008 Through CVE-2026-12019 Patch Batch

Action: Review exposure and confirm fixed versions.

Update: aws-cdk-lib CVE-2026-11417 NodejsFunction Bundling Command Injection

Action: Review exposure and confirm fixed versions.

Update: PyJWT/PyJWKClient CVE Cluster Affects Token Validation And SSRF Paths

Action: Review exposure and confirm fixed versions.

Update: DOMPurify IN_PLACE CVE Cluster Affects Sanitisation Bypass Paths

Action: Review exposure and confirm fixed versions.

Update: Embedded Web Interface CVE-2026-42364 And CVE-2026-42365

Action: Review exposure and confirm fixed versions.

Update: QNAP Operating-System CVE Cluster Includes Command-Injection Issues

Action: Review exposure and confirm fixed versions.

Update: Chromium: CVE-2026-11631 Use after free in Aura CVE-2026-11631

Action: Review exposure for CVE-2026-11631 and confirm fixed versions.

Update: Chromium: CVE-2026-11639 Use after free in Compositing CVE-2026-11639

Action: Review exposure and confirm fixed versions.

Update: Chromium: CVE-2026-11632 Use after free in TabStrip CVE-2026-11632

Action: Review exposure and confirm fixed versions.

Update: Chromium: CVE-2026-11637 Use after free in Views CVE-2026-11637

Action: Review exposure and confirm fixed versions.

Update: Chromium: CVE-2026-11633 Use after free in Bluetooth CVE-2026-11633

Action: Review exposure and confirm fixed versions.

Update: Chromium: CVE-2026-11635 Use after free in Bluetooth CVE-2026-11635

Action: Review exposure and confirm fixed versions.

Update: Chromium: CVE-2026-11630 Use after free in File Input CVE-2026-11630

Action: Review exposure and confirm fixed versions.

Update: Chromium: CVE-2026-11634 Use after free in Gamepad CVE-2026-11634

Action: Review exposure and confirm fixed versions.

Update: Chromium: CVE-2026-11636 Use after free in Autofill CVE-2026-11636

Action: Review exposure and confirm fixed versions.

cve-2026-11629cve-2026-11769cve-2026-12161cve-2026-1836cve-2026-20262cve-2026-41523cve-2026-46447cve-2026-46476cve-2026-47835cve-2026-47930

Act on this brief

Map detection coverage gaps for the techniques above, or generate Sigma rules from the named CVEs.