< Back to all clusters
[TECHNOLOGY] · 6 sources

started · updated

CISA adds five exploited flaws in Artifactory, ScreenConnect, and RouterOS to KEV catalog

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added five actively exploited security flaws to its Known Exploited Vulnerabilities (KEV) catalog. The vulnerabilities impact JFrog Artifactory, ConnectWise ScreenConnect, and MikroTik RouterOS.

In the JFrog Artifactory ecosystem, attackers are reportedly chaining multiple vulnerabilities, including CVE-2026-42016 and CVE-2026-42018, to achieve administrative privilege escalation. These flaws allow for unauthorized access and the creation of administrative accounts, which can be used to install backdoors and malicious plugins. Researchers have noted that exploitation often occurs even after patches have been released.

Other critical flaws include CVE-2026-84869 in ConnectWise ScreenConnect, which carries a CVSS score of 9.9 and allows unauthorized file transfers and execution, and two vulnerabilities in MikroTik RouterOS (CVE-2026-67277 and CVE-2026-86060) that can lead to kernel memory disclosure, denial-of-service, and privilege escalation.

Entities

CISA · ConnectWise · ConnectWise ScreenConnect · Hugging Face · JFrog · JFrog Artifactory · MikroTik RouterOS · OpenAI · WatchTowr · Wiz

Claims

What the coverage asserts, and how many sources carry each claim.