CSIRTS // UNIFIED SECURITY ADVISORY FEEDSYS ● ONLINE · POWERED BY INTELFUSIONS.COM

● Daily security briefing

Wednesday, August 19, 2026

CISA added CVE-2026-64849, an MLflow server-side request forgery vulnerability, to the Known Exploited Vulnerabilities catalog on August 19th, joining multiple other actively exploited threats across critical infrastructure and enterprise software. A critical vulnerability in Citrix NetScaler ADC and Gateway (2026-010) and active threats targeting Siemens S7 Series PLCs demand immediate attention, while eight different critical CVSS 10.0 vulnerabilities were published affecting Cisco products, WordPress plugins, and embedded devices. Notable advisories also included multiple high-severity vulnerabilities in Atlassian products, Oracle WebLogic, and Cisco BroadWorks requiring prompt patching. With 3,104 CVEs published and 210 CERT/PSIRT advisories issued, this represents a typical high-volume advisory day with several items requiring urgent prioritization in SOC queues.

Last updated 03:14 UTC

CERT / PSIRT advisories
210
CVEs published
3104
Added to KEV
1
Known exploited
4

17 critical5 high2 unknownacross the day’s notable advisories and CVEs

Added to the KEV catalog

Exploitation observed in the wild — remediate first.

Notable advisories

Critical/high or exploited items from national CERTs and vendor PSIRTs.

Notable CVEs

Highest-severity CVEs published this day from the NVD and GitHub Advisory firehose — the sharpest items behind the day’s numbers.

Highest exploitation probability

EPSS (FIRST.org) estimated probability of exploitation within 30 days, among CVEs published this day.

Where the day’s advisories came from

Curated CERT and PSIRT sources — these add up to the 210 above.

plus 708 CVE records from the NVD/GHSA firehose — not counted above

Get this briefing by email. One free message every morning after 06:00 UTC — same data, zero noise, one-click unsubscribe. Subscribe. Tracking specific products instead? Watch them from any product page and get alerted only when they ship a new advisory.