In brief: CISA has added four critical, actively exploited vulnerabilities in macOS, SharePoint, vCenter and Microsoft IKE to the KEV catalog, including CVE-2026-65400 with a CVSS score of 9.8.
The US cybersecurity agency CISA added four critical vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog on Tuesday, confirming that they are already being actively exploited. Affected are Apple macOS, Microsoft SharePoint, VMware vCenter and the Microsoft IKE service.
CISA has added four vulnerabilities to the KEV catalog, citing active exploitation in the wild. One of them is CVE-2026-65400 with a CVSS score of 9.8 — a vulnerability caused by insufficient authentication in Apple macOS. The other three affected products include Microsoft SharePoint, VMware vCenter and a Microsoft IKE service; the corresponding original source references for these three flaws are not fully available at this time.
Source: thehackernews.com · Published August 19, 2026
Lumi AI News — AI-assisted curation pursuant to Art. 50 EU AI Act. Paraphrasing and classification by Lumi News Pipeline v1.8.3.