[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"branding":3,"analytics":7,"article-cisa-adds-seven-actively-exploited-bugs-to-its-watch-list":10,"sections":40},{"siteName":4,"siteTagline":5,"publisherName":4,"contactEmail":6},"The Revision","Tech news, decoded.","editor@therevision.news",{"gaMeasurementId":8,"adsenseClientId":9},"G-ZW2MV82GYR","ca-pub-8533917693782264",{"article":11},{"id":12,"slug":13,"title":14,"dek":15,"body_md":16,"tags_json":17,"published_at":18,"created_at":19,"updated_at":20,"status":21,"review_note":22,"review_notes":23,"image_url":22,"persona_id":22,"persona_name":22,"section":30,"tags":31,"sources":35,"feedback":39,"feedback_at":22,"cost_usd":39,"total_tokens":39},6013,"cisa-adds-seven-actively-exploited-bugs-to-its-watch-list","CISA Adds Seven Actively Exploited Bugs to Its Watch List","CISA flagged actively exploited flaws in SonicWall, Artifactory, LiteLLM, and three other tools, giving federal agencies a tight patching deadline.","The federal government's list of vulnerabilities under active attack grew by seven this week.\n\nCISA added seven vulnerabilities to its Known Exploited Vulnerabilities catalog, all confirmed to be under active exploitation. The list spans a SQL injection flaw in Sangoma's Switchvox phone system, a request-smuggling bug in the Starlette web framework, an OS command-injection issue in the Kestra orchestration tool, an authentication flaw in BerriAI's LiteLLM proxy, another authentication bug in JFrog's Artifactory, and two separate SonicWall SMA1000 flaws (a server-side request forgery and an OS command-injection bug) hitting the company's remote-access appliances. That's six products in total, with SonicWall accounting for two of the seven CVEs. CISA did not disclose who is behind the exploitation or how widely it has spread.\n\nFederal civilian agencies now have a clock running. Binding Operational Directive 26-04 requires them to prioritize patching KEV-listed flaws that hand attackers full control of an asset, and to check whether intruders already got in before the fix existed. With thousands of CVEs published every year, the catalog has become the closest thing most IT teams have to a real-time triage list.\n\nNone of this is exotic, just the usual mix of web apps, remote-access gear, and dev tooling that keeps landing on this list: a reminder that patching discipline still beats novelty when it comes to actual breaches.","[\"cisa\",\"vulnerabilities\",\"security\",\"patch-management\"]","2026-09-02T12:00:00.000Z","2026-09-02T18:41:46.797Z","2026-09-02T18:41:58.722Z","published",null,[24],{"id":25,"reviewer":26,"round":27,"reason":28,"status":29},"editor-r1","editor",1,"The dek says 'SonicWall, Artifactory, LiteLLM, and four other tools' but the body only names three additional products (Sangoma, Starlette, Kestra) — SonicWall's two CVEs are one product, not two — so fix the dek to say three other tools or list them correctly.","resolved","security",[32,33,30,34],"cisa","vulnerabilities","patch-management",[36],{"name":37,"url":38},"CISA Advisories","https:\u002F\u002Fwww.cisa.gov\u002Fnews-events\u002Falerts\u002F2026\u002F09\u002F02\u002Fcisa-adds-seven-known-exploited-vulnerabilities-catalog",0,{"sections":41},[42,47,51,56,61,66,71,76,81,86,91,96,101,106],{"name":43,"slug":44,"count":45,"latest_published_at":46},"AI","ai",3385,"2026-09-04T22:17:36.000Z",{"name":48,"slug":30,"count":49,"latest_published_at":50},"Security",565,"2026-09-05T00:03:08.000Z",{"name":52,"slug":53,"count":54,"latest_published_at":55},"Policy","policy",300,"2026-09-04T22:18:34.000Z",{"name":57,"slug":58,"count":59,"latest_published_at":60},"Deals","deals",179,"2026-06-29T20:02:07.000Z",{"name":62,"slug":63,"count":64,"latest_published_at":65},"Hardware","hardware",152,"2026-09-03T09:26:48.000Z",{"name":67,"slug":68,"count":69,"latest_published_at":70},"Consumer Tech","consumer-tech",97,"2026-09-04T15:29:18.000Z",{"name":72,"slug":73,"count":74,"latest_published_at":75},"Science","science",96,"2026-09-03T22:30:00.000Z",{"name":77,"slug":78,"count":79,"latest_published_at":80},"Software","software",73,"2026-08-18T07:51:50.000Z",{"name":82,"slug":83,"count":84,"latest_published_at":85},"Dev Tools","dev-tools",69,"2026-08-18T04:00:00.000Z",{"name":87,"slug":88,"count":89,"latest_published_at":90},"Startups","startups",54,"2026-09-04T23:36:14.000Z",{"name":92,"slug":93,"count":94,"latest_published_at":95},"Gaming","gaming",41,"2026-07-09T04:00:00.000Z",{"name":97,"slug":98,"count":99,"latest_published_at":100},"General","general",37,"2026-09-04T20:22:41.000Z",{"name":102,"slug":103,"count":104,"latest_published_at":105},"Reviews","reviews",20,"2026-06-24T12:00:01.000Z",{"name":107,"slug":108,"count":109,"latest_published_at":110},"How-To","how-to",6,"2026-06-16T09:00:00.000Z"]