Jump to the main content block

【Vulnerability Alert】CISA Added 10 Known Exploited Vulnerabilities to the KEV Catalog (2026/08/31-2026/09/06)

publish date : 2026-09-30 update date : 2026-10-02

Source: Ministry of education information & communication security contingency platform

"" "" ""

Publication Number TACERT-ANA-2026091411094040 Publication Time 2026-09-14 11:48:41
Incident Type ANA-Vulnerability Alert Discovery Time 2026-09-14 11:48:41
Impact Level Low  
[Subject]
【Vulnerability Alert】CISA Added 10 Known Exploited Vulnerabilities to the KEV Catalog (2026/08/31-2026/09/06)
[Content]

Forwarded from TWCERTCC Cybersecurity Alert TWCERTCC-200-202609-00000009

【CVE-2026-82078】PaperCut NG/MF Unsafe Reflection Vulnerability (CVSS v3.1: 9.1)
【Whether exploited by ransomware: Unknown】PaperCut NG/MF contains an Unsafe Reflection vulnerability, which may allow an attacker to manipulate system configuration parameters and execute arbitrary Java bytecode located on the application classpath within the security context of the PaperCut server process.

【CVE-2026-81578】PaperCut NG/MF Missing Authentication for Critical Function Vulnerability (CVSS v3.1: 9.8)
【Whether exploited by ransomware: Unknown】PaperCut NG/MF contains a Missing Authentication for Critical Function vulnerability, which allows an unauthenticated remote attacker to modify specific system configurations.

【CVE-2026-59822】BerriAI LiteLLM Improper Authentication Vulnerability (CVSS v3.1: 8.2)
【Whether exploited by ransomware: Unknown】The MCP Streamable HTTP endpoint in BerriAI LiteLLM contains an Improper Authentication vulnerability, which may allow an unauthenticated attacker to use an arbitrary Bearer token to establish an authenticated MCP session.

【CVE-2026-48710】Kludex Starlette HTTP Request/Response Smuggling Vulnerability (CVSS v3.1: 6.5)
【Whether exploited by ransomware: Unknown】Kludex Starlette contains an HTTP Request/Response Smuggling vulnerability, which may allow an attacker to inject a path into the Host field and place it before the actual path. When the system's authentication mechanism relies on the reconstructed URL path, this may result in issues such as authentication bypass.

【CVE-2026-49869】Kestra OSS OS Command Injection Vulnerability (CVSS v3.1: 10.0)
【Whether exploited by ransomware: Unknown】Kestra OSS contains an OS Command Injection vulnerability, which may allow an unauthenticated remote attacker to create and execute arbitrary workflows without requiring credentials.

【CVE-2026-82329】JFrog Artifactory Improper Authentication Vulnerability (CVSS v3.1: 9.8)
【Whether exploited by ransomware: Unknown】JFrog Artifactory contains an Improper Authentication vulnerability. Under the default configuration, an unauthenticated attacker with network access may be able to obtain administrator privileges.

【CVE-2026-9586】Sangoma Switchvox SQL Injection Vulnerability (CVSS v3.1: 9.8)
【Whether exploited by ransomware: Unknown】Sangoma Switchvox contains an SQL Injection vulnerability, which allows an unauthenticated remote attacker to execute arbitrary SQL statements against the backend PostgreSQL database by sending a single specially crafted request, including performing database operations and remote code execution.

【CVE-2026-83548】SonicWall SMA1000 Appliances Server-Side Request Forgery Vulnerability (CVSS v3.1: 10.0)
【Whether exploited by ransomware: Unknown】SonicWall SMA1000 Appliances contain a Server-Side Request Forgery vulnerability, which may allow an unauthenticated remote attacker to gain unauthorized access to sensitive functions and perform unauthorized operations.

【CVE-2026-83549】SonicWall SMA1000 Appliances OS Command Injection Vulnerability (CVSS v3.1: 7.8)
【Whether exploited by ransomware: Unknown】SonicWall SMA1000 Appliances contain an OS Command Injection vulnerability, which may allow an authenticated remote attacker with administrator privileges to execute arbitrary operating system commands, thereby resulting in remote code execution.

【CVE-2026-85046】Google Chromium V8 Type Confusion Vulnerability (CVSS v3.1: 8.8)
【Whether exploited by ransomware: Unknown】Google Chromium V8 contains a Type Confusion vulnerability. A remote attacker may execute arbitrary code within the sandbox through a specially crafted HTML webpage. This vulnerability may affect multiple Chromium-based web browsers, including but not limited to Google Chrome, Microsoft Edge, and Opera.

Information Sharing Level: WHITE (the intelligence content is information that may be publicly disclosed)

[Affected Platform]

【CVE-2026-82078】Please refer to the affected versions listed by the official vendor: https://www.papercut.com/kb/Main/security-bulletin-27-aug-2026-urgent-security-advisory/

【CVE-2026-81578】Please refer to the affected versions listed by the official vendor: https://www.papercut.com/kb/Main/security-bulletin-27-aug-2026-urgent-security-advisory/

【CVE-2026-59822】Please refer to the affected versions listed by the official vendor: https://github.com/BerriAI/litellm/security/advisories/GHSA-7488-6r32-c95q

【CVE-2026-48710】Please refer to the affected versions listed by the official vendor: https://github.com/Kludex/starlette/security/advisories/GHSA-86qp-5c8j-p5mr

【CVE-2026-49869】Please refer to the affected versions listed by the official vendor: https://github.com/kestra-io/kestra/security/advisories/GHSA-5vc5-wxxq-3fjx

【CVE-2026-82329】Please refer to the affected versions listed by the official vendor: https://docs.jfrog.com/releases/docs/jfrog-security-advisories

【CVE-2026-9586】Please refer to the affected versions listed by the official vendor: https://sangomakb.atlassian.net/wiki/spaces/Switchvox/pages/1802371073/Switchvox+-+Release+Notes+Version+8.4.0.2+July+14+2026

【CVE-2026-83548】Please refer to the affected versions listed by the official vendor: https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2026-0016

【CVE-2026-83549】Please refer to the affected versions listed by the official vendor: https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2026-0016

【CVE-2026-85046】Please refer to the affected versions listed by the official vendor: https://chromereleases.googleblog.com/2026/09/stable-channel-update-for-desktop_01882797386.html

 

[Recommended Actions]

【CVE-2026-82078】The official vendor has released a remediation update for the vulnerability. Please update to the relevant version: https://www.papercut.com/kb/Main/security-bulletin-27-aug-2026-urgent-security-advisory/

【CVE-2026-81578】The official vendor has released a remediation update for the vulnerability. Please update to the relevant version: https://www.papercut.com/kb/Main/security-bulletin-27-aug-2026-urgent-security-advisory/

【CVE-2026-59822】The official vendor has released a remediation update for the vulnerability. Please update to the relevant version: https://github.com/BerriAI/litellm/security/advisories/GHSA-7488-6r32-c95q

【CVE-2026-48710】The official vendor has released a remediation update for the vulnerability. Please update to the relevant version: https://github.com/Kludex/starlette/security/advisories/GHSA-86qp-5c8j-p5mr

【CVE-2026-49869】The official vendor has released a remediation update for the vulnerability. Please update to the relevant version: https://github.com/kestra-io/kestra/security/advisories/GHSA-5vc5-wxxq-3fjx

【CVE-2026-82329】The official vendor has released a remediation update for the vulnerability. Please update to the relevant version: https://docs.jfrog.com/releases/docs/jfrog-security-advisories

【CVE-2026-9586】The official vendor has released a remediation update for the vulnerability. Please update to the relevant version: https://sangomakb.atlassian.net/wiki/spaces/Switchvox/pages/1802371073/Switchvox+-+Release+Notes+Version+8.4.0.2+July+14+2026

【CVE-2026-83548】The official vendor has released a remediation update for the vulnerability. Please update to the relevant version: https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2026-0016

【CVE-2026-83549】The official vendor has released a remediation update for the vulnerability. Please update to the relevant version: https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2026-0016

【CVE-2026-85046】The official vendor has released a remediation update for the vulnerability. Please update to the relevant version: https://chromereleases.googleblog.com/2026/09/stable-channel-update-for-desktop_01882797386.html

[Reference]

(This notification is for informational purposes only and does not constitute a cybersecurity incident).
If you have questions or suggestions regarding this notification, please feel free to contact us.
Ministry of education information & communication security contingency platform
Website: https://info.cert.tanet.edu.tw/
Phone: +886-7-5250211
Internet Phone: 98400000
E-Mail: service@cert.tanet.edu.tw
Organizer: Computer Center
Click Num: