Search
For "kev" across CVEs, vendor advisories, threat actors, IOCs, security research, and news.
Vulnerabilities CISA has confirmed are being actively exploited. Patch on CISA's mandated due-date timeline.
CISA BOD 26-04: Frequently asked questions about the new risk-based patching directive
CISA issued BOD 26-04, which replaces BOD 22-01 with a four-variable vulnerability prioritization model requiring federal agencies to patch the most dangerous vulnerabilities in as few as three days. Key takeaways BOD 26-04 replaces
CVE-2026-10520, CVE-2026-10523 - Multiple critical vulnerabilities affecting Ivanti Sentry
Overview On June 9, 2026, Ivanti published a security advisory for two critical vulnerabilities affecting Ivanti Sentry (formerly known as MobileIron Sentry), which per the vendor website is an "in-line gateway that manages, encrypts, and s
CVE-2026-10520 · CVE-2026-10523 · CVE-2023-38035 · CVE-2020-15505