Site icon VMVirtualMachine.com

Critical macOS, SharePoint, vCenter, and Microsoft IKE Flaws Under Active Exploitation

Critical macOS, SharePoint, vCenter, and Microsoft IKE Flaws Under Active Exploitation

By The Hacker News
Publication Date: 2026-08-19 11:01:00

Ravie LakshmananAug 19, 2026Vulnerability / Ransomware

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Tuesday added four critical vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog, stating they are being exploited in the wild.

The shortcomings added to the KEV catalog are listed below –

  • CVE-2026-65400 (CVSS score: 9.8) – An improper authentication vulnerability impacting Apple macOS that could allow an attacker on the network to authenticate to Screen Sharing without valid credentials.
  • CVE-2026-55040 (CVSS score: 9.1) – A weak authentication vulnerability impacting Microsoft SharePoint that could allow an unauthorized attacker to bypass a security feature over a network.
  • CVE-2026-59310 (CVSS score: 9.8) – A path traversal vulnerability in Broadcom VMware vCenter that could allow a threat actor with network access to vCenter to execute arbitrary code.
  • CVE-2026-33824 (CVSS score: 9.8) – A double free vulnerability in …

Exit mobile version