<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[🚨 [CISA-2026:0423] CISA Adds One Known Exploited Vulnerability to Catalog (https:&#x2F;&#x2F;secdb.nttzen.cloud&#x2F;security-advisory&#x2F;detail&#x2F;CISA-2026:0423)]]></title><description><![CDATA[<p><img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/1f6a8.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--rotating_light" style="height:23px;width:auto;vertical-align:middle" title="🚨" alt="🚨" /> [CISA-2026:0423] CISA Adds One Known Exploited Vulnerability to Catalog (<a href="https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0423" rel="nofollow noopener"><span>https://</span><span>secdb.nttzen.cloud/security-ad</span><span>visory/detail/CISA-2026:0423</span></a>)</p><p>CISA has added one new vulnerability to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risk to the federal enterprise.</p><p><img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/26a0.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--warning" style="height:23px;width:auto;vertical-align:middle" title="⚠" alt="⚠" />️ CVE-2026-39987 (<a href="https://secdb.nttzen.cloud/cve/detail/CVE-2026-39987" rel="nofollow noopener"><span>https://</span><span>secdb.nttzen.cloud/cve/detail/</span><span>CVE-2026-39987</span></a>)<br />- Name: Marimo Remote Code Execution Vulnerability<br />- Action: Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.<br />- Known To Be Used in Ransomware Campaigns? Unknown<br />- Vendor: Marimo<br />- Product: Marimo<br />- Notes: <a href="https://github.com/marimo-team/marimo/security/advisories/GHSA-2679-6mx9-h9xc" rel="nofollow noopener"><span>https://</span><span>github.com/marimo-team/marimo/</span><span>security/advisories/GHSA-2679-6mx9-h9xc</span></a> ; <a href="https://nvd.nist.gov/vuln/detail/CVE-2026-39987" rel="nofollow noopener"><span>https://</span><span>nvd.nist.gov/vuln/detail/CVE-2</span><span>026-39987</span></a></p><p><a href="https://infosec.exchange/tags/SecDB" rel="tag">#<span>SecDB</span></a> <a href="https://infosec.exchange/tags/InfoSec" rel="tag">#<span>InfoSec</span></a> <a href="https://infosec.exchange/tags/CVE" rel="tag">#<span>CVE</span></a> <a href="https://infosec.exchange/tags/CISA_KEV" rel="tag">#<span>CISA_KEV</span></a> <a href="https://infosec.exchange/tags/cisa_20260423" rel="tag">#<span>cisa_20260423</span></a> <a href="https://infosec.exchange/tags/cisa20260423" rel="tag">#<span>cisa20260423</span></a> <a href="https://infosec.exchange/tags/cve_2026_39987" rel="tag">#<span>cve_2026_39987</span></a> <a href="https://infosec.exchange/tags/cve202639987" rel="tag">#<span>cve202639987</span></a></p>]]></description><link>https://board.circlewithadot.net/topic/c96985dd-9927-4c1e-aefe-82f195796aa5/cisa-2026-0423-cisa-adds-one-known-exploited-vulnerability-to-catalog-https-secdb.nttzen.cloud-security-advisory-detail-cisa-2026-0423</link><generator>RSS for Node</generator><lastBuildDate>Fri, 15 May 2026 07:46:17 GMT</lastBuildDate><atom:link href="https://board.circlewithadot.net/topic/c96985dd-9927-4c1e-aefe-82f195796aa5.rss" rel="self" type="application/rss+xml"/><pubDate>Thu, 23 Apr 2026 20:00:16 GMT</pubDate><ttl>60</ttl></channel></rss>