CISA Adds 5 Actively Exploited Artifactory, ScreenConnect, and RouterOS Flaws to KEV
What happened
CISA added five actively exploited vulnerabilities in JFrog Artifactory, ConnectWise ScreenConnect, and MikroTik RouterOS to its Known Exploited Vulnerabilities catalog. Attackers are chaining the two Artifactory flaws with a third bug to seize administrative control of self-hosted servers, where they deploy malicious Groovy plugins and Rust-based backdoors. The ScreenConnect flaw allows unauthorized file execution on client systems, while the RouterOS vulnerabilities enable unauthenticated kernel memory disclosure and privilege escalation.
Why it ranks #1
CISA added five actively exploited vulnerabilities in JFrog Artifactory, ConnectWise ScreenConnect, and MikroTik RouterOS to its Known Exploited Vulnerabilities catalog.
Who should care
CISOs and security leaders, Identity and access teams, IT and platform operations, SOC and incident response teams
- Impact
- high
- Urgency
- near-term
- Confidence
- high
- Scope
- enterprise
- Status
- actively exploited