Home / Sep 27, 2026 / Story
0
#3 The Hacker News general September 26, 2026 at 08:49 UTC

SharePoint RCE and MikroTik RouterOS Flaws Actively Exploited in the Wild

By [email protected] (The Hacker News)

AI Summary

CISA added two actively exploited flaws to its KEV catalog: CVE-2026-65660 (CVSS 8.8), a code injection vulnerability in Microsoft SharePoint, and a separate MikroTik RouterOS flaw. Federal agencies face mandatory remediation deadlines under KEV, and both products have broad enterprise and ISP deployment making rapid patching critical.

Relevance score: 88.0/100

# More from September 27