THREAT OPS › Threat News › CISA Adds One Known Exploited Vulnerability to Catalog
CISA Adds One Known Exploited Vulnerability to Catalog
<p>CISA has added one new vulnerability to its <a href="https://www.cisa.gov/known-exploited-vulnerabilities-catalog">Known Exploited Vulnerabilities (KEV) Catalog</a>, based on evidence of active exploitation. </p> <ul> <li><a href="https://www.cve.org/CVERecord?id=CVE-2026-64849" target="_blank">CVE-2026-64849</a> MLflow Server-Side Request Forgery Vulnerability</li> </ul> <p>This type of
MITRE ATT&CK techniques
- VulnerabilitiesT1588.006
Indicators of compromise
- CVE-2026-64849cve
- https://www.cve.org/CVERecord?id=CVE-2026-64849url
- https://cisasurvey.gov1.qualtrics.com/jfe/form/SV_1Zwu52kgK2OYf3wurl