Enterprise IT Support β€’ Bangkok & Nationwide

Technology newsroom

CISA Issues Urgent Alert! 4 Critical Vulnerabilities in macOS, SharePoint, vCenter Actively Exploited 🚨

CISA has added 4 critical vulnerabilities affecting macOS, SharePoint, vCenter, and Microsoft IKE to its KEV catalog, confirming that these vulnerabilities are actively being exploited by hackers. System administrators are urged to apply patches immediately.

Edited by SyncTech Solution Published Source Original source
CISA Issues Urgent Alert! 4 Critical Vulnerabilities in macOS, SharePoint, vCenter Actively Exploited 🚨

πŸ“Œ Key Highlights:
- CISA has added 4 critical vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog, meaning they are currently being actively exploited.
- These vulnerabilities affect widely used enterprise products, including Apple macOS, Microsoft SharePoint, VMware vCenter, and Microsoft IKE.
- System administrators and organizations using these software products should update security patches as urgently as possible to prevent system breaches.

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued an urgent warning, officially adding 4 critical security vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog. This addition confirms that these vulnerabilities are not merely theoretical but are being actively exploited by hackers in real-world attacks.

The inclusion of a vulnerability in the KEV catalog serves as the highest-level alert for system administrators worldwide, as it signifies a high risk of being targeted at any moment. Organizations, particularly U.S. federal agencies, are mandated to install corrective patches as quickly as possible within CISA's specified timelines, a practice private sector organizations should also adopt.

🚨 Details of the 4 Added Vulnerabilities:

🍎 CVE-2026-65400 (CVSS 9.8): Improper Authentication vulnerability on Apple macOS, which could allow malicious actors to access systems or critical data without proper authentication.

πŸ“„ CVE-2026-65401: Remote Code Execution (RCE) vulnerability on Microsoft SharePoint Server, which is extremely dangerous as it allows hackers to remotely execute malicious commands on the server, potentially leading to full system compromise.

☁️ CVE-2026-65402: Command Injection vulnerability on VMware vCenter Server, a popular virtualization management platform. This vulnerability allows attackers to inject and execute their own commands on the vCenter server.

🌐 CVE-2026-65403: Denial-of-Service (DoS) vulnerability on Microsoft Internet Key Exchange (IKE) Protocol Extensions, which could cause network systems or VPN services using this protocol to cease functioning and become unavailable.

SyncTech Solution advises system administrators using these products to promptly check for and install the latest security patches. Do not delay, as attacks are actively occurring, and the potential damage is more severe than anticipated.

πŸ’¬ Has your organization already checked and updated patches for these vulnerabilities? Share your prevention strategies here!

Let’s build what’s next

Better IT starts with understanding your business.

Tell our engineers what you need and receive an initial recommendation at no cost.