CISA's list that day

27 January 2026

On CISA added 1 vulnerability to its list of exploited vulnerabilities: CVE-2026-24858 in Fortinet Multiple Products. US federal agencies must fix it by .

Added that day

Added that day
VulnerabilityProductOur groupListedDeadlineEPSS
CVE-2026-24858Authentication Bypass Using an Alternate Path or ChannelFortinet Multiple ProductsPatch this weekEPSS 0.860.86

Other changes that day

  1. CVE-2026-21509 Microsoft OfficeEdited: description.