CISA's list that day

17 February 2026

On CISA added 4 vulnerabilities to its list of exploited vulnerabilities, in Microsoft Windows, Synacor Zimbra Collaboration Suite, TeamT5 ThreatSonar Anti-Ransomware and 1 other product. US federal agencies must fix them by .

Added that day

Added that day
VulnerabilityProductOur groupListedDeadlineEPSS
CVE-2008-0015Video ActiveX Control Remote Code ExecutionMicrosoft WindowsPatch this weekMetasploit module; EPSS 0.77; verified Exploit-DB entry0.77
CVE-2020-7796(ZCS) Server-Side Request ForgerySynacor Zimbra Collaboration SuitePatch this weekEPSS 0.840.84
CVE-2026-2441CSS Use-After-FreeGoogle ChromiumPatch this weekEPSS 0.550.55
CVE-2024-7694Unrestricted Upload of File with Dangerous TypeTeamT5 ThreatSonar Anti-RansomwarePatch soon0.02