CISA's list that day
14 April 2026
On CISA added 2 vulnerabilities to its list of exploited vulnerabilities, in Microsoft Office and Microsoft SharePoint Server. US federal agencies must fix them by .
Added that day
| Vulnerability | Product | Our group | Listed | Deadline | EPSS |
|---|---|---|---|---|---|
| CVE-2009-0238Remote Code Execution | Microsoft Office | Patch soon | 0.43 | ||
| CVE-2026-32201Improper Input Validation | Microsoft SharePoint Server | Patch soon | 0.43 |