CISA's list that day

24 April 2026

On CISA added 4 vulnerabilities to its list of exploited vulnerabilities, in Samsung MagicINFO 9 Server, SimpleHelp and D-Link DIR-823X. US federal agencies must fix them by .

Added that day

Added that day
VulnerabilityProductOur groupListedDeadlineEPSS
CVE-2024-57726Missing AuthorizationSimpleHelp SimpleHelpPatch nowRansomware use, listed within a year0.67
CVE-2024-57728Path TraversalSimpleHelp SimpleHelpPatch nowRansomware use, listed within a year0.65
CVE-2024-7399Path TraversalSamsung MagicINFO 9 ServerPatch this weekMetasploit module; EPSS 0.920.92
CVE-2025-29635Command InjectionD-Link DIR-823XPatch this weekEPSS 0.880.88