CISA's list that day
10 July 2026
On CISA added 2 vulnerabilities to its list of exploited vulnerabilities, in iCagenda and Balbooa Forms. US federal agencies must fix them by .
Added that day
| Vulnerability | Product | Our group | Listed | Deadline | EPSS |
|---|---|---|---|---|---|
| CVE-2026-48939Unrestricted Upload of File with Dangerous Type | iCagenda iCagenda | Patch nowForensic triage required by CISA | 0.20 | ||
| CVE-2026-56291Unrestricted Upload of File with Dangerous Type | Balbooa Forms | Patch nowForensic triage required by CISA | 0.15 |