piyokango[verified]@piyokangoActive Exploitation
CISA added two CVEs (CVE-2021-22175 and CVE-2026-22769) to its catalog of known exploited vulnerabilities, offering technical details, severity scores, and links to vendor patches or remediation guides.
Machina Record[verified]@MachinaRecordActive Exploitation
The news roundup highlights several new CVEs, including one listed in CISA’s Known Exploited Vulnerabilities catalog, indicating that the vulnerability is actively being exploited, while also providing some technical details of the flaws.
キタきつね[verified]@foxbookActive Exploitation
CISA added two known exploited vulnerabilities to its catalog: a GitLab SSRF flaw and a Dell RecoverPoint hardcoded credential issue, but did not provide exploit details or patches.
ThreatSynop[verified]@ThreatSynopActive Exploitation
CISA added CVE‑2021‑22175 and CVE‑2026‑22769 to its KEV catalog after confirming active exploitation, urging organizations to apply patches immediately.
CISA Cyber@CISACyberActive Exploitation
The tweet announces that CVE-2021-22175 and CVE-2026-22769 are listed in the DHS Known Exploited Vulnerabilities Catalog and recommends applying mitigations to protect organizations.
iototsecnews@iototsecnewsActive Exploitation
CISA has added CVE‑2021‑22175 and CVE‑2026‑22769 to its KEV catalog, noting that both allow unauthenticated attackers to gain internal network or root access, and urges teams to exercise caution.
CTIWatch@ctiwatchcloudActive Exploitation
CVE‑2021‑22175, a high‑severity SSRF flaw in GitLab (CVSS 9.8), is confirmed to be actively exploited in the wild.
404🌐LABS@404LABSxPatch
The tweet highlights that a patch for CVE‑2021‑22175 is due today, while also reporting active exploitation of QakBot C2, blacklisting of CobaltStrike certificates, and Russian APT activity targeting messaging apps.