Signal

CISA flags active exploitation of critical SolarWinds, Ivanti, and Workspace One vulnerabilities

Evidence first: scan the strongest sources, then decide whether to go deeper.

Published 2026-03-09 18:48 UTCUpdated 2026-03-10 13:50 UTC
rss
cveexploitssecurity_advisoriesincident_response
Source links open
Source links and full evidence are open here. Archive history, compare-over-time, alerts, exports, API, integrations, and workflow are paid.
No card needed for the free brief.
Evidence trail (top sources)
top sources (4 domains)domains are deduped. counts indicate coverage, not truth.
4 top sources shown
CISA shortens patch deadline for critical Ivanti, SolarWinds bugs
The Record (Recorded Future News) · News · therecord.media · 2026-03-10 13:50 UTC
Recent Ivanti Endpoint Manager Flaw Exploited in Attacks
SecurityWeek · News · securityweek.com · 2026-03-10 11:51 UTC
SolarWinds security advisory (AV25-613) – Update 1
Canadian Centre for Cyber Security - Alerts · News · cyber.gc.ca · 2026-03-09 18:48 UTC
Overview

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added several high-severity vulnerabilities affecting SolarWinds Web Help Desk, Ivanti Endpoint Manager, and VMware Workspace One to its Known Exploited Vulnerabilities (KEV) catalog.

Entities
SolarWindsIvantiVMwareWorkspace OneCanadian Centre for Cyber SecurityCybersecurity and Infrastructure Security Agency (CISA)
Score total
1.49
Momentum 24h
4
Posts
4
Origins
4
Source types
1
Duplicate ratio
0%
Why now
  • CISA's recent KEV catalog update reflects ongoing active exploitation in the wild.
  • Federal agencies have been given shortened deadlines to patch critical flaws, increasing urgency.
  • Multiple advisories from trusted cybersecurity organizations emphasize immediate action.
Why it matters
  • Active exploitation of these vulnerabilities poses significant risk to organizations using affected products.
  • Accelerated patch deadlines highlight the urgency for federal agencies and others to mitigate potential breaches.
  • Awareness and timely patching can prevent exploitation and reduce incident response costs.
LLM analysis
Topic mix: lowPromo risk: lowSource quality: high
Recurring claims
  • CISA added critical vulnerabilities in SolarWinds, Ivanti, and Workspace One to its Known Exploited Vulnerabilities catalog due to active exploitation.
  • CISA shortened patch deadlines for federal agencies to urgently address the critical SolarWinds Web Help Desk vulnerability CVE-2025-26399.
How sources frame it
  • The Hacker News: neutral
  • SecurityWeek: neutral
  • Canadian Centre For Cyber Security: neutral
  • The Record (Recorded Future News): neutral
Consolidated multiple reports on CISA's KEV updates and patch deadline changes for critical vulnerabilities in SolarWinds, Ivanti, and Workspace One.
All evidence
All evidence
CISA shortens patch deadline for critical Ivanti, SolarWinds bugs
The Record (Recorded Future News) · therecord.media · 2026-03-10 13:50 UTC
Recent Ivanti Endpoint Manager Flaw Exploited in Attacks
SecurityWeek · securityweek.com · 2026-03-10 11:51 UTC
CISA Flags SolarWinds, Ivanti, and Workspace One Vulnerabilities as Actively Exploited
The Hacker News · thehackernews.com · 2026-03-10 06:17 UTC
SolarWinds security advisory (AV25-613) – Update 1
Canadian Centre for Cyber Security - Alerts · cyber.gc.ca · 2026-03-09 18:48 UTC
Show filters & breakdown
Posts loaded: 0Publishers: 4Origin domains: 4Duplicates: -
Showing 4 / 0
Top publishers (this list)
  • The Record (Recorded Future News) (1)
  • SecurityWeek (1)
  • The Hacker News (1)
  • Canadian Centre for Cyber Security - Alerts (1)
Top origin domains (this list)
  • therecord.media (1)
  • securityweek.com (1)
  • thehackernews.com (1)
  • cyber.gc.ca (1)