CISA added 15 CVEs to the KEV catalog in six working days, including exploited flaws in LiteLLM and Kestra — AI tooling that most asset inventories never see.
CISA issued an emergency KEV addition for CVE-2026-86218, an unauthenticated static code injection flaw in N-able N-central RMM servers actively exploited against MSP networks.