← Back to Feed

CISA Adds Two Known Exploited Vulnerabilities to Catalog

CVE-2025-68686CVE-2026-16812

July 23, 2026 · CISA (US-CERT) · Severity: HIGH

CISA added two new vulnerabilities to its Known Exploited Vulnerabilities catalog: CVE-2025-68686 affecting Fortinet FortiOS and CVE-2026-16812 affecting Arista VeloCloud, both with confirmed active exploitation.

Key Takeaways

  • CISA added CVE-2025-68686 (Fortinet FortiOS) and CVE-2026-16812 (Arista VeloCloud) to the KEV catalog
  • Both vulnerabilities have evidence of active exploitation in the wild
  • Federal enterprises and organizations using affected products must prioritize patching
☕ Buy a Coffee