← Back to Feed
CISA Adds Two Known Exploited Vulnerabilities to Catalog
CVE-2025-68686CVE-2026-16812
July 23, 2026 · CISA (US-CERT) · Severity: HIGH
CISA added two new vulnerabilities to its Known Exploited Vulnerabilities catalog: CVE-2025-68686 affecting Fortinet FortiOS and CVE-2026-16812 affecting Arista VeloCloud, both with confirmed active exploitation.
Key Takeaways
- CISA added CVE-2025-68686 (Fortinet FortiOS) and CVE-2026-16812 (Arista VeloCloud) to the KEV catalog
- Both vulnerabilities have evidence of active exploitation in the wild
- Federal enterprises and organizations using affected products must prioritize patching