Home / Sep 27, 2026 / Story
0
#7 BleepingComputer general September 25, 2026 at 17:24 UTC

CISA warns of Sharepoint, WSO2, Adobe Commerce flaws exploited in attacks

By Bill Toulas

AI Summary

CISA is warning of active exploitation of CVE-2026-5430, a critical authentication bypass in WSO2 enterprise products, alongside separately exploited flaws in Microsoft SharePoint and Adobe Commerce. WSO2 is widely used as an API gateway and identity provider, meaning exploitation could enable lateral movement into enterprise identity infrastructure.

Relevance score: 81.0/100

# More from September 27