← Incidents
INCIDENT 282Exploited vulnerabilityHIGH CONFIDENCESourced
CVE-2022-0995 added to CISA KEV: Linux Kernel Out-of-Bounds Write Vulnerability
<p>CISA has added three new vulnerabilities to its <a href="https://www.cisa.gov/known-exploited-vulnerabilities-catalog">Known Exploited Vulnerabilities (KEV) Catalog</a>, based on evidence of active exploitation.</p> <div class="ListContainerWrapper SCXW183571888 BCX8"> <ul> <li><a href="https://www.cve.org/CVERecord?id=CVE-2023-49105" target="_blank">CVE-2023-49105</a> ownCloud Improper Authentication Vulnerability</li> <li><a href="https://www.cve.org/CVERecord?id=CVE-2026-53362" target="_blank">CVE-2026-53362</a> Linux Kernel Unspecified Vulnerability</li> <li><a href="https://www.cve.or…
Last evidence update
27 AUG 2026 · 12:00 UTC
Source count
4
Status
high confidence
GovernmentCVE-2022-0995CVE-2026-53362CVE-2023-49105CVE-2026-66384
Observation history
How this record has evolved as evidence accumulated.
27 AUG · 05:21 UTC
Initial report
27 AUG · 05:21 UTC
Second independent source
27 AUG · 05:21 UTC
Confidence upgraded
27 AUG · 05:21 UTC
Status changed
28 AUG · 05:27 UTC
Second independent source
28 AUG · 05:27 UTC
Related CVE identified (CVE-2026-53362)
28 AUG · 05:27 UTC
Second independent source
28 AUG · 05:27 UTC
Summary updated from new evidence
28 AUG · 05:27 UTC
Related CVE identified (CVE-2026-66384)
Evidence
Related incidents
INCIDENT 303 · CVE-2026-66384 added to CISA KEV: JFrog Artifactory Improper Limitation of a Pathname to a Restricted Directory VulnerabilityINCIDENT 302 · CVE-2023-49105 added to CISA KEV: ownCloud Improper Authentication VulnerabilityINCIDENT 280 · CVE-2021-23758 added to CISA KEV: Ajax.NET Professional Deserialization of Untrusted Data Vulnerability