CISA Adds Two New Known Exploited Vulnerabilities to KEV Catalog
CISA has added CVE-2026-42271 (BerriAI LiteLLM command injection) and CVE-2026-50751 (Check Point Security Gateway authentication bypass) to its Known Exploited Vulnerabilities catalog based on active exploitation evidence. These vulnerabilities represent significant risks and CISA recommends all organizations prioritize remediation as part of vulnerability management practices.
Why it matters in Western Canada: Check Point Security Gateways are commonly deployed in Canadian financial institutions, healthcare systems, and energy sector organizations. Organizations using these products or LiteLLM-based AI tools should assess exposure and apply patches urgently.
CVEs: CVE-2026-42271, CVE-2026-50751
Summary generated from the original advisory. Read the full source: cisa-advisories
- Source
- https://www.cisa.gov/news-events/alerts/2026/06/08/cisa-adds-two-known-exploited-vulnerabilities-catalog
- CVEs
- CVE-2026-42271, CVE-2026-50751
- Tags
- kev-catalog, active-exploitation, cisa, check-point, command-injection
- Provenance
- mask2-ti-pipeline (AI-assisted, human-reviewable)