Research · Sector

Exploited Vulnerabilities in Government

39 confirmed exploited · 6 ransomware-linked · as of 2026-08-31

39 vulnerabilities we’ve flagged as relevant to Government are confirmed exploited in the wild (CISA KEV), and 6 (15%) are tied to ransomware.

Ransomware in Government, exploitation trends, and the full list — below.

Exploited Government-relevant vulnerabilities

CVEProductKEV added
CVE-2026-53362Linux Kernel2026-08-27
CVE-2026-66384JFrog Artifactory2026-08-27
CVE-2026-21962Oracle HTTP Server And Oracle Weblogic Server Proxy Plug-In2026-08-24
CVE-2026-59310Broadcom VMware VCenter2026-08-18
CVE-2026-65400Apple MacOS2026-08-18
CVE-2026-55040Microsoft SharePoint2026-08-18
CVE-2026-20349Cisco Secure Firewall Adaptive Security Appliance (ASA) And Secure Firewall Threat Defense (FTD)2026-08-11
CVE-2026-68820Microsoft Windows Ancillary Function Driver For WinSock2026-08-11
CVE-2026-34486Apache Tomcat2026-08-04
CVE-2026-18556N-Able N-Central2026-08-04
CVE-2026-18577N-Able N-Central2026-08-03
CVE-2026-0770Langflow2026-07-21
CVE-2026-63030WordPress Core2026-07-21
CVE-2026-60137WordPress Core2026-07-21
CVE-2026-46817Oracle E-Business Suite2026-07-15
CVE-2026-56164Microsoft SharePoint Server2026-07-14
CVE-2026-56155Microsoft Active Directory Federation Services2026-07-14
CVE-2008-4128Cisco IOS2026-07-13
CVE-2026-45659Microsoft SharePoint Server2026-07-01ransomware
CVE-2026-20245Cisco Catalyst SD-WAN Manager2026-06-09
CVE-2026-50751Check Point Security Gateway2026-06-08ransomware
CVE-2025-48595Android Framework2026-06-02
CVE-2022-0492Linux Kernel2026-06-02
CVE-2024-21182Oracle WebLogic Server2026-06-01
CVE-2026-0257Palo Alto Networks PAN-OS2026-05-29ransomware
CVE-2026-42897Microsoft Exchange Server2026-05-15
CVE-2026-42208BerriAI LiteLLM2026-05-08
CVE-2026-6973Ivanti Endpoint Manager Mobile (EPMM)2026-05-07
CVE-2026-0300Palo Alto Networks PAN-OS2026-05-06
CVE-2026-31431Linux Kernel2026-05-01
CVE-2026-41940WebPros CPanel & WHM And WP2 (WordPress Squared)2026-04-30ransomware
CVE-2024-7399Samsung MagicINFO 9 Server2026-04-24
CVE-2026-32201Microsoft SharePoint Server2026-04-14
CVE-2026-34621Adobe Acrobat And Reader2026-04-13
CVE-2026-35616Fortinet FortiClient EMS2026-04-06
CVE-2026-3055Citrix NetScaler2026-03-30
CVE-2025-53521F5 BIG-IP2026-03-27
CVE-2025-55182Meta React Server Components2025-12-05ransomware
CVE-2025-8088RARLAB WinRAR2025-08-12ransomware

How we count

This counts vulnerabilities that (a) defend.network has editorially tagged as relevant to the Government sector in our vulnerability reports, and (b) CISA has confirmed exploited in the wild (in the KEV catalog). The sector tag reflects our editorial judgment about relevance, not a claim of exclusive impact — most vulnerabilities affect multiple sectors. Product names come from NVD/CISA (authoritative). Rows our reconciliation gate flags as mis-attributed are excluded. “Ransomware” uses CISA’s knownRansomwareUse flag. As of 2026-08-31.

Other sectors: Finance · Healthcare · Technology  ·  State of Exploited Vulnerabilities

🤖 Generated deterministically from our editorial sector tags reconciled against the CISA KEV catalog. Free to cite with attribution to defend.network.

Track newly exploited vulnerabilities

Free daily briefing on CVEs added to CISA KEV and exploited in the wild.