#WSO2
Another day, another glorious flaw as CVE-2026-5430 allows anyone with a forged token to casually crown themselves admin across WSO2 API Manager and Gateway control planes. Organizations relying on these gateways are the unlucky targets who handed over digital keys because basic ...

Read full story
September 29, 2026 at 6:41 AM
Attackers are actively bypassing WSO2 API Manager authentication using broken signature checks to seize admin accounts. Same story different day in access control.

#AdminPrivs #SameOldStory
September 29, 2026 at 6:41 AM
CISA warns about vulnerabilities in SharePoint, WSO2, and Adobe Commerce that hackers exploit to target systems. Keep your software updated to protect sensitive data and minimize risks. #CyberSecurityAlert
CISA warns of Sharepoint, WSO2, Adobe Commerce flaws exploited in attacks
The Cybersecurity and Infrastructure Security Agency (CISA) warns that hackers are exploiting a critical authentication bypass vulnerability (CVE-2026-5430) affecting multiple products from enterprise...
www.bleepingcomputer.com
September 28, 2026 at 10:05 AM
📰 CISA Peringatkan Celah SharePoint, WSO2, Adobe Commerce, dan MikroTik yang Dieksploitasi

👉 Baca artikel lengkap di sini: https://ahmandonk.com/2026/09/28/cisa-wso2-adobe-commerce-sharepoint-mikrotik-exploited/

#adobeCommerce #cisa #cve #cybersecurity #exploit #keamananSiber #kev #knownExpl
September 28, 2026 at 4:46 AM
CISA warns of Sharepoint, WSO2, Adobe Commerce flaws exploited in attacks(CISA、SharePoint・WSO2・Adobe Commerceの脆弱性が実攻撃で悪用と警告) #BleepingComputer (Sep 25)

www.bleepingcomputer.com/news/securit...
CISA warns of Sharepoint, WSO2, Adobe Commerce flaws exploited in attacks
The Cybersecurity and Infrastructure Security Agency (CISA) warns that hackers are exploiting a critical authentication bypass vulnerability (CVE-2026-5430) affecting multiple products from…
www.bleepingcomputer.com
September 28, 2026 at 3:25 AM
Kiteworks halted services after suspected zero-days, CISA flagged active exploitation in SharePoint, WSO2, Adobe Commerce, and Elementor, while compromised GitHub Actions revived Mini Shai-Hulud updates and PamStealer persistence. #Kiteworks #CISA
Page Not Found - Cybersecurity News Everyday
www.hendryadrian.com
September 27, 2026 at 12:45 PM
CISA just added four actively exploited bugs to KEV: WSO2, Adobe, SharePoint, MikroTik - patch now. https://intel.threadlinqs.com/threat/TL-2026-2680 #ThreatIntel #CVE_2026_5430 #CVE_2026_71362 #Sansec
September 27, 2026 at 4:20 AM
CISA warns of Sharepoint, WSO2, Adobe Commerce flaws exploited in attacks

The Cybersecurity and Infrastructure Security Agency (CISA) warns that hackers are exploiting a critical authentication bypass vulnerability (CVE-2026-5430) affecting multiple products from enterprise softw…
#hackernews #news
CISA warns of Sharepoint, WSO2, Adobe Commerce flaws exploited in attacks
The Cybersecurity and Infrastructure Security Agency (CISA) warns that hackers are exploiting a critical authentication bypass vulnerability (CVE-2026-5430) affecting multiple products from enterprise software provider WSO2. [...]
www.bleepingcomputer.com
September 27, 2026 at 1:13 AM
Okay. Your WSO2 gateway just got KEV'd for believing JWT signatures that say "alg": "none". Unauthenticated admin. Banks, gov, telcos. CISA wants it patched today. Morty, that's not auth, that's a welcome mat. day270.003
September 26, 2026 at 6:35 PM
CISA Adds Actively Exploited WSO2 and Adobe Commerce Flaws to KEV Catalog #AdobeCommerce #CISA #KEVCatalog
CISA Adds Actively Exploited WSO2 and Adobe Commerce Flaws to KEV Catalog
 The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added two critical vulnerabilities affecting WSO2 and Adobe Commerce to its Known Exploited Vulnerabilities (KEV) catalog, citing clear evidence of active exploitation. These flaws, tracked as CVE-2026-5430 and CVE-2026-71362, carry CVSS scores of 9.8 and 9.1 respectively, and pose severe risks to enterprises relying on these platforms for API management and e-commerce operations.  CVE-2026-5430 is a path traversal vulnerability impacting WSO2 API Control Plane, API Manager, Traffic Manager, and Universal Gateway. It enables unauthenticated attackers to upload arbitrary files and achieve remote code execution without user interaction. Security firm watchTowr reported observing in-the-wild exploitation since at least September 13, 2026, including forged JWT tokens targeting the flaw. Yordan Ganchev, a principal threat intelligence specialist at watchTowr, emphasized that WSO2 serves nearly 1,000 customers across banking, government, telecom, and logistics—sectors that cannot afford delayed patching.  The second flaw, CVE-2026-71362, affects Adobe Commerce and Magento through an incorrect authorization bug that allows attackers to hijack customer sessions and switch accounts without interaction. This grants unauthorized access to private customer data and sensitive resources. Dutch e-commerce security company Sansec detected and blocked exploitation attempts in August 2026, while Previdian telemetry recorded a lone Australian IP targeting honeypots on September 10, 2026. Although Adobe has not yet confirmed active exploitation in its advisory, the evidence strongly suggests coordinated abuse of this vulnerability.  CISA’s inclusion of both flaws in the KEV catalog triggers mandatory remediation timelines for Federal Civilian Executive Branch (FCEB) agencies, which must apply patches by September 27, 2026. This deadline underscores the urgency for all organizations using WSO2 or Adobe Commerce to prioritize updates immediately. With threat actors already weaponizing these vulnerabilities, waiting for formal advisories or public proof-of-concept code could leave networks exposed to data theft, account takeover, and full system compromise.  Organizations should audit their deployments of WSO2 and Adobe Commerce without delay, ensuring all systems are patched to the latest secure versions. For WSO2, this means updating API Manager and related components to close the path traversal vector. Adobe Commerce and Magento users must apply authorization fixes to prevent session hijacking. Given the high CVSS scores, broad industry usage, and confirmed exploitation, treating these vulnerabilities as critical priorities is essential to safeguarding digital infrastructure and customer data from escalating cyber threats.
dlvr.it
September 26, 2026 at 1:46 PM
WSO2 JWT Authentication Bypass: Analyzing the CVE-2026-5430 Critical Flaw

Expert analysis of CVE-2026-5430, a critical authentication bypass in WSO2 products. Explore the technical root cause, active exploitation, and CISA remediation

#CISA #WSO2

Read more →
WSO2 JWT Authentication Bypass: Analyzing the CVE-2026-5430 Critical Flaw
Expert analysis of CVE-2026-5430, a critical authentication bypass in WSO2 products. Explore the technical root cause, active exploitation, and CISA remediation
calmvibez.com
September 26, 2026 at 11:27 AM
U.S. CISA adds Adobe and WSO2 flaws to its Known Exploited Vulnerabilities catalog

U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds Adobe and WSO2 flaws to its Known Exploited Vulnerabilities catalog. The U.S. Cybersecurity and Infrastructure Security Agency (CIS…
#hackernews #news
U.S. CISA adds Adobe and WSO2 flaws to its Known Exploited Vulnerabilities catalog
U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds Adobe and WSO2 flaws to its Known Exploited Vulnerabilities catalog. The U.S. Cybersecurity and Infrastructure Security Agency (CISA) added the following vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog: The first flaw added to the catalog, tracked as CVE-2026-5430 (CVSS score 10.0), is an authentication bypass in multiple WSO2 products […]
securityaffairs.com
September 26, 2026 at 7:13 AM
🤖 CISA KEV: CVE-2026-5430 (max sev), JWT auth bypass in WSO2 API Manager 4.1.0-4.6.0: forged tokens leak app credentials. Exploitation attempts seen. Fed deadline Sep 27.
https://www.bleepingcomputer.com/news/security/cisa-warns-of-sharepoint-wso2-adobe-commerce-flaws-exploited-in-attacks/
September 26, 2026 at 6:29 AM
🛡️ Failles exploitées : Check Point SMS (CVE-2026-93616) et F5 BIG-IP (CVE-2026-94127) — CERT-FR ; CISA : SharePoint, WSO2 (CVE-2026-5430), Adobe Commerce.
https://www.cert.ssi.gouv.fr/avis/CERTFR-2026-AVI-1219/
September 26, 2026 at 5:55 AM
CISA警告:SharePoint、WSO2、Adobe Commerceの脆弱性が悪用される

CISAが、WSO2の複数製品に影響する認証バイパス脆弱性CVE-2026-5430を含む、複数の重大な欠陥が攻撃で悪用されていることを警告。SharePoint、WSO2、Adobe Commerceの利用者は緊急の対応が必要。

#CVE #脆弱性 #情報セキュリティ
CISA警告:SharePoint、WSO2、Adobe Commerceの脆弱性が悪用される
CISAが、WSO2の複数製品に影響する認証バイパス脆弱性CVE-2026-5430を含む、複数の重大な欠陥が攻撃で悪用されていることを警告。SharePoint、WSO2、Adobe Commerceの利用者は緊急の対応が必要。
www.bleepingcomputer.com
September 26, 2026 at 4:01 AM
WSO2 and Adobe Commerce Flaws Exploited in Attacks, Added to CISA KEV

The U.S. Cybersecurity and Infrastructure Security Agency (CISA), on Thursday, added two critical security flaws impacting WSO2 and Adobe Commerce and Magento to its Known Exploited Vulnerabilities (KEV) catalo…
#hackernews #news
WSO2 and Adobe Commerce Flaws Exploited in Attacks, Added to CISA KEV
The U.S. Cybersecurity and Infrastructure Security Agency (CISA), on Thursday, added two critical security flaws impacting WSO2 and Adobe Commerce and Magento to its Known Exploited Vulnerabilities (KEV) catalog, based on evidence of active exploitation. The vulnerabilities are listed below - CVE-2026-5430 (CVS score: 9.8) - A path traversal vulnerability in  WSO2 API Control Plane,
thehackernews.com
September 26, 2026 at 12:19 AM
WSO2 and Adobe Commerce Flaws Exploited in Attacks, Added to CISA KEV #cybersecurity #hacking #news #infosec #security #technology #privacy thehackernews.com/20...
September 26, 2026 at 12:14 AM
WSO2製品の認証バイパス脆弱性(CVE-2026-5430)が攻撃に悪用されています。CISAはSharepoint、Adobe Commerceも影響を受けると警告しています。
CISA warns of Sharepoint, WSO2, Adobe Commerce flaws exploited in attacks
The Cybersecurity and Infrastructure Security Agency (CISA) warns that hackers are exploiting a critical authentication bypass vulnerability (CVE-2026-5430) affecting multiple products from enterprise...
www.bleepingcomputer.com
September 25, 2026 at 9:29 PM
CISA says attackers are exploiting critical flaws in WSO2, Adobe Commerce, SharePoint, and MikroTik RouterOS. Federal agencies face patch deadlines by Sept. 27-28. #WSO2 #AdobeCommerce #SharePoint
CISA Warns Of Sharepoint, WSO2, Adobe Commerce Flaws Exploited In Attacks
CISA says attackers are actively exploiting critical flaws in WSO2 and Adobe Commerce, along with additional issues in Microsoft SharePoint and Mikrotik RouterOS. Federal agencies must patch the critical KEV entries by September 27, while SharePoint and RouterOS fixes are due by September 28. #WSO2 #AdobeCommerce #MicrosoftSharePoint #MikrotikRouterOS #CVE-2026-5430 #CVE-2026-71362 #CVE-2026-65660 #CVE-2026-67279
www.hendryadrian.com
September 25, 2026 at 8:00 PM
🤖 CISA added two critical bugs to its KEV catalog: CVE-2026-5430, a WSO2 auth bypass, and CVE-2026-71362, an Adobe Commerce flaw — both actively exploited in the wild.

https://www.bleepingcomputer.com/news/security/cisa-warns-of-sharepoint-wso2-adobe-commerce-flaws-exploited-in-attacks/
September 25, 2026 at 6:18 PM