ctipilot.ch

CISA Known Exploited Vulnerabilities Catalog

cisa-kev · A · active

https://www.cisa.gov/known-exploited-vulnerabilities-catalog

vulnsactive-breakinglang: enfetch failures: 0quiet periods: 0last fetch: 2026-07-18

Authoritative for actively-exploited vulns with federal remediation deadlines. WebFetch is reliably HTTP 403 on this host (transport-side block on the routine UA, ongoing since 2026-05-06; re-confirmed 2026-05-08). REQUIRED FETCH METHOD for both main agent AND every sub-agent: `python3 tools/fetch_source.py cisa-kev` returns the full KEV JSON catalog. Do NOT call WebFetch on cisa.gov; treat the 403 as a transport block — it never demotes the source. | 2026-06-20 full audit (v2.62): live=Y, drill=Y. FETCH → api: python3 tools/fetch_source.py cisa-kev (full KEV JSON catalog, each entry is a drillable CVE record). AVOID: Do NOT WebFetch cisa.gov — reliably 403s the routine UA. The api subcommand is the only supported path.. | 2026-07-05 admiralty audit: A (primary-authority) — CISA KEV, authoritative exploited-vuln catalog; api fetch clean and current. Status stays active.

Cited in 32 entries

Citation cadence

Citation days per ISO week (11 weeks of coverage span, total 21).