{"ok":true,"source":"CISA KEV","updated":"2026-07-27T19:00:15.8632Z","items":[{"n":"1,600+","t":"software flaws are confirmed to be under active attack right now — meaning criminals are already using them to break into real organizations","s":"CISA Known Exploited Vulnerabilities catalog"},{"n":"26","t":"of those were flagged as actively-exploited in just the last 30 days, so the list of live threats grows almost every week","s":"U.S. government's official exploited-flaw watchlist"},{"n":"1 in 5","t":"of these actively-exploited flaws is known to be used in ransomware attacks — the kind that lock up a business until it pays","s":"CISA Known Exploited Vulnerabilities catalog"},{"n":"Live","t":"attackers are actively exploiting a security hole in Fortinet FortiOS — if your business uses it, applying the vendor's update is urgent","s":"CVE-2025-68686 · Fortinet FortiOS Exposure of Sensitive Information to an Unauthorized Actor Vulnerability"},{"n":"Live","t":"attackers are actively exploiting a security hole in Arista VeloCloud Orchestrator — if your business uses it, applying the vendor's update is urgent","s":"CVE-2026-16812 · Arista VeloCloud Orchestrator On-Prem OS Command Injection Vulnerability"},{"n":"Live","t":"attackers are actively exploiting a security hole in Check Point SmartConsole — if your business uses it, applying the vendor's update is urgent","s":"CVE-2026-16232 · Check Point SmartConsole Improper Authentication Vulnerability"}]}