CISA Adds Actively Exploited iCagenda and Balbooa Forms Vulnerabilities to KEV Catalog
381/69 Monday, July 13, 2026 CISA has added two vulnerabilities to its Known Exploited Vulnerabilities (KEV) Catalog after finding evidence that they have been actively exploited in attacks. The vulnerabilities are CVE-2026-48939 in iCagenda and CVE-2026-56291 in Balbooa Forms, both of which are Joomla extensions and could allow attackers to upload malicious files to affected […]
