The Containment Era is here. →Explore

Executive Summary

On June 9, 2026, the Cybersecurity and Infrastructure Security Agency (CISA) added three new vulnerabilities to its Known Exploited Vulnerabilities (KEV) Catalog, indicating active exploitation in the wild. The vulnerabilities include CVE-2026-7473 affecting Arista's Extensible Operating System, CVE-2026-11645 in Google Chromium's V8 engine, and CVE-2026-20245 in Cisco Catalyst SD-WAN Manager. These vulnerabilities pose significant risks to federal enterprises, as they are commonly targeted by malicious cyber actors.

The inclusion of these vulnerabilities in the KEV Catalog underscores the ongoing threat posed by unpatched software flaws. Organizations are urged to prioritize remediation efforts to mitigate potential exploitation and protect their networks against active threats.

Why This Matters Now

The addition of these vulnerabilities to the KEV Catalog highlights the immediate need for organizations to address these specific security flaws, as they are currently being exploited by threat actors, increasing the risk of cyberattacks.

Attack Path Analysis

Related CVEs

MITRE ATT&CK® Techniques

Potential Compliance Exposure

Sector Implications

Sources

Frequently Asked Questions

The newly added vulnerabilities are CVE-2026-7473 affecting Arista's EOS, CVE-2026-11645 in Google Chromium's V8 engine, and CVE-2026-20245 in Cisco Catalyst SD-WAN Manager.

Cloud Native Security Fabric Mitigations and ControlsCNSF

Aviatrix Zero Trust CNSF is pertinent to this incident as it would likely constrain the attacker's ability to move laterally and exfiltrate data, thereby reducing the overall blast radius.

Initial Compromise

Control: Cloud Native Security Fabric (CNSF)

Mitigation: While initial access may still occur, the attacker's ability to exploit this entry point to reach other systems would likely be constrained.

Privilege Escalation

Control: Zero Trust Segmentation

Mitigation: Even with escalated privileges, the attacker's access to other systems would likely be limited.

Lateral Movement

Control: East-West Traffic Security

Mitigation: The attacker's ability to move laterally across the network would likely be constrained.

Command & Control

Control: Multicloud Visibility & Control

Mitigation: Establishing and maintaining command and control channels would likely be more challenging for the attacker.

Exfiltration

Control: Egress Security & Policy Enforcement

Mitigation: The attacker's ability to exfiltrate sensitive data would likely be constrained.

Impact (Mitigations)

The scope of the ransomware's impact would likely be limited to the initially compromised workload.

Impact at a Glance

Affected Business Functions

  • Network Operations
  • Web Browsing
  • SD-WAN Management
Operational Disruption

Estimated downtime: 3 days

Financial Impact

Estimated loss: $50,000

Data Exposure

Potential unauthorized network access and control, risk of arbitrary code execution, and privilege escalation.

Recommended Actions

  • Implement Zero Trust Segmentation to limit lateral movement within the network.
  • Deploy Inline IPS (Suricata) to detect and prevent exploitation of known vulnerabilities.
  • Utilize Cloud Firewall (ACF) to control and monitor outbound traffic, preventing unauthorized data exfiltration.
  • Enhance Threat Detection & Anomaly Response capabilities to identify and respond to suspicious activities promptly.
  • Regularly update and patch systems to mitigate known vulnerabilities and reduce the attack surface.

Secure the Paths Between Cloud Workloads

A cloud-native security fabric that enforces Zero Trust across workload communication—reducing attack paths, compliance risk, and operational complexity.

Cta pattren Image