OFFSITE.DARK
← Signals

Sep 4, 2026

3 min

CISA

  • cisa
  • kev
  • bod-26-04
  • papercut
  • sonicwall
  • jfrog
  • chromium
  • litellm

news

CISA KEV September 2026: PaperCut, SMA1000, Artifactory, Chromium

Late-August / early-September KEV burst: PaperCut pair, seven mixed internet-edge and app CVEs on Sep 2, Chromium V8 on Sep 4 — BOD 26-04 still the federal clock.

Summary

CISA’s Known Exploited Vulnerabilities catalog took three notable additions around the 2026-08-31 → 2026-09-04 window. Binding Operational Directive 26-04 still requires federal civilian agencies to prioritize KEV items on publicly exposed assets that yield total control after exploitation, and to check for compromise before trusting the patch.

This signal is the index card for that week. Dedicated OFFSITE.DARK write-ups exist for the three highest-blast-radius pairs (PaperCut, SonicWall SMA1000, JFrog Artifactory). The rest of the Sep 2 seven plus Chromium V8 are summarized here.

Timeline

DateAction
2026-08-31KEV: CVE-2026-81578, CVE-2026-82078 (PaperCut NG/MF)
2026-09-02KEV: seven CVEs (Switchvox, Starlette, Kestra, LiteLLM, Artifactory, SMA1000 ×2)
2026-09-04KEV: CVE-2026-85046 (Google Chromium V8 type confusion)

September 2 seven

CVEProductClass (CISA wording)Notes
CVE-2026-9586Sangoma SwitchvoxSQL injectionPBX / UC edge
CVE-2026-48710Kludex StarletteHTTP request/response smugglingASGI stack under FastAPI et al.
CVE-2026-49869Kestra OSSOS command injectionWorkflow orchestration; CVSS 10.0 in secondary trackers
CVE-2026-59822BerriAI LiteLLMImproper authenticationDistinct from CVE-2026-42208 SQLi
CVE-2026-82329JFrog ArtifactoryImproper authenticationDedicated signal
CVE-2026-83548SonicWall SMA1000SSRFDedicated signal
CVE-2026-83549SonicWall SMA1000OS command injectionChained with 83548

Chromium V8 (September 4)

CVE-2026-85046 is a type confusion in Google Chromium V8, scored high (coverage cites CVSS 8.8) and added to KEV with evidence of exploitation. Browser/V8 KEVs are usually drive-by or in-the-wild exploit kit material. Patch Chrome / Edge / Electron shells that embed the affected V8; do not wait for a separate “enterprise CVE process” if auto-updates are off.

LiteLLM: second KEV in 2026

OFFSITE.DARK already indexed CVE-2026-42208 (pre-auth SQLi on the proxy, fixed 1.83.7). CVE-2026-59822 is a different LiteLLM issue — improper authentication — now KEV-listed. Estates that patched 42208 still need a version that closes 59822. Treat internet-exposed LiteLLM proxies as AI-gateway edge, not an internal toy.

Operator order of operations

  1. Internet-exposed: PaperCut admin, SMA1000, Artifactory/Access, Switchvox, Kestra, LiteLLM, Starlette/FastAPI front doors — patch and assume scan/exploit traffic already happened.
  2. Endpoints: Chromium-family browsers, including embedded runtimes.
  3. BOD 26-04 shops: document pre-patch compromise checks, not just the version bump.
  4. Cross-check StyleSmuggler even if it is not in this particular KEV listing — same week, same “edge app RCE” bucket.

Related Signals

Sources

→ Source