Skip to content
ThreatCluster

CISA Issues Urgent Deadlines for Citrix and SharePoint Vulnerabilities

First seen 28 Sep 2026, 21:08 UTC • •

Article Content

Browse articles
ThreatCluster AI
ThreatCluster •September 28, 2026 at 21:09 UTC
  • •CISA has issued a 3-day deadline for patching critical vulnerabilities.
  • •CVE-2026-65660 for SharePoint is under active exploitation.
  • •Citrix NetScaler vulnerabilities are also being actively exploited.

CISA has set a 3-day deadline for organizations to address critical vulnerabilities in Citrix NetScaler and SharePoint. The Citrix NetScaler zero-day vulnerabilities are under active exploitation, while SharePoint CVE-2026-65660 was added to the CISA KEV list on September 25, 2026, indicating active exploitation. CVE-2026-65660 was published on August 11, 2026, and a proof-of-concept (PoC) was released on the same day it was added to the KEV list. Organizations using Citrix NetScaler and SharePoint are urged to implement patches immediately to mitigate risks. The vulnerabilities could lead to unauthorized access and data breaches if not addressed promptly.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated just now How this analysis works

Timeline

2026-08-11
CVE-2026-65660 published
CVE-2026-65660 for SharePoint was published, detailing a critical vulnerability.
Tech-Insider
2026-09-25
CVE-2026-65660 added to CISA KEV
CISA added CVE-2026-65660 to its KEV list, confirming active exploitation.
Tech-Insider
2026-09-25
First public PoC for CVE-2026-65660
A proof-of-concept for CVE-2026-65660 was publicly released, increasing urgency for patching.
Tech-Insider

More articles in this cluster (2)

Following this threat?

Track CVE-2026-65660 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed