Skip to content
Critical Vulnerabilities in Umbraco CMS and Linux Kernel Exploited

Critical Vulnerabilities in Umbraco CMS and Linux Kernel Exploited

First seen 26 Sep 2026, 16:51 UTC • •

Article Content

Browse articles
ThreatCluster AI
ThreatCluster •September 27, 2026 at 16:34 UTC
  • •CVE-2020-9471 in Umbraco CMS has a CVSS score of 8.8 and is actively exploited.
  • •CVE-2024-35789 affects the Linux kernel with a CVSS score of 7.8, also under active exploitation.
  • •CVE-2026-87902 was added to the CISA KEV list due to confirmed exploitation.

Recent vulnerabilities CVE-2020-9471 and CVE-2024-35789 have been identified in Umbraco CMS and the Linux kernel, respectively. CVE-2020-9471, with a CVSS score of 8.8, was published on March 16, 2020, and affects multiple versions of Umbraco CMS. CVE-2024-35789, rated 7.8, was published on May 17, 2024, impacting various Linux distributions. Both vulnerabilities have been actively exploited, with CVE-2026-87902 recently added to the CISA KEV list on September 25, 2026. The exploitation methods include remote code execution and privilege escalation, posing significant risks to affected systems. Organizations using these platforms are urged to apply patches immediately to mitigate risks. The situation is evolving, with ongoing monitoring required for further developments.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Timeline

2020-03-16
CVE-2020-9471 published
A critical vulnerability in Umbraco CMS was disclosed, allowing for remote code execution.
Forenshield
2024-05-17
CVE-2024-35789 published
A significant vulnerability in the Linux kernel was disclosed, enabling privilege escalation.
Forenshield
2025-06-02
CVE-2025-48494 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-06-11
CVE-2026-35273 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-09-22
CVE-2026-87902 published
A new vulnerability was disclosed, with active exploitation confirmed shortly after.
Forenshield
2026-09-25
CVE-2026-87902 added to CISA KEV
CISA confirmed active exploitation of CVE-2026-87902, prompting urgent patching recommendations.
Forenshield

More articles in this cluster (4)

Following this threat?

Track CVE-2020-9471 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed