CyberHappenings logo

Track cybersecurity events as they unfold. Sourced timelines. Filter, sort, and browse. Fast, privacy‑respecting. No invasive ads, no tracking.

CISA Adds Actively Exploited XSS Bug in OpenPLC ScadaBR to KEV

First reported
Last updated
1 unique sources, 1 articles

Summary

Hide ▲

CISA has added CVE-2021-26829, a cross-site scripting (XSS) flaw in OpenPLC ScadaBR, to its Known Exploited Vulnerabilities (KEV) catalog due to evidence of active exploitation. The vulnerability affects Windows and Linux versions of the software and has been exploited by the pro-Russian hacktivist group TwoNet in a recent attack. Federal agencies are required to apply fixes by December 19, 2025. Additionally, VulnCheck observed a long-running OAST service driving exploit operations targeting Brazil.

Timeline

  1. 30.11.2025 11:23 1 articles · 12h ago

    CISA Adds Actively Exploited XSS Bug in OpenPLC ScadaBR to KEV

    CISA has added CVE-2021-26829, a cross-site scripting (XSS) flaw in OpenPLC ScadaBR, to its Known Exploited Vulnerabilities (KEV) catalog due to evidence of active exploitation. The vulnerability affects Windows and Linux versions of the software and has been exploited by the pro-Russian hacktivist group TwoNet in a recent attack. Federal agencies are required to apply fixes by December 19, 2025.

    Show sources

Information Snippets