Skip to main content

CareScope Watch/Cybersecurity/September 11, 2026

CISA Adds ConnectWise ScreenConnect Flaw to Exploited Vulnerabilities List

CISA added three vulnerabilities to its Known Exploited Vulnerabilities Catalog based on evidence of active exploitation. The additions include an improper privilege management and missing authorization vulnerability in ConnectWise ScreenConnect (CVE-2026-84869), alongside two authorization and authentication flaws in JFrog Artifactory.

Why it matters

CISA warns that these types of vulnerabilities are frequent attack vectors for malicious cyber actors. Because active exploitation has been observed in the wild, exposed systems face immediate risk of compromise. CISA encourages all organizations, not just federal agencies, to adopt risk-based vulnerability management and prioritize patching cataloged flaws.

What it means for your practice

Practices and their managed IT service providers should check immediately whether ConnectWise ScreenConnect or JFrog Artifactory is deployed in their environment. If present, administrators should apply available vendor security updates without delay and review systems to ensure they were not compromised prior to patching.