CISA’s New Vulnerability Addition: A ScadaBR Scare or Just Another Cyber Monday?
CISA has added a new vulnerability to its KEV Catalog. CVE-2021-26828 allows OpenPLC ScadaBR to accept dangerous files like a bouncer letting in party crashers. Federal agencies, and everyone else, should patch up this vulnerability pronto to keep cyber threats from having a digital fiesta on their networks!

Hot Take:
Just when you thought it was safe to go back into the cyber waters, CISA drops another shark in the pool! With the addition of a new vulnerability to the Known Exploited Vulnerabilities (KEV) Catalog, it’s like the cyber world’s version of “Survivor” – trust no one, and keep your firewalls close!
Key Points:
- CISA adds CVE-2021-26828 to its Known Exploited Vulnerabilities (KEV) Catalog.
- The vulnerability pertains to OpenPLC ScadaBR’s unrestricted upload of files with dangerous types.
- This vulnerability poses a significant risk to federal enterprises and is frequently exploited by malicious actors.
- Binding Operational Directive (BOD) 22-01 mandates FCEB agencies to address these vulnerabilities promptly.
- CISA urges all organizations, not just FCEB agencies, to prioritize remediation of KEV Catalog vulnerabilities.
Already a member? Log in here
