Executive Summary
FURULIE LLC verified fresh Known Exploited Vulnerabilities Catalog movement from CISA across Monday, August 4, 2026; Tuesday, August 5, 2026; and Friday, August 7, 2026. The newest confirmed change as of Saturday, August 8, 2026 is CISA's August 7 addition of CVE-2026-8037, an actively exploited Progress LoadMaster vulnerability. Inside the same 72-hour window, CISA also added CVE-2026-63077 for JetBrains TeamCity on August 5 and three more enterprise-facing issues on August 4 affecting IBM Langflow OSS, N-able N-central, and Apache Tomcat.
The common pattern is operationally important. These are not edge-case desktop bugs. They sit in CI/CD infrastructure, load balancing, RMM and systems management, AI workflow tooling, and Java application server estates. For defenders, that means exposure review should start with internet reachability, privileged trust relationships, and whether these platforms sit on paths to code deployment, policy administration, or production traffic control.