The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has updated its Known Exploited Vulnerabilities catalog to include newly discovered flaws in Metabase, Windows, and Cisco Secure Firewall. Notably, the catalog now includes CVE-2026-20349, a heap inspection vulnerability in Cisco Secure Firewall Adaptive Security Appliance and Firewall Threat Defense, which carries a CVSS score of 8.6. Additionally, CVE-2026-68820, a vulnerability in Microsoft Windows Ancillary Function Driver for WinSock, has been added with a CVSS score of 7.0. These vulnerabilities pose significant risks, as they are being actively exploited by threat actors1. The inclusion of these flaws in the KEV catalog underscores the importance of prompt patching and monitoring. So what matters to practitioners is that the exploitation status of these vulnerabilities, particularly CVE-2026-20349, will determine whether immediate action is required to prevent potential attacks.