CISA Adds Two TrueConf Server Vulnerabilities to Known Exploited Catalog
The Cybersecurity and Infrastructure Security Agency (CISA) has added two vulnerabilities affecting TrueConf Server to its Known Exploited Vulnerabilities (KEV) Catalog. CVE-2026-72529 involves missing authentication for a critical function, and CVE-2026-72530 involves code injection. Both were added based on evidence of active exploitation and pose significant risks to federal and organizational networks.







