← Back to feed
Vulnerabilities & PatchesEmerging1 sourceAug 21, 2026 · 08:22via Security Affairs

U.S. CISA adds TrueConf Server flaws to its Known Exploited Vulnerabilities catalog

Brief

U. S. Cybersecurity and Infrastructure Security Agency (CISA) adds TrueConf Server flaws to its Known Exploited Vulnerabilities catalog.

The U. S. Cybersecurity and Infrastructure Security Agency (CISA) added the following vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog :

  • CVE-2026-72529  (CVSS score of 9.3) TrueConf Server Missing Authentication for Critical Function Vulnerability
  • CVE-2026-72530  (CVSS score of 9.5) TrueConf Server Code Injection Vulnerability

TrueConf Server is an on-premises video conferencing and unified communications platform developed by TrueConf. Organizations can deploy it on their own infrastructure to provide secure video meetings, voice calls, messaging and collaboration without relying entirely on a cloud service.

Read more on Security Affairs