CVE-2026-1731
Get tomorrow's brief in your inbox
Generated: 2026-02-14 | Sources: 4 articles from 3 feeds
BeyondTrust Remote Support/PRA OS Command Injection Added to CISA KEV (CVE-2026-1731)
CISA added CVE-2026-1731 to its Known Exploited Vulnerabilities catalog based on confirmed active exploitation. This is the BeyondTrust Remote Support (RS) and Privileged Remote Access (PRA) OS command injection vulnerability first reported this week, with in-the-wild exploitation observed within 24 hours of PoC publication. EPSS is 0.042 (89th percentile). Federal agencies are now required to remediate per BOD 22-01 deadlines.
get_portal_info endpoint for indicators of compromise. All organizations, not just federal agencies, should treat KEV additions as mandatory patch deadlines.Light day for new security disclosures. The only actionable item is the CISA KEV formalization of CVE-2026-1731 (BeyondTrust RS/PRA), which was already being exploited in the wild earlier this week. If you patched after yesterday's advisory, you are covered. The remaining feed articles today were business acquisitions and general technology news with no security relevance. Use the quiet day to verify your BeyondTrust patching status and catch up on any remediation from yesterday's heavier disclosure cycle.