Google Zero-Day Added to CISA KEV Under Active Exploitation
Key findings • CVE-2026-58704, a Google vulnerability, has been added to CISA's KEV catalog. • The flaw is confirmed to be under active exploitation by malicious actors. • Organizations m…

Key findings
- CVE-2026-58704, a Google vulnerability, has been added to CISA's KEV catalog.
- The flaw is confirmed to be under active exploitation by malicious actors.
- Organizations must prioritize patching this vulnerability immediately.
- CISA mandates remediation by October 7, 2026, for federal agencies.
The Cybersecurity and Infrastructure Security Agency (CISA) has issued an urgent alert regarding a newly identified Google vulnerability, CVE-2026-58704, which has been added to its authoritative Known Exploited Vulnerabilities (KEV) Catalog. This addition signifies that the flaw is not merely theoretical but has been actively leveraged by malicious actors in real-world attacks, posing an immediate and significant risk to organizations and users globally.
CVE-2026-58704, while details remain limited, represents a critical security bypass that attackers are currently exploiting. The inclusion in the KEV catalog underscores the severity of this vulnerability and the imperative for immediate action from all affected parties. Organizations are strongly advised to treat this as a zero-day threat given its confirmed exploitation status.
CISA’s KEV catalog serves as a definitive list of vulnerabilities that have been observed under active exploitation. Federal Civilian Executive Branch (FCEB) agencies are mandated to remediate these vulnerabilities by specific deadlines to protect against ongoing threats. For CVE-2026-58704, the remediation due date is set for October 7, 2026, emphasizing the urgency of patching.
Defenders must prioritize the immediate identification and patching of all instances of the affected Google product or service. Organizations that fail to address actively exploited vulnerabilities risk falling victim to cyberattacks, potentially leading to data breaches, system compromise, or other severe operational disruptions. Regular vulnerability scanning and robust patch management processes are crucial for maintaining a strong security posture against such threats.