NVD disclosure day

Published threat advisories for February 6, 2026

CVE advisoryKnown Exploit

CVE-2026-1731

BeyondTrust Remote Support OS Command Injection Vulnerability.

Halo Surface Signal: 5 out of 5 — more likely to be public-facing.

A critical vulnerability in BeyondTrust Remote Support and Privileged Remote Access allows unauthenticated attackers to execute operating system commands, posing a significant business risk including unauthorized access and service disruption.

• CISA KEV

CVE advisoryCRITICAL

CVE-2026-1709

Keylime Registrar TLS Authentication Bypass

Halo Surface Signal: 2 out of 5 — less likely to be public-facing.

A vulnerability exists in Keylime where the registrar does not enforce client-side TLS authentication, allowing unauthenticated network access to perform administrative operations like listing or deleting agents. This bypass could lead to unauthorized access and manipulation of sensitive system data.

CVE advisoryKnown Exploit

CVE-2026-21643

FortiClient EMS SQL Injection Vulnerability

Halo Surface Signal: 5 out of 5 — more likely to be public-facing.

A vulnerability in Fortinet FortiClientEMS may allow an attacker to execute unauthorized code or commands via crafted HTTP requests. This could lead to unauthorized access and disruption of business systems. Organizations should secure affected assets and apply vendor-provided fixes.

• CISA KEV