ConnectWise security advisory (AV26-903)
MediumCanadian Centre for Cyber Security · Canadian Centre for Cyber Security·
At a glance
- Severity
- Medium
- Used in attacks
- No flaws named
- Reported by
- 1 outlet
As of September 8, 2026, ConnectWise is affected by a vulnerability in the following product:
- ScreenConnect
- versions prior to 26.6.5
Open-source reporting indicates that CVE-2026-84869 is being exploited in the wild.
The Cyber Centre encourages users and administrators to review the provided web links and apply any necessary updates as they become available.
Reproduced in full under licence from Canadian Centre for Cyber Security. © Canadian Centre for Cyber Security. Written by Canadian Centre for Cyber Security.
Read at cyber.gc.ca ↗Official Source
Coverage
One outlet has carried this so far.
2026-09-09 19:46 UTC
Related stories
- Cisco warns of max severity ISE zero-day exploited in attacks
BleepingComputer · 2026-09-17
- Windows 11 KB5124008 update breaks domain trust for some users
BleepingComputer · 2026-09-16
- CISA decides weekly vulnerability bulletin isn't necessary anymore
The Register · 2026-09-16
- Malware bypasses browser checks to force install Chrome, Edge extensions
BleepingComputer · 2026-09-16
- Google Pixel phones pwned in zero-click attacks
The Register · 2026-09-16