■ NCSC UK ■ CISA KEV ■ FCA ScamSmart ■ ICO Enforcement ■ GET-IT Intelligence

Threat Advisory

Active vulnerability alerts, financial fraud warnings, and data protection enforcement notices for UK businesses — plus analysis and commentary from GET-IT. Curated from NCSC, CISA, FCA ScamSmart, ICO intelligence feeds, and our own research.

[ LAST UPDATED: 24 June 2026 at 22:26 UTC ]
█ New — MITRE-Lite Weekly

Our plain-English translation of the MITRE ATT&CK framework — who is targeting UK businesses this week, how they operate, and what to do about it. Updated every Monday.

Business Owner Edition → Technical Edition →

Analysis & Commentary

All GET-IT analysis & news →

Active UK Advisories

Why this matters to your business: The NCSC issues alerts when vulnerabilities are being actively exploited against UK organisations. If you use any of the affected products below, patching should be treated as urgent.
NCSC MON, 22 JUN 2026

The AI shift in cyber risk: why leaders must act now

Read NCSC Advisory →
NCSC THU, 18 JUN 2026

The 'vibe coding spectrum' approach to AI-assisted software development

Read NCSC Advisory →
NCSC THU, 18 JUN 2026

Alert: NCSC issues advice following global targeting of Fortinet firewalls and VPN gateways

Read NCSC Advisory →
NCSC WED, 17 JUN 2026

NCSC CEO: Hostile states linked to three-quarters of cyber attacks affecting UK's critical systems

Read NCSC Advisory →
NCSC THU, 04 JUN 2026

Software supply chain attacks: check your dependencies

Read NCSC Advisory →
NCSC WED, 27 MAY 2026

Designing secure access with ZTNA

Read NCSC Advisory →

Known Exploited Vulnerabilities — Active in the Wild

What is the CISA KEV Catalog? The US Cybersecurity and Infrastructure Security Agency maintains a list of vulnerabilities with confirmed evidence of active exploitation globally. These are not theoretical risks — they are being used by attackers right now. Many affect common software used by UK SMEs.
CISA KEV CRITICAL 2026-06-23
CVE-2025-67038 — Lantronix | EDS5000

Lantronix EDS5000 Vulnerability

Lantronix EDS5000 contains a code injection vulnerability that could allow attackers to inject arbitrary OS commands into the username parameter. Injected commands are executed with root privileges.

View CISA Advisory →
CISA KEV CRITICAL 2026-06-23
CVE-2026-34910 — Ubiquiti | UniFi OS

Ubiquiti UniFi OS Vulnerability

Ubiquiti UniFi OS contains an improper input validation vulnerability which could allow a malicious actor with access to the network to conduct command injection.

View CISA Advisory →
CISA KEV CRITICAL 2026-06-23
CVE-2026-34909 — Ubiquiti | UniFi OS

Ubiquiti UniFi OS Vulnerability

Ubiquiti UniFi OS contains a path traversal vulnerability which could allow a malicious actor with access to the network to access files on the underlying system that could be manipulated to access an underlying account.

View CISA Advisory →
CISA KEV CRITICAL 2026-06-23
CVE-2026-34908 — Ubiquiti | UniFi OS

Ubiquiti UniFi OS Vulnerability

Ubiquiti UniFi OS contains an improper access control vulnerability which could allow a malicious actor with access to the network to make unauthorized changes to the system.

View CISA Advisory →
CISA KEV CRITICAL 2026-06-18
CVE-2026-20253 — Splunk | Enterprise

Splunk Enterprise Vulnerability

Splunk Enterprise contains a missing authentication for critical function vulnerability which could allow an unauthenticated user to create or truncate arbitrary files through a PostgreSQL sidecar service endpoint.

View CISA Advisory →
CISA KEV CRITICAL 2026-06-16
CVE-2026-48907 — Widget Factory | Joomla Content Editor

Widget Factory Joomla Content Editor Vulnerability

Widget Factory Joomla Content Editor contains an improper access control vulnerability which could allow for upload and execution of PHP code via the creation of new editor profiles for unauthenticated users.

View CISA Advisory →

Financial Fraud Warnings & Action Fraud Alerts

Why this matters to your business: The FCA ScamSmart programme and Action Fraud publish warnings about unauthorised firms, clone investment scams, and financial services impersonation attacks targeting UK consumers and businesses. If your employees handle payments, invoices, or client funds, these alerts are directly relevant.
FCA ScamSmart FINANCIAL FRAUD MONDAY, JUNE 8,

FCA secures confiscation order against Ponzi scheme fraudster

The FCA has secured a confiscation order of £452,286.80 against convicted fraudster Daniel Pugh. Mr Pugh, 36, is serving a 7 years and 6 months prison sentence for defrauding investors out of £1.3m.Run from his bedroom...

Read FCA Warning →
FCA ScamSmart FINANCIAL FRAUD MONDAY, JUNE 8,

Consumers warned about misleading car finance 'money tips' claims ads

Consumers are being warned to be wary of misleading car finance 'money tips' adverts issued by claims management companies (CMCs) and law firms on social media. As part of the joint regulatory taskforce, the FCA has ide...

Read FCA Warning →

ICO Enforcement Notices & Data Protection Penalties

What the ICO publishes: The Information Commissioner's Office issues enforcement notices, monetary penalty notices, and reprimands against organisations that have failed to protect personal data under UK GDPR. These cases set precedent for what the ICO expects — and what it will act on — for businesses of all sizes.
ICOENFORCEMENT

ICO Enforcement Notices & Monetary Penalties

The ICO regularly issues fines and enforcement notices for data protection breaches under UK GDPR. View the full register of actions below.

View ICO Enforcement Register →

Is Your Business Exposed?

Many of these vulnerabilities affect software used by UK SMEs every day. A GET-IT threat intelligence scan will tell you exactly where your perimeter stands.

Book a Resilience Scan →

Intelligence sourced from NCSC UK, the CISA Known Exploited Vulnerabilities Catalog, the FCA ScamSmart programme, and the ICO Enforcement register. This page is updated automatically every 12 hours. For the most current advisories visit the source links directly. GET-IT Cyber Division curates this content for UK SME relevance but is not responsible for the accuracy of third-party source data.