CISA has added seven vulnerabilities to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious ...
A vulnerability in Cisco’s SD-WAN platform just earned the worst score possible: a perfect 10.0 out of 10.0 on the Common ...
A vulnerability carrying the highest possible severity score – tracked as CVE-2025-20188 – is being actively exploited in ...
CISA added CVE-2026-20182, a CVSS 10.0 Cisco Catalyst SD-WAN Controller authentication bypass flaw, to its KEV catalog.
On September 11th, CISA issued a massive security update, publishing eleven industrial control systems advisories, and at the same time, it added another harmful vulnerability to its Known Exploited ...
CISA also warned of CVE-2025-68645 being exploited. The vulnerability was disclosed on December 22, 2025, and is a local file inclusion vulnerability in the Webmail Classic UI of Zimbra Collaboration ...
Though it is not yet a matter of official policy, inside sources indicate CISA is weighing a three-day deadline for fixing ...
Oracle had initially disclosed the vulnerability earlier this month, though without providing any details about exploitation. The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has ...
CISA this year has already started accelerating the deadlines for agencies to patch software bugs posted to the Known Exploited Vulnerabilities (KEV) catalog.