
CISA Known Exploited Vulnerabilities Catalog
For the benefit of the cybersecurity community and network defenders—and to help every organization better manage vulnerabilities and keep pace with threat activity—CISA maintains the authoritative source of vulnerabilities that have been exploited in the wild: the Known Exploited Vulnerability (KEV) catalog. CISA strongly recommends all organizations review and monitor the KEV catalog and prioritize remediation of the listed vulnerabilities to reduce the likelihood of compromise by known threat actors.
Fediverse name: Fediverse URL: Feed URL: https://rud.is/cisa-kev.rssWebsite: https://www.cisa.gov/known-exploited-vulnerabilities-catalog
Refreshed at: 2025-06-30T03:18:13.557035Z
Entries
-
2025-06-25: [CVE-2019-6693] Fortinet FortiOS Use of Hard-Coded Credentials Vulnerability
Posted at: 2025-06-25 17:24 -
2025-06-25: [CVE-2024-0769] D-Link DIR-859 Router Path Traversal Vulnerability
Posted at: 2025-06-25 17:24 -
2025-06-25: [CVE-2024-54085] AMI MegaRAC SPx Authentication Bypass by Spoofing Vulnerability
Posted at: 2025-06-25 17:24 -
2025-06-17: [CVE-2023-0386] Linux Kernel Improper Ownership Management Vulnerability
Posted at: 2025-06-17 20:21 -
2025-06-16: [CVE-2023-33538] TP-Link Multiple Routers Command Injection Vulnerability
Posted at: 2025-06-16 20:45 -
2025-06-16: [CVE-2025-43200] Apple Multiple Products Unspecified Vulnerability
Posted at: 2025-06-16 20:45 -
2025-06-10: [CVE-2025-33053] Web Distributed Authoring and Versioning (WebDAV) External Control of File Name or Path Vulnerability
Posted at: 2025-06-10 18:50 -
2025-06-10: [CVE-2025-24016] Wazuh Server Deserialization of Untrusted Data Vulnerability
Posted at: 2025-06-10 18:50 -
2025-06-09: [CVE-2024-42009] RoundCube Webmail Cross-Site Scripting Vulnerability
Posted at: 2025-06-09 19:13 -
2025-06-09: [CVE-2025-32433] Erlang Erlang/OTP SSH Server Missing Authentication for Critical Function Vulnerability
Posted at: 2025-06-09 19:13