CISA Adds Five Known Exploited... Note

CISA Adds Five Known Exploited Vulnerabilities to Catalog

CISA has identified five new vulnerabilities that are actively being exploited by cyber attackers. These include vulnerabilities in Adminer, Cisco IOS and IOS XE, Fortra GoAnywhere MFT, Libraesva Email Security Gateway, and Sudo. The identified vulnerabilities frequently serve as attack vectors, posing significant risks to federal systems. CISA's Known Exploited Vulnerabilities (KEV) Catalog lists these threats to highlight their severity. Federal agencies are mandated by Binding Operational Directive 22-01 to remediate these vulnerabilities promptly. This directive aims to protect federal networks from ongoing cyber threats. While the directive specifically targets Federal Civilian Executive Branch agencies, CISA strongly recommends that all organizations also prioritize fixing these KEV Catalog vulnerabilities. This proactive approach is crucial for reducing exposure to cyberattacks. CISA will continue to update the KEV Catalog as new exploited vulnerabilities are discovered.