CISA Adds Two Known Exploited ... Note

CISA Adds Two Known Exploited Vulnerabilities to Catalog

CISA has added two new vulnerabilities to its Known Exploited Vulnerabilities (KEV) Catalog. These vulnerabilities, CVE-2023-50224 and CVE-2025-9377, affect TP-Link devices including the TL-WR841N and Archer C7. CVE-2023-50224 involves an authentication bypass by spoofing, while CVE-2025-9377 is an OS command injection vulnerability. Such vulnerabilities are common attack vectors that pose significant risks to federal networks. Binding Operational Directive (BOD) 22-01 established the KEV Catalog to highlight vulnerabilities with significant risk to the federal enterprise. This directive mandates that Federal Civilian Executive Branch (FCEB) agencies remediate these identified vulnerabilities by a specific deadline. The goal is to protect FCEB networks from active cyber threats. While BOD 22-01 specifically targets FCEB agencies, CISA strongly advises all organizations to address KEV Catalog vulnerabilities. Prioritizing timely remediation is crucial for reducing exposure to cyberattacks. CISA will continue to update the KEV Catalog with new vulnerabilities meeting its criteria.