CISA KEV & Exploit Status
The CISA Known Exploited Vulnerabilities catalog tracks CVEs with confirmed active exploitation. Coverage includes new KEV additions, BOD 22-01 remediation deadlines, EPSS context, and guidance on using KEV status for patch prioritization.

CISA Sept. 12: Patch Cisco, Citrix, Fortinet Today
CISA's September 12 deadline covers confirmed exploited flaws in Cisco FMC, Citrix NetScaler, and Fortinet FortiOS. Federal agencies must patch by tomorrow; everyone else should be moving too.

Ransomware Gangs Exploiting WatchGuard Firebox CVSS 9.8 Flaw
CISA confirmed ransomware groups now exploit CVE-2025-14733 in WatchGuard Firebox. Patches shipped December 2025; about 9,000 appliances remain exposed.

CISA Adds N-able N-central Auth Bypass to KEV
CISA added a maximum-severity pre-auth RCE in N-able N-central to its KEV catalog on September 9. N-able patched it; audit deployments for new user accounts.

CISA Adds Seven Exploited Flaws to KEV Catalog
CISA added seven actively exploited vulnerabilities to KEV on September 3, including a critical Sangoma Switchvox SQL injection. Federal agencies face BOD 26-04 remediation deadlines.

What Is EPSS? Exploit Prediction Scoring Explained
EPSS scores predict 30-day exploitation probability. A CVE with CVSS 6.5 and EPSS 0.94 deserves more urgency than a CVSS 9.8 with EPSS 0.01.

What Is the CISA KEV Catalog?
CISA's Known Exploited Vulnerabilities catalog explained: what gets added, why it matters beyond federal agencies, and how to use it to prioritize patching.