Skip to content
feed: live
>_0dayNews
← All vendors
Vendor

CISA KEV & Exploit Status

The CISA Known Exploited Vulnerabilities catalog tracks CVEs with confirmed active exploitation. Coverage includes new KEV additions, BOD 22-01 remediation deadlines, EPSS context, and guidance on using KEV status for patch prioritization.

0 CVEs6 articlesRSS
Articles
~/articles/2026-09-11-cisa-kev-sept12-cisco-citrix-fortinet
CISA Sept. 12: Patch Cisco, Citrix, Fortinet Today
● Breaking
cisa kev

CISA Sept. 12: Patch Cisco, Citrix, Fortinet Today

CISA's September 12 deadline covers confirmed exploited flaws in Cisco FMC, Citrix NetScaler, and Fortinet FortiOS. Federal agencies must patch by tomorrow; everyone else should be moving too.

read →
~/articles/2026-09-11-watchguard-firebox-ransomware-kev-cve-2025-14733
Ransomware Gangs Exploiting WatchGuard Firebox CVSS 9.8 Flaw
● Breaking
cisa kev

Ransomware Gangs Exploiting WatchGuard Firebox CVSS 9.8 Flaw

CISA confirmed ransomware groups now exploit CVE-2025-14733 in WatchGuard Firebox. Patches shipped December 2025; about 9,000 appliances remain exposed.

read →
~/articles/2026-09-09-n-able-n-central-kev-pre-auth-rce
CISA Adds N-able N-central Auth Bypass to KEV
cisa kev

CISA Adds N-able N-central Auth Bypass to KEV

CISA added a maximum-severity pre-auth RCE in N-able N-central to its KEV catalog on September 9. N-able patched it; audit deployments for new user accounts.

read →
~/articles/2026-09-03-cisa-kev-seven-flaws-reverse-shells-miners
CISA Adds Seven Exploited Flaws to KEV Catalog
cisa kev

CISA Adds Seven Exploited Flaws to KEV Catalog

CISA added seven actively exploited vulnerabilities to KEV on September 3, including a critical Sangoma Switchvox SQL injection. Federal agencies face BOD 26-04 remediation deadlines.

read →
~/articles/2026-08-25-what-is-epss-exploit-prediction-scoring-system
What Is EPSS? Exploit Prediction Scoring Explained
cisa kev

What Is EPSS? Exploit Prediction Scoring Explained

EPSS scores predict 30-day exploitation probability. A CVE with CVSS 6.5 and EPSS 0.94 deserves more urgency than a CVSS 9.8 with EPSS 0.01.

read →
~/articles/2026-08-17-what-is-cisa-kev-catalog
What Is the CISA KEV Catalog?
Explainer
cisa kev

What Is the CISA KEV Catalog?

CISA's Known Exploited Vulnerabilities catalog explained: what gets added, why it matters beyond federal agencies, and how to use it to prioritize patching.

read →