Security News > 2025 > February > CISA tags Microsoft .NET and Apache OFBiz bugs as exploited in attacks

2025-02-05 16:45
The US Cybersecurity & Infrastructure Security Agency (CISA) has added four vulnerabilities to its Known Exploited Vulnerabilities catalog, urging federal agencies and large organizations to apply the available security updates as soon as possible. [...]
News URL
Related news
- New ClickFix attack deploys Havoc C2 via Microsoft Sharepoint (source)
- Cisco, Hitachi, Microsoft, and Progress Flaws Actively Exploited—CISA Sounds Alarm (source)
- CISA tags critical Ivanti EPM flaws as actively exploited in attacks (source)
- Critical RCE flaw in Apache Tomcat actively exploited in attacks (source)
- CISA tags NAKIVO backup flaw as actively exploited in attacks (source)
- Hidden Threats: How Microsoft 365 Backups Store Risks for Future Attacks (source)
- Microsoft Warns of Tax-Themed Email Attacks Using PDFs and QR Codes to Deliver Malware (source)
- CISA Warns of CentreStack's Hard-Coded MachineKey Vulnerability Enabling RCE Attacks (source)
- Microsoft Defender will isolate undiscovered endpoints to block attacks (source)
- CISA tags SonicWall VPN flaw as actively exploited in attacks (source)