Find notable cyber news and cases, enriched with sources, timelines, and signals.

CISA adds Sudo and four other flaws to KEV catalog

Public Sector Action
First reported
Last updated
Happening score
H score 38
2 unique sources, 2 articles

Summary

Hide ▲

CISA added CVE-2025-32463 in Sudo to the KEV catalog after evidence of active exploitation in the wild. The same update also added four other exploited flaws across Cisco IOS/IOS XE, Fortra GoAnywhere MFT, Adminer, and Libraesva ESG. FCEB agencies using the affected products must apply mitigations by October 20, 2025, making the update a near-term federal remediation priority.

Related Happenings

CERT-In 12-hour KEV remediation guidance

Advisory/Mitigation
H score39 First: 26.05.2026 13:30 Last: 26.05.2026 13:30 Sources 1

About this happening: CERT-In set a 12-hour expectation for containing or remediating known exploited vulnerabilities on internet-facing and crown-jewel systems, sharply shortening response...

CISA orders FCEB patching for CVE-2026-9082

Public Sector Action
H score70 First: 26.05.2026 11:46 Last: 26.05.2026 11:46 Sources 1

About this happening: CISA added CVE-2026-9082 to the KEV Catalog and ordered FCEB agencies to patch Drupal by May 27, turning an actively exploited flaw into a mandatory federa...

Ubiquiti UniFi OS security updates (multiple vulnerabilities)

Security Patch Release
H score28 First: 22.05.2026 15:00 Last: 22.05.2026 15:00 Sources 1

About this happening: Ubiquiti released security updates for UniFi OS to close five vulnerabilities, including three maximum-severity flaws that could let remote attackers without...

Latest development: 24.06.2026 15:32

CISA warned that threat actors were targeting CVE-2026-34908, CVE-2026-34909, and CVE-2026-34910 in Ubiquiti UniFi OS devices after the flaws were patched in UniFi OS Server 5.0.8, and multiple users reported that the bugs were exploited in the wild, likely as zero-days, to create rogue administrator accounts named John Sim.

Langflow and Trend Micro Apex One exploited flaws (multiple vulnerabilities)

Vulnerability
H score44 First: 22.05.2026 08:47 Last: 22.05.2026 08:47 Sources 1

About this happening: CISA added CVE-2025-34291 in Langflow and CVE-2026-34926 in Trend Micro Apex One to the KEV catalog after evidence of active exploitation. The Langflow...

CISA KEV action for CVE-2026-31431 and FCEB remediation

Public Sector Action
H score37 First: 03.05.2026 09:26 Last: 03.05.2026 09:26 Sources 1

About this happening: CISA added CVE-2026-31431 to its KEV catalog, putting Federal Civilian Executive Branch (FCEB) agencies on notice to remediate an actively exploited Linux privilege-es...

Timeline

  1. 30.09.2025 08:41 3 articles · 9mo ago

    CISA adds CVE-2025-32463 and four other exploited flaws to KEV

    Legal Policy Action Update

    CISA added CVE-2025-32463 in Sudo, along with CVE-2021-21311 in Adminer, CVE-2025-20352 in Cisco IOS and IOS XE, CVE-2025-10035 in Fortra GoAnywhere MFT, and CVE-2025-59689 in Libraesva Email Security Gateway (ESG), to its Known Exploited Vulnerabilities (KEV) catalog after evidence of active exploitation in the wild, and directed Federal Civilian Executive Branch agencies using the affected products to apply mitigations by October 20, 2025.

    Show sources