Find notable cyber news and cases, enriched with sources, timelines, and signals.

CISA adds CVE-2025-61932 to KEV and sets FCEB remediation deadline

Public Sector Action
First reported
Last updated
Happening score
H score 52
1 unique sources, 1 articles

Summary

Hide ▲

CISA added CVE-2025-61932 affecting Motex Lanscope Endpoint Manager to the KEV catalog after confirming it was actively exploited in the wild. The action matters because the flaw can enable arbitrary code execution on affected on-premises systems. FCEB agencies were told to remediate the issue by November 12, 2025.

Related Happenings

Langflow and Trend Micro Apex One exploited flaws (multiple vulnerabilities)

Vulnerability
First: 22.05.2026 08:47 Last: 22.05.2026 08:47 Sources 1

About this happening: **CISA** added **CVE-2025-34291** in **Langflow** and **CVE-2026-34926** in **Trend Micro Apex One** to the **KEV catalog** after evidence of **active exploitation**. The Langflow...

CISA KEV action for CVE-2026-31431 and FCEB remediation

Public Sector Action
First: 03.05.2026 09:26 Last: 03.05.2026 09:26 Sources 1

About this happening: CISA added **CVE-2026-31431** to its **KEV catalog**, putting **Federal Civilian Executive Branch (FCEB)** agencies on notice to remediate an actively exploited Linux privilege-es...

CISA Apache ActiveMQ CVE-2026-34197 mitigation order

Advisory/Mitigation
First: 21.04.2026 14:17 Last: 21.04.2026 14:17 Sources 1

About this happening: **CISA** ordered **FCEB agencies** to secure **Apache ActiveMQ** servers by **April 30** after **CVE-2026-34197** was confirmed **actively exploited**. The flaw can allow **arbitr...

CISA KEV listing and FCEB patch order for CVE-2026-35616

Public Sector Action
First: 06.04.2026 19:02 Last: 06.04.2026 19:02 Sources 1

About this happening: **CISA** added **CVE-2026-35616** to the **KEV Catalog** and ordered **FCEB agencies** to patch **FortiClient EMS** by **Thursday midnight, April 9**. The mandate matters because...

F5 BIG-IP APM unauthenticated RCE (CVE-2025-53521)

Vulnerability
First: 30.03.2026 10:07 Last: 30.03.2026 10:07 Sources 1

About this happening: **CVE-2025-53521** is being **actively exploited** against **F5 BIG-IP APM** deployments, creating **unauthenticated remote code execution** risk for exposed systems. The flaw aff...

Timeline

  1. 23.10.2025 08:37 2 articles · 7mo ago

    CISA adds CVE-2025-61932 to KEV

    Initial Disclosure

    CISA added CVE-2025-61932 affecting Motex Lanscope Endpoint Manager to the Known Exploited Vulnerabilities (KEV) catalog after stating the flaw was actively exploited in the wild. The issue affects on-premises Client program and Detection Agent versions 9.4.7.1 and earlier and can allow arbitrary code execution by sending specially crafted packets.

    Show sources
  2. 23.10.2025 08:37 1 articles · 7mo ago

    FCEB remediation deadline set for CVE-2025-61932

    Legal Policy Action Update

    CISA recommended that Federal Civilian Executive Branch (FCEB) agencies remediate CVE-2025-61932 by November 12, 2025, to protect networks using Motex Lanscope Endpoint Manager. The affected scope includes on-premises versions of the Client program and Detection Agent, with versions 9.4.7.1 and earlier impacted.

    Show sources