CISA's list that day

25 February 2022

On CISA added 4 vulnerabilities to its list of exploited vulnerabilities, in Microsoft Windows, Microsoft Internet Explorer, Microsoft Office and 1 other product. The US federal deadlines run from to .

Added that day

Added that day
VulnerabilityProductOur groupListedDeadlineEPSS
CVE-2014-6352Code InjectionMicrosoft WindowsPatch this weekMetasploit module; EPSS 0.77; verified Exploit-DB entry0.77
CVE-2017-8570Remote Code ExecutionMicrosoft OfficePatch this weekEPSS 0.900.90
CVE-2022-24682Cross-Site ScriptingSynacor Zimbra Collaborate Suite (ZCS)Patch this weekRansomware use0.31
CVE-2017-0222Remote Code ExecutionMicrosoft Internet ExplorerPatch soon0.30

Our record of CISA's changes begins on 24 January 2025. For earlier days this page lists the entries CISA dates to this day; changes CISA made that day are not known to us.