CISA's list that day
27 June 2022
On CISA added 8 vulnerabilities to its list of exploited vulnerabilities, in Apple Multiple Products, Red Hat Polkit, Google Chromium PopupBlocker and 2 other products. US federal agencies must fix them by .
Added that day
| Vulnerability | Product | Our group | Listed | Deadline | EPSS |
|---|---|---|---|---|---|
| CVE-2021-4034Out-of-Bounds Read and Write | Red Hat Polkit | Patch this weekRansomware use; Metasploit module; EPSS 0.94 | 0.94 | ||
| CVE-2022-29499Data Validation | Mitel MiVoice Connect | Patch this weekRansomware use; EPSS 0.55 | 0.55 | ||
| CVE-2019-8605Use-After-Free | Apple Multiple Products | Patch soonVerified Exploit-DB entry | 0.18 | ||
| CVE-2020-3837Memory Corruption | Apple Multiple Products | Patch soonVerified Exploit-DB entry | 0.15 | ||
| CVE-2021-30533Security Bypass | Google Chromium PopupBlocker | Patch soon | 0.17 | ||
| CVE-2020-9907Memory Corruption | Apple Multiple Products | Patch soon | 0.03 | ||
| CVE-2021-30983Buffer Overflow | Apple iOS and iPadOS | Patch soon | 0.03 | ||
| CVE-2018-4344Memory Corruption | Apple Multiple Products | Patch soon | 0.02 |
Our record of CISA's changes begins on 24 January 2025. For earlier days this page lists the entries CISA dates to this day; changes CISA made that day are not known to us.