CISA's list that day

30 March 2023

On CISA added 9 vulnerabilities to its list of exploited vulnerabilities, in Microsoft Internet Explorer, Samba, Apple iOS, iPadOS, and macOS and 4 other products. US federal agencies must fix them by .

Added that day

Added that day
VulnerabilityProductOur groupListedDeadlineEPSS
CVE-2013-3163Memory CorruptionMicrosoft Internet ExplorerPatch this weekMetasploit module; EPSS 0.71; verified Exploit-DB entry0.71
CVE-2017-7494Remote Code ExecutionSamba SambaPatch this weekRansomware use; Metasploit module; EPSS 0.99; verified Exploit-DB entry0.99
CVE-2022-39197Teamserver Cross-Site Scripting (XSS)Fortra Cobalt StrikePatch soon0.46
CVE-2022-3038Use-After-FreeGoogle Chromium Network ServicePatch soon0.25
CVE-2022-38181Mali GPU Kernel Driver Use-After-FreeArm Mali Graphics Processing Unit (GPU)Patch soon0.14
CVE-2021-30900Out-of-Bounds WriteApple iOS, iPadOS, and macOSPatch soon0.05
CVE-2023-0266Use-After-FreeLinux KernelPatch soon0.04
CVE-2022-42948User Interface Remote Code ExecutionFortra Cobalt StrikePatch soon0.03
CVE-2022-22706Mali GPU Kernel Driver UnspecifiedArm Mali Graphics Processing Unit (GPU)Patch soon0.01

Our record of CISA's changes begins on 24 January 2025. For earlier days this page lists the entries CISA dates to this day; changes CISA made that day are not known to us.