CISA's list that day

30 September 2024

On CISA added 3 vulnerabilities to its list of exploited vulnerabilities, in SAP Commerce Cloud, DrayTek Multiple Vigor Routers and D-Link DIR-820 Router. US federal agencies must fix them by .

Added that day

Added that day
VulnerabilityProductOur groupListedDeadlineEPSS
CVE-2020-15415OS Command InjectionDrayTek Multiple Vigor RoutersPatch this weekEPSS 0.840.84
CVE-2023-25280OS Command InjectionD-Link DIR-820 RouterPatch this weekEPSS 0.980.98
CVE-2019-0344Deserialization of Untrusted DataSAP Commerce CloudPatch soon0.07

Our record of CISA's changes begins on 24 January 2025. For earlier days this page lists the entries CISA dates to this day; changes CISA made that day are not known to us.