CISA's list that day

3 December 2024

On CISA added 3 vulnerabilities to its list of exploited vulnerabilities, in North Grid Proself, Zyxel Multiple Firewalls and ProjectSend. US federal agencies must fix them by .

Added that day

Added that day
VulnerabilityProductOur groupListedDeadlineEPSS
CVE-2024-11680Improper AuthenticationProjectSend ProjectSendPatch this weekMetasploit module; EPSS 0.920.92
CVE-2024-11667Path TraversalZyxel Multiple FirewallsPatch this weekRansomware use0.03
CVE-2023-45727Improper Restriction of XML External Entity (XXE) ReferenceNorth Grid ProselfPatch soon0.04

Our record of CISA's changes begins on 24 January 2025. For earlier days this page lists the entries CISA dates to this day; changes CISA made that day are not known to us.