CISA's list that day

20 February 2025

On CISA added 2 vulnerabilities to its list of exploited vulnerabilities, in Palo Alto Networks PAN-OS and Craft CMS. US federal agencies must fix them by .

Added that day

Added that day
VulnerabilityProductOur groupListedDeadlineEPSS
CVE-2025-23209Code InjectionCraft CMS Craft CMSPatch soon0.22
CVE-2025-0111File ReadPalo Alto Networks PAN-OSPatch soon0.02