CISA's list that day

21 February 2025

On CISA added 1 vulnerability to its list of exploited vulnerabilities: CVE-2025-24989 in Microsoft Power Pages. US federal agencies must fix it by .

Added that day

Added that day
VulnerabilityProductOur groupListedDeadlineEPSS
CVE-2025-24989Improper Access ControlMicrosoft Power PagesPatch soon0.02

Other changes that day

  1. CVE-2025-23209 Craft CMSEdited: description.