CISA's list that day

25 June 2025

On CISA added 3 vulnerabilities to its list of exploited vulnerabilities, in Fortinet FortiOS, D-Link DIR-859 Router and AMI MegaRAC SPx. US federal agencies must fix them by .

Added that day

Added that day
VulnerabilityProductOur groupListedDeadlineEPSS
CVE-2024-0769Path TraversalD-Link DIR-859 RouterPatch this weekEPSS 0.830.83
CVE-2024-54085Authentication Bypass by SpoofingAMI MegaRAC SPxPatch this weekEPSS 0.610.61
CVE-2019-6693Use of Hard-Coded CredentialsFortinet FortiOSPatch this weekRansomware use0.06

Other changes that day

  1. CVE-2025-33053 Microsoft WindowsRenamed from Web Distributed Authoring and Versioning Web Distributed Authoring and Versioning (WebDAV) to Microsoft Windows. Edited: notes, description and name.