CISA's list that day
25 June 2025
On CISA added 3 vulnerabilities to its list of exploited vulnerabilities, in Fortinet FortiOS, D-Link DIR-859 Router and AMI MegaRAC SPx. US federal agencies must fix them by .
Added that day
| Vulnerability | Product | Our group | Listed | Deadline | EPSS |
|---|---|---|---|---|---|
| CVE-2024-0769Path Traversal | D-Link DIR-859 Router | Patch this weekEPSS 0.83 | 0.83 | ||
| CVE-2024-54085Authentication Bypass by Spoofing | AMI MegaRAC SPx | Patch this weekEPSS 0.61 | 0.61 | ||
| CVE-2019-6693Use of Hard-Coded Credentials | Fortinet FortiOS | Patch this weekRansomware use | 0.06 |
Other changes that day
- CVE-2025-33053 Microsoft WindowsRenamed from Web Distributed Authoring and Versioning Web Distributed Authoring and Versioning (WebDAV) to Microsoft Windows. Edited: notes, description and name.