CISA's list that day

7 July 2025

On CISA added 4 vulnerabilities to its list of exploited vulnerabilities, in Looking Glass Multi-Router Looking Glass (MRLG), PHPMailer, Rails Ruby on Rails and 1 other product. US federal agencies must fix them by .

Added that day

Added that day
VulnerabilityProductOur groupListedDeadlineEPSS
CVE-2016-10033Command InjectionPHP PHPMailerPatch this weekMetasploit module; EPSS 0.99; verified Exploit-DB entry0.99
CVE-2019-9621Server-Side Request Forgery (SSRF)Synacor Zimbra Collaboration Suite (ZCS)Patch this weekMetasploit module; EPSS 0.81; verified Exploit-DB entry0.81
CVE-2019-5418Path TraversalRails Ruby on RailsPatch this weekMetasploit module; EPSS 0.990.99
CVE-2014-3931Buffer OverflowLooking Glass Multi-Router Looking Glass (MRLG)Patch soon0.29