CISA's list that day
12 August 2025
On CISA added 3 vulnerabilities to its list of exploited vulnerabilities, in Microsoft Office, Microsoft Internet Explorer and RARLAB WinRAR. US federal agencies must fix them by .
Added that day
| Vulnerability | Product | Our group | Listed | Deadline | EPSS |
|---|---|---|---|---|---|
| CVE-2013-3893Resource Management Errors | Microsoft Internet Explorer | Patch this weekMetasploit module; EPSS 0.88; verified Exploit-DB entry | 0.88 | ||
| CVE-2025-8088Path Traversal | RARLAB WinRAR | Patch this weekRansomware use; EPSS 0.94 | 0.94 | ||
| CVE-2007-0671Excel Remote Code Execution | Microsoft Office | Patch soon | 0.43 |