CISA's list that day

12 August 2025

On CISA added 3 vulnerabilities to its list of exploited vulnerabilities, in Microsoft Office, Microsoft Internet Explorer and RARLAB WinRAR. US federal agencies must fix them by .

Added that day

Added that day
VulnerabilityProductOur groupListedDeadlineEPSS
CVE-2013-3893Resource Management ErrorsMicrosoft Internet ExplorerPatch this weekMetasploit module; EPSS 0.88; verified Exploit-DB entry0.88
CVE-2025-8088Path TraversalRARLAB WinRARPatch this weekRansomware use; EPSS 0.940.94
CVE-2007-0671Excel Remote Code ExecutionMicrosoft OfficePatch soon0.43