CISA's list that day
8 December 2025
On CISA added 2 vulnerabilities to its list of exploited vulnerabilities, in D-Link Routers and Array Networks ArrayOS AG. US federal agencies must fix them by .
Added that day
| Vulnerability | Product | Our group | Listed | Deadline | EPSS |
|---|---|---|---|---|---|
| CVE-2022-37055Buffer Overflow | D-Link Routers | Patch this weekEPSS 0.56 | 0.56 | ||
| CVE-2025-66644OS Command Injection | Array Networks ArrayOS AG | Patch soon | 0.03 |