CISA's list that day
25 June 2026
On CISA added 2 vulnerabilities to its list of exploited vulnerabilities, in PTC Windchill and FlexPLM and Cisco Unified Communications Manager. US federal agencies must fix them by .
Added that day
| Vulnerability | Product | Our group | Listed | Deadline | EPSS |
|---|---|---|---|---|---|
| CVE-2026-12569Improper Input Validation | PTC Windchill and FlexPLM | Patch nowRansomware use, listed within a year | 0.46 | ||
| CVE-2026-20230Server-Side Request Forgery (SSRF) | Cisco Unified Communications Manager | Patch this weekEPSS 0.88 | 0.88 |