• CISA Adds One Known Exploited Vulnerability to Catalog

    From CISA@cisa@messages.cisa.gov to cisa@toolazy.synchro.net on Tue Feb 24 19:03:33 2026
    --===============1162256403614507643==
    Content-Type: multipart/alternative; boundary="===============8044194841570484485=="
    MIME-Version: 1.0

    --===============8044194841570484485==
    Content-Type: text/plain; charset="utf-8"
    MIME-Version: 1.0
    Content-Transfer-Encoding: quoted-printable

    Cybersecurity and Infrastructure Security Agency (CISA)

    You are subscribed to Cybersecurity Advisories for Cybersecurity and Infras= tructure Security Agency. This information has recently been updated and is=
    now available.

    CISA Adds One Known Exploited Vulnerability to Catalog [ https://www.cisa.g= ov/news-events/alerts/2026/02/24/cisa-adds-one-known-exploited-vulnerabilit= y-catalog ] 02/24/2026 2:00 PM EST=20

    CISA has added one new vulnerability to its Known Exploited Vulnerabilities=
    (KEV) Catalog [ https://www.cisa.gov/known-exploited-vulnerabilities-catal=
    og ], based on evidence of active exploitation.


    * CVE-2026-25108 [ https://www.cve.org/CVERecord?id=3DCVE-2026-25108 ]=C2= =A0Soliton Systems K.K.=C2=A0FileZen=C2=A0OS Command Injection Vulnerabilit= y=C2=A0=20

    This type of vulnerability is frequent attack vector for malicious cyber ac= tors and poses significant risks to the federal enterprise.

    Binding Operational Directive (BOD) 22-01: Reducing the Significant Risk of=
    Known Exploited Vulnerabilities [ https://www.cisa.gov/binding-operational= -directive-22-01 ] established the KEV Catalog as a living list of known Co= mmon Vulnerabilities and Exposures (CVEs) that carry significant risk to th=
    e federal enterprise. BOD 22-01 requires Federal Civilian Executive Branch = (FCEB) agencies to remediate identified vulnerabilities by the due date to = protect FCEB networks against active threats. See the BOD 22-01 Fact Sheet =
    [ https://www.cisa.gov/sites/default/files/publications/Reducing_the_Signif= icant_Risk_of_Known_Exploited_Vulnerabilities_211103.pdf ] for more informa= tion.

    Although BOD 22-01 only applies to FCEB agencies, CISA strongly urges all o= rganizations to reduce their exposure to cyberattacks by prioritizing timel=
    y remediation of KEV Catalog vulnerabilities [ https://www.cisa.gov/known-e= xploited-vulnerabilities-catalog ] as part of their vulnerability managemen=
    t practice. CISA will continue to add vulnerabilities to the catalog that m= eet the specified criteria [ https://www.cisa.gov/known-exploited-vulnerabi= lities ].=C2=A0

    This product is provided subject to this=C2=A0Notification [ https://www.ci= sa.gov/notification ]=C2=A0and this=C2=A0Privacy & Use [ https://www.cisa.g= ov/privacy-policy ]=C2=A0policy.

    body { font-size: 1em; font-family: Arial, Verdana, sans-serif; font-weight=
    : normal; font-style: normal; color: #333333; }=20

    Having trouble viewing this message?=C2=A0View it as a webpage [ https://co= ntent.govdelivery.com/accounts/USDHSCISA/bulletins/40b5233 ].=C2=A0 [ https= ://content.govdelivery.com/accounts/USDHS/bulletins/292141e ]

    You are subscribed to updates from the Cybersecurity and Infrastructure Sec= urity Agency [ https://www.cisa.gov ] (CISA)
    Manage Subscriptions [ https://public.govdelivery.com/accounts/USDHSCISA/su= bscriber/edit?preferences=3Dtrue#tab1 ]=C2=A0=C2=A0|=C2=A0=C2=A0Privacy Pol= icy [ https://www.cisa.gov/privacy-policy ]=C2=A0=C2=A0|=C2=A0 Help [ https= ://subscriberhelp.granicus.com/s/article/Subscriber-Help-Center ] [ https:/= /insights.govdelivery.com/Communications/Subscriber_Help_Center ]

    Connect with CISA:=20
    Facebook [ https://www.facebook.com/CISA ]=C2=A0 |=C2=A0 Twitter [ https://= twitter.com/CISAgov ]=C2=A0 |=C2=A0 Instagram [ https://Instagram.com/cisag=
    ov ]=C2=A0 |=C2=A0 LinkedIn [ https://www.linkedin.com/company/cybersecurit= y-and-infrastructure-security-agency ]=C2=A0 |=C2=A0=C2=A0 YouTube [ https:= //www.youtube.com/channel/UCxyq9roe-npgzrVwbpoAy0A ]

    ________________________________________________________________________

    This email was sent to cisa@toolazy.synchro.net using GovDelivery Communica= tions Cloud, on behalf of: Cybersecurity and Infrastructure Security Agency=
    =C2=B7 707 17th St, Suite 4000 =C2=B7 Denver, CO 80202 GovDelivery logo [ = https://subscriberhelp.granicus.com/ ]=20
    body .abe-column-block { min-height: 5px; } table.gd_combo_table img {margi= n-left:10px; margin-right:10px;} table.gd_combo_table div.govd_image_displa=
    y img, table.gd_combo_table td.gd_combo_image_cell img {margin-left:0px; ma= rgin-right:0px;}

    --===============8044194841570484485==
    Content-Type: text/html; charset="utf-8"
    MIME-Version: 1.0
    Content-Transfer-Encoding: quoted-printable

    <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
    "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
    <html xmlns=3D"http://www.w3.org/1999/xhtml" xml:lang=3D"en" lang=3D"en"> <head>
    <title> CISA Adds One Known Exploited Vulnerability to Catalog
    </title>


    </head>
    <body style=3D"">

    <table width=3D"700" border=3D"0" cellspacing=3D"0" cellpadding=3D"0"=
    align=3D"center">
    <tr>
    <td>

    <!--[if (gte mso 9)|(IE)]>
    <table style=3D"display:none"><tr><td><a name=3D"gd_top" id=3D"gd_top"></= a></td></tr></table>
    <![endif]-->
    <a name=3D"gd_top" id=3D"gd_top"></a>

    =20



    <p><img src=3D"https://content.govdelivery.com/attachments/fancy_images/U= SDHSCISA/2020/06/3486054/05152023-gov-delivery-banner-copy_original.png" al= t=3D"Cybersecurity and Infrastructure Security Agency (CISA)" title=3D"" wi= dth=3D"600" height=3D"100"></p>
    <p>You are subscribed to Cybersecurity Advisories for Cybersecurity and I= nfrastructure Security Agency. This information has recently been updated a=
    nd is now available.</p>
    <div class=3D"rss_item" style=3D"margin-bottom: 2em;">
    <div class=3D"rss_title" style=3D"font-weight: bold; font-size: 120%; margi=
    n: 0 0 0.3em; padding: 0;"><a href=3D"https://www.cisa.gov/news-events/aler= ts/2026/02/24/cisa-adds-one-known-exploited-vulnerability-catalog" target= =3D"_blank" title=3D"CISA Adds One Known Exploited Vulnerability to Catalog=
    " rel=3D"noopener">CISA Adds One Known Exploited Vulnerability to Catalog</= a></div>
    <div class=3D"rss_pub_date" style=3D"font-size: 90%; font-style: italic; co= lor: #666666; margin: 0 0 0.3em; padding: 0;">02/24/2026 2:00 PM EST</div>
    <div class=3D"rss_description" style=3D"margin: 0 0 0.3em; padding: 0;"> <p>CISA has added one new vulnerability to its <a href=3D"https://www.cisa.= gov/known-exploited-vulnerabilities-catalog" title=3D"Known Exploited Vulne= rabilities Catalog" data-entity-type=3D"node" data-entity-uuid=3D"79453b83-= 86b9-4e2f-b1ec-abf73c6eb291" data-entity-substitution=3D"canonical">Known E= xploited Vulnerabilities (KEV) Catalog</a>, based on evidence of active exp= loitation.</p>


    <a href=3D"https://www.cve.org/CVERecord?id=3DCVE-2026-25108" target=3D"_bl= ank" title=3D"CVE-2026-25108" class=3D"Hyperlink SCXW33590977 BCX8" rel=3D"= noopener">CVE-2026-25108</a><span class=3D"TextRun SCXW33590977 BCX8" data-= contrast=3D"auto"><span class=3D"NormalTextRun SCXW33590977 BCX8"><span>=C2= =A0</span></span><span class=3D"NormalTextRun SCXW33590977 BCX8">Soliton Sy= stems K.K</span><span class=3D"NormalTextRun SCXW33590977 BCX8">.<span>=C2= =A0</span></span><span class=3D"NormalTextRun SpellingErrorV2Themed SCXW335= 90977 BCX8">FileZen</span><span class=3D"NormalTextRun SCXW33590977 BCX8"><= span>=C2=A0</span>OS Command Injection Vulnerability</span></span><span cla= ss=3D"EOP SCXW33590977 BCX8" data-ccp-props=3D'{"201341983":0,"335559738":1= 20,"335559740":276}'>=C2=A0</span>
    </li>
    </ul>
    <p>This type of vulnerability is frequent attack vector for malicious cyber=
    actors and poses significant risks to the federal enterprise.</p>
    <p><a href=3D"https://www.cisa.gov/binding-operational-directive-22-01" tar= get=3D"_blank" title=3D"Binding Operational Directive (BOD) 22-01: Reducing=
    the Significant Risk of Known Exploited Vulnerabilities" rel=3D"noopener">= Binding Operational Directive (BOD) 22-01: Reducing the Significant Risk of=
    Known Exploited Vulnerabilities</a> established the KEV Catalog as a livin=
    g list of known Common Vulnerabilities and Exposures (CVEs) that carry sign= ificant risk to the federal enterprise. BOD 22-01 requires Federal Civilian=
    Executive Branch (FCEB) agencies to remediate identified vulnerabilities b=
    y the due date to protect FCEB networks against active threats. See the <a = href=3D"https://www.cisa.gov/sites/default/files/publications/Reducing_the_= Significant_Risk_of_Known_Exploited_Vulnerabilities_211103.pdf">BOD 22-01 F= act Sheet</a> for more information.</p>
    <p>Although BOD 22-01 only applies to FCEB agencies, CISA strongly urges al=
    l organizations to reduce their exposure to cyberattacks by prioritizing ti= mely remediation of <a href=3D"https://www.cisa.gov/known-exploited-vulnera= bilities-catalog" title=3D"Known Exploited Vulnerabilities Catalog" data-en= tity-type=3D"node" data-entity-uuid=3D"79453b83-86b9-4e2f-b1ec-abf73c6eb291=
    " data-entity-substitution=3D"canonical">KEV Catalog vulnerabilities</a> as=
    part of their vulnerability management practice. CISA will continue to add=
    vulnerabilities to the catalog that meet the <a href=3D"https://www.cisa.g= ov/known-exploited-vulnerabilities" title=3D"Reducing the Significant Risk =
    of Known Exploited Vulnerabilities" data-entity-type=3D"node" data-entity-u= uid=3D"f2adba9a-0404-494c-a90c-4363a4a5c934" data-entity-substitution=3D"ca= nonical">specified criteria</a>.=C2=A0</p>
    <p><span>This product is provided subject to this=C2=A0</span><a href=3D"ht= tps://www.cisa.gov/notification" target=3D"_blank" title=3D"Notification" r= el=3D"noopener">Notification</a><span>=C2=A0and this=C2=A0</span><a href=3D= "https://www.cisa.gov/privacy-policy" target=3D"_blank" title=3D"Privacy &a= mp; Use" rel=3D"noopener">Privacy &amp; Use</a><span>=C2=A0policy.</span></=

    </div>
    </div>
    <style>body {
    font-size: 1em; font-family: Arial, Verdana, sans-serif; font-weight: norma=
    l; font-style: normal; color: #333333;
    }
    </style>
    =20


    <div id=3D"mail_footer">
    <p style=3D"text-align: center;"><span style=3D"font-size: 10.0pt; colo=
    r: #757575;">Having trouble viewing this message?=C2=A0</span><a href=3D"ht= tps://content.govdelivery.com/accounts/USDHSCISA/bulletins/40b5233" target= =3D"_blank" rel=3D"noopener">View it as a webpage</a>.=C2=A0<a href=3D"http= s://content.govdelivery.com/accounts/USDHS/bulletins/292141e" target=3D"_bl= ank" rel=3D"noopener"></a><span style=3D"font-size: 10.0pt; color: #757575;= "></span></p>
    <p style=3D"text-align: center;"><span style=3D"font-size: 10.0pt; color: #= 757575;">You are subscribed to updates from the </span><a href=3D"https://w= ww.cisa.gov"><span style=3D"font-size: 10.0pt;">Cybersecurity and Infrastru= cture Security Agency</span></a><span style=3D"font-size: 10.0pt; color: #7= 57575;"> (CISA)<br></span><a href=3D"https://public.govdelivery.com/account= s/USDHSCISA/subscriber/edit?preferences=3Dtrue#tab1" target=3D"_blank" rel= =3D"noopener"><span style=3D"font-size: 10.0pt; color: #00568c;">Manage Sub= scriptions</span></a>=C2=A0=C2=A0<span style=3D"font-size: 10.0pt; color: #= 757575;">|=C2=A0=C2=A0</span><a href=3D"https://www.cisa.gov/privacy-policy=
    " target=3D"_blank" rel=3D"noopener"><span style=3D"font-size: 10.0pt; colo=
    r: #00568c;">Privacy Policy</span></a><span style=3D"font-size: 10.0pt; col= or: #757575;">=C2=A0=C2=A0|=C2=A0 <a href=3D"https://subscriberhelp.granicu= s.com/s/article/Subscriber-Help-Center" target=3D"_blank" rel=3D"noopener">= Help</a><a href=3D"https://insights.govdelivery.com/Communications/Subscrib= er_Help_Center" target=3D"_blank" rel=3D"noopener"></a></span><span style= =3D"font-size: 10.0pt; color: #757575;"></span></p>
    <p style=3D"text-align: center;"><span style=3D"font-size: 10.0pt; color: #= 757575;">Connect with CISA: <br></span><a href=3D"https://www.facebook.com/= CISA" target=3D"_blank" rel=3D"noopener"><span style=3D"font-size: 10.0pt; = color: #00568c;">Facebook</span></a><span style=3D"font-size: 10.0pt; color=
    : #757575;">=C2=A0 |=C2=A0 </span><a href=3D"https://twitter.com/CISAgov" t= arget=3D"_blank" rel=3D"noopener"><span style=3D"font-size: 10.0pt; color: = #00568c;">Twitter</span></a><span style=3D"font-size: 10.0pt; color: #75757= 5;">=C2=A0 |=C2=A0 </span><a href=3D"https://Instagram.com/cisagov" target= =3D"_blank" rel=3D"noopener"><span style=3D"font-size: 10.0pt; color: #0056= 8c;">Instagram</span></a><span style=3D"font-size: 10.0pt; color: #757575;"= >=C2=A0 |=C2=A0 </span><a href=3D"https://www.linkedin.com/company/cybersec= urity-and-infrastructure-security-agency" target=3D"_blank" rel=3D"noopener= "><span style=3D"font-size: 10.0pt; color: #00568c;">LinkedIn</span></a><sp=
    an style=3D"font-size: 10.0pt; color: #757575;">=C2=A0 |=C2=A0=C2=A0 </span= ><a href=3D"https://www.youtube.com/channel/UCxyq9roe-npgzrVwbpoAy0A" targe= t=3D"_self"><span style=3D"font-size: 10.0pt; color: #00568c;">YouTube</spa= n></a><span style=3D"font-size: 10.0pt; color: #757575;"></span></p>

    </div>
    <div id=3D"tagline">
    <hr>
    <table style=3D"width: 100%;" border=3D"0" cellspacing=3D"0" cellpadding=3D=

    <tbody>

    <td style=3D"color: #757575; font-size: 10px; font-family: Arial;" width=3D= "89%">This email was sent to cisa@toolazy.synchro.net using GovDelivery Com= munications Cloud, on behalf of: Cybersecurity and Infrastructure Security = Agency =C2=B7 707 17th St, Suite 4000 =C2=B7 Denver, CO 80202</td>
    <td align=3D"right" width=3D"11%"><a href=3D"https://subscriberhelp.granicu= s.com/" target=3D"_blank" rel=3D"noopener"><img src=3D"https://content.govd= elivery.com/images/govd-logo-dark.png" border=3D"0" alt=3D"GovDelivery logo=
    " width=3D"115"></a></td>
    </tr>
    </tbody>
    </table>
    <style type=3D"text/css">body .abe-column-block { min-height: 5px; } table.= gd_combo_table img {margin-left:10px; margin-right:10px;} table.gd_combo_ta= ble div.govd_image_display img, table.gd_combo_table td.gd_combo_image_cell=
    img {margin-left:0px; margin-right:0px;}</style>

    </div>
    </td>
    </tr>
    </table>

    <img alt=3D"" src=3D"https://links-2.govdelivery.com/CI0/0101019c910903a0-8= c527f84-0e76-40b9-9980-4b7c7c18f3ba-000000/7PJakZF0_l-eAKJiGALUCtDXwqzOUEFg= 22MDQ7oLD-g=3D445" style=3D"display: none; width: 1px; height: 1px;">
    </body>
    </html>

    --===============8044194841570484485==--

    --===============1162256403614507643==--


  • From CISA@cisa@messages.cisa.gov to cisa@toolazy.synchro.net on Wed Mar 11 17:37:30 2026
    --===============0092742912420291786==
    Content-Type: multipart/alternative; boundary="===============2025227589041487761=="
    MIME-Version: 1.0

    --===============2025227589041487761==
    Content-Type: text/plain; charset="utf-8"
    MIME-Version: 1.0
    Content-Transfer-Encoding: quoted-printable

    Cybersecurity and Infrastructure Security Agency (CISA)

    You are subscribed to Cybersecurity Advisories for Cybersecurity and Infras= tructure Security Agency. This information has recently been updated and is=
    now available.

    CISA Adds One Known Exploited Vulnerability to Catalog [ https://www.cisa.g= ov/news-events/alerts/2026/03/11/cisa-adds-one-known-exploited-vulnerabilit= y-catalog ] 03/11/2026 1:30 PM EST=20

    CISA has added one new vulnerability to its Known Exploited Vulnerabilities=
    (KEV) Catalog [ https://www.cisa.gov/known-exploited-vulnerabilities-catal=
    og ], based on evidence of active exploitation.


    * CVE-2025-68613 [ https://www.cve.org/CVERecord?id=3DCVE-2025-68613 ] n8=
    n Improper Control of Dynamically-Managed Code Resources Vulnerability=20

    This type of vulnerability is frequent attack vector for malicious cyber ac= tors and poses significant risks to the federal enterprise.

    Binding Operational Directive (BOD) 22-01: Reducing the Significant Risk of=
    Known Exploited Vulnerabilities [ https://www.cisa.gov/binding-operational= -directive-22-01 ] established the KEV Catalog as a living list of known Co= mmon Vulnerabilities and Exposures (CVEs) that carry significant risk to th=
    e federal enterprise. BOD 22-01 requires Federal Civilian Executive Branch = (FCEB) agencies to remediate identified vulnerabilities by the due date to = protect FCEB networks against active threats. See the BOD 22-01 Fact Sheet =
    [ https://www.cisa.gov/sites/default/files/publications/Reducing_the_Signif= icant_Risk_of_Known_Exploited_Vulnerabilities_211103.pdf ] for more informa= tion.

    Although BOD 22-01 only applies to FCEB agencies, CISA strongly urges all o= rganizations to reduce their exposure to cyberattacks by prioritizing timel=
    y remediation of KEV Catalog vulnerabilities [ https://www.cisa.gov/known-e= xploited-vulnerabilities-catalog ] as part of their vulnerability managemen=
    t practice. CISA will continue to add vulnerabilities to the catalog that m= eet the specified criteria [ https://www.cisa.gov/known-exploited-vulnerabi= lities ].=C2=A0

    This product is provided subject to this=C2=A0Notification [ https://www.ci= sa.gov/notification ]=C2=A0and this=C2=A0Privacy & Use [ https://www.cisa.g= ov/privacy-policy ]=C2=A0policy.

    body { font-size: 1em; font-family: Arial, Verdana, sans-serif; font-weight=
    : normal; font-style: normal; color: #333333; }=20

    Having trouble viewing this message?=C2=A0View it as a webpage [ https://co= ntent.govdelivery.com/accounts/USDHSCISA/bulletins/40dc07d ].=C2=A0 [ https= ://content.govdelivery.com/accounts/USDHS/bulletins/292141e ]

    You are subscribed to updates from the Cybersecurity and Infrastructure Sec= urity Agency [ https://www.cisa.gov ] (CISA)
    Manage Subscriptions [ https://public.govdelivery.com/accounts/USDHSCISA/su= bscriber/edit?preferences=3Dtrue#tab1 ]=C2=A0=C2=A0|=C2=A0=C2=A0Privacy Pol= icy [ https://www.cisa.gov/privacy-policy ]=C2=A0=C2=A0|=C2=A0 Help [ https= ://subscriberhelp.granicus.com/s/article/Subscriber-Help-Center ] [ https:/= /insights.govdelivery.com/Communications/Subscriber_Help_Center ]

    Connect with CISA:=20
    Facebook [ https://www.facebook.com/CISA ]=C2=A0 |=C2=A0 Twitter [ https://= twitter.com/CISAgov ]=C2=A0 |=C2=A0 Instagram [ https://Instagram.com/cisag=
    ov ]=C2=A0 |=C2=A0 LinkedIn [ https://www.linkedin.com/company/cybersecurit= y-and-infrastructure-security-agency ]=C2=A0 |=C2=A0=C2=A0 YouTube [ https:= //www.youtube.com/channel/UCxyq9roe-npgzrVwbpoAy0A ]

    ________________________________________________________________________

    This email was sent to cisa@toolazy.synchro.net using GovDelivery Communica= tions Cloud, on behalf of: Cybersecurity and Infrastructure Security Agency=
    =C2=B7 707 17th St, Suite 4000 =C2=B7 Denver, CO 80202 GovDelivery logo [ = https://subscriberhelp.granicus.com/ ]=20
    body .abe-column-block { min-height: 5px; } table.gd_combo_table img {margi= n-left:10px; margin-right:10px;} table.gd_combo_table div.govd_image_displa=
    y img, table.gd_combo_table td.gd_combo_image_cell img {margin-left:0px; ma= rgin-right:0px;}

    --===============2025227589041487761==
    Content-Type: text/html; charset="utf-8"
    MIME-Version: 1.0
    Content-Transfer-Encoding: quoted-printable

    <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
    "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
    <html xmlns=3D"http://www.w3.org/1999/xhtml" xml:lang=3D"en" lang=3D"en"> <head>
    <title> CISA Adds One Known Exploited Vulnerability to Catalog
    </title>


    </head>
    <body style=3D"">

    <table width=3D"700" border=3D"0" cellspacing=3D"0" cellpadding=3D"0"=
    align=3D"center">
    <tr>
    <td>

    <!--[if (gte mso 9)|(IE)]>
    <table style=3D"display:none"><tr><td><a name=3D"gd_top" id=3D"gd_top"></= a></td></tr></table>
    <![endif]-->
    <a name=3D"gd_top" id=3D"gd_top"></a>

    =20



    <p><img src=3D"https://content.govdelivery.com/attachments/fancy_images/U= SDHSCISA/2020/06/3486054/05152023-gov-delivery-banner-copy_original.png" al= t=3D"Cybersecurity and Infrastructure Security Agency (CISA)" title=3D"" wi= dth=3D"600" height=3D"100"></p>
    <p>You are subscribed to Cybersecurity Advisories for Cybersecurity and I= nfrastructure Security Agency. This information has recently been updated a=
    nd is now available.</p>
    <div class=3D"rss_item" style=3D"margin-bottom: 2em;">
    <div class=3D"rss_title" style=3D"font-weight: bold; font-size: 120%; margi=
    n: 0 0 0.3em; padding: 0;"><a href=3D"https://www.cisa.gov/news-events/aler= ts/2026/03/11/cisa-adds-one-known-exploited-vulnerability-catalog" target= =3D"_blank" title=3D"CISA Adds One Known Exploited Vulnerability to Catalog=
    " rel=3D"noopener">CISA Adds One Known Exploited Vulnerability to Catalog</= a></div>
    <div class=3D"rss_pub_date" style=3D"font-size: 90%; font-style: italic; co= lor: #666666; margin: 0 0 0.3em; padding: 0;">03/11/2026 1:30 PM EST</div>
    <div class=3D"rss_description" style=3D"margin: 0 0 0.3em; padding: 0;"> <p>CISA has added one new vulnerability to its <a href=3D"https://www.cisa.= gov/known-exploited-vulnerabilities-catalog" title=3D"Known Exploited Vulne= rabilities Catalog" data-entity-type=3D"node" data-entity-uuid=3D"79453b83-= 86b9-4e2f-b1ec-abf73c6eb291" data-entity-substitution=3D"canonical">Known E= xploited Vulnerabilities (KEV) Catalog</a>, based on evidence of active exp= loitation.</p>


    <a href=3D"https://www.cve.org/CVERecord?id=3DCVE-2025-68613" target=3D"_bl= ank" title=3D"CVE-2025-68613" class=3D"Hyperlink SCXW33590977 BCX8" rel=3D"= noopener">CVE-2025-68613</a><span class=3D"TextRun SCXW33590977 BCX8" data-= contrast=3D"auto"><span class=3D"NormalTextRun SCXW33590977 BCX8"><span> n8=
    n Improper Control of Dynamically-Managed Code Resources Vulnerability</spa= n></span></span>
    </li>
    </ul>
    <p>This type of vulnerability is frequent attack vector for malicious cyber=
    actors and poses significant risks to the federal enterprise.</p>
    <p><a href=3D"https://www.cisa.gov/binding-operational-directive-22-01" tar= get=3D"_blank" title=3D"Binding Operational Directive (BOD) 22-01: Reducing=
    the Significant Risk of Known Exploited Vulnerabilities" rel=3D"noopener">= Binding Operational Directive (BOD) 22-01: Reducing the Significant Risk of=
    Known Exploited Vulnerabilities</a> established the KEV Catalog as a livin=
    g list of known Common Vulnerabilities and Exposures (CVEs) that carry sign= ificant risk to the federal enterprise. BOD 22-01 requires Federal Civilian=
    Executive Branch (FCEB) agencies to remediate identified vulnerabilities b=
    y the due date to protect FCEB networks against active threats. See the <a = href=3D"https://www.cisa.gov/sites/default/files/publications/Reducing_the_= Significant_Risk_of_Known_Exploited_Vulnerabilities_211103.pdf">BOD 22-01 F= act Sheet</a> for more information.</p>
    <p>Although BOD 22-01 only applies to FCEB agencies, CISA strongly urges al=
    l organizations to reduce their exposure to cyberattacks by prioritizing ti= mely remediation of <a href=3D"https://www.cisa.gov/known-exploited-vulnera= bilities-catalog" title=3D"Known Exploited Vulnerabilities Catalog" data-en= tity-type=3D"node" data-entity-uuid=3D"79453b83-86b9-4e2f-b1ec-abf73c6eb291=
    " data-entity-substitution=3D"canonical">KEV Catalog vulnerabilities</a> as=
    part of their vulnerability management practice. CISA will continue to add=
    vulnerabilities to the catalog that meet the <a href=3D"https://www.cisa.g= ov/known-exploited-vulnerabilities" title=3D"Reducing the Significant Risk =
    of Known Exploited Vulnerabilities" data-entity-type=3D"node" data-entity-u= uid=3D"f2adba9a-0404-494c-a90c-4363a4a5c934" data-entity-substitution=3D"ca= nonical">specified criteria</a>.=C2=A0</p>
    <p><span>This product is provided subject to this=C2=A0</span><a href=3D"ht= tps://www.cisa.gov/notification" target=3D"_blank" title=3D"Notification" r= el=3D"noopener">Notification</a><span>=C2=A0and this=C2=A0</span><a href=3D= "https://www.cisa.gov/privacy-policy" target=3D"_blank" title=3D"Privacy &a= mp; Use" rel=3D"noopener">Privacy &amp; Use</a><span>=C2=A0policy.</span></=

    </div>
    </div>
    <style>body {
    font-size: 1em; font-family: Arial, Verdana, sans-serif; font-weight: norma=
    l; font-style: normal; color: #333333;
    }
    </style>
    =20


    <div id=3D"mail_footer">
    <p style=3D"text-align: center;"><span style=3D"font-size: 10.0pt; colo=
    r: #757575;">Having trouble viewing this message?=C2=A0</span><a href=3D"ht= tps://content.govdelivery.com/accounts/USDHSCISA/bulletins/40dc07d" target= =3D"_blank" rel=3D"noopener">View it as a webpage</a>.=C2=A0<a href=3D"http= s://content.govdelivery.com/accounts/USDHS/bulletins/292141e" target=3D"_bl= ank" rel=3D"noopener"></a><span style=3D"font-size: 10.0pt; color: #757575;= "></span></p>
    <p style=3D"text-align: center;"><span style=3D"font-size: 10.0pt; color: #= 757575;">You are subscribed to updates from the </span><a href=3D"https://w= ww.cisa.gov"><span style=3D"font-size: 10.0pt;">Cybersecurity and Infrastru= cture Security Agency</span></a><span style=3D"font-size: 10.0pt; color: #7= 57575;"> (CISA)<br></span><a href=3D"https://public.govdelivery.com/account= s/USDHSCISA/subscriber/edit?preferences=3Dtrue#tab1" target=3D"_blank" rel= =3D"noopener"><span style=3D"font-size: 10.0pt; color: #00568c;">Manage Sub= scriptions</span></a>=C2=A0=C2=A0<span style=3D"font-size: 10.0pt; color: #= 757575;">|=C2=A0=C2=A0</span><a href=3D"https://www.cisa.gov/privacy-policy=
    " target=3D"_blank" rel=3D"noopener"><span style=3D"font-size: 10.0pt; colo=
    r: #00568c;">Privacy Policy</span></a><span style=3D"font-size: 10.0pt; col= or: #757575;">=C2=A0=C2=A0|=C2=A0 <a href=3D"https://subscriberhelp.granicu= s.com/s/article/Subscriber-Help-Center" target=3D"_blank" rel=3D"noopener">= Help</a><a href=3D"https://insights.govdelivery.com/Communications/Subscrib= er_Help_Center" target=3D"_blank" rel=3D"noopener"></a></span><span style= =3D"font-size: 10.0pt; color: #757575;"></span></p>
    <p style=3D"text-align: center;"><span style=3D"font-size: 10.0pt; color: #= 757575;">Connect with CISA: <br></span><a href=3D"https://www.facebook.com/= CISA" target=3D"_blank" rel=3D"noopener"><span style=3D"font-size: 10.0pt; = color: #00568c;">Facebook</span></a><span style=3D"font-size: 10.0pt; color=
    : #757575;">=C2=A0 |=C2=A0 </span><a href=3D"https://twitter.com/CISAgov" t= arget=3D"_blank" rel=3D"noopener"><span style=3D"font-size: 10.0pt; color: = #00568c;">Twitter</span></a><span style=3D"font-size: 10.0pt; color: #75757= 5;">=C2=A0 |=C2=A0 </span><a href=3D"https://Instagram.com/cisagov" target= =3D"_blank" rel=3D"noopener"><span style=3D"font-size: 10.0pt; color: #0056= 8c;">Instagram</span></a><span style=3D"font-size: 10.0pt; color: #757575;"= >=C2=A0 |=C2=A0 </span><a href=3D"https://www.linkedin.com/company/cybersec= urity-and-infrastructure-security-agency" target=3D"_blank" rel=3D"noopener= "><span style=3D"font-size: 10.0pt; color: #00568c;">LinkedIn</span></a><sp=
    an style=3D"font-size: 10.0pt; color: #757575;">=C2=A0 |=C2=A0=C2=A0 </span= ><a href=3D"https://www.youtube.com/channel/UCxyq9roe-npgzrVwbpoAy0A" targe= t=3D"_self"><span style=3D"font-size: 10.0pt; color: #00568c;">YouTube</spa= n></a><span style=3D"font-size: 10.0pt; color: #757575;"></span></p>

    </div>
    <div id=3D"tagline">
    <hr>
    <table style=3D"width: 100%;" border=3D"0" cellspacing=3D"0" cellpadding=3D=

    <tbody>

    <td style=3D"color: #757575; font-size: 10px; font-family: Arial;" width=3D= "89%">This email was sent to cisa@toolazy.synchro.net using GovDelivery Com= munications Cloud, on behalf of: Cybersecurity and Infrastructure Security = Agency =C2=B7 707 17th St, Suite 4000 =C2=B7 Denver, CO 80202</td>
    <td align=3D"right" width=3D"11%"><a href=3D"https://subscriberhelp.granicu= s.com/" target=3D"_blank" rel=3D"noopener"><img src=3D"https://content.govd= elivery.com/images/govd-logo-dark.png" border=3D"0" alt=3D"GovDelivery logo=
    " width=3D"115"></a></td>
    </tr>
    </tbody>
    </table>
    <style type=3D"text/css">body .abe-column-block { min-height: 5px; } table.= gd_combo_table img {margin-left:10px; margin-right:10px;} table.gd_combo_ta= ble div.govd_image_display img, table.gd_combo_table td.gd_combo_image_cell=
    img {margin-left:0px; margin-right:0px;}</style>

    </div>
    </td>
    </tr>
    </table>

    <img alt=3D"" src=3D"https://links-2.govdelivery.com/CI0/0101019cddf9a2e2-3= cfe643f-7794-4ee1-87f8-7dee6fe8c525-000000/Iu60wgFjs4bTrK1ipn0Cf4OOSODTO2QR= rcTt6CiweQ0=3D448" style=3D"display: none; width: 1px; height: 1px;">
    </body>
    </html>

    --===============2025227589041487761==--

    --===============0092742912420291786==--


  • From CISA@cisa@messages.cisa.gov to cisa@toolazy.synchro.net on Mon Mar 16 17:03:18 2026
    --===============7662366384662824957==
    Content-Type: multipart/alternative; boundary="===============4178886027756954635=="
    MIME-Version: 1.0

    --===============4178886027756954635==
    Content-Type: text/plain; charset="utf-8"
    MIME-Version: 1.0
    Content-Transfer-Encoding: quoted-printable

    Cybersecurity and Infrastructure Security Agency (CISA)

    You are subscribed to Cybersecurity Advisories for Cybersecurity and Infras= tructure Security Agency. This information has recently been updated and is=
    now available.

    CISA Adds One Known Exploited Vulnerability to Catalog [ https://www.cisa.g= ov/news-events/alerts/2026/03/16/cisa-adds-one-known-exploited-vulnerabilit= y-catalog ] 03/16/2026 1:00 PM EST=20

    CISA has added one new vulnerability to its Known Exploited Vulnerabilities=
    (KEV) Catalog [ https://www.cisa.gov/known-exploited-vulnerabilities-catal=
    og ], based on evidence of active exploitation.


    * CVE-2025-47813 [ https://www.cve.org/CVERecord?id=3DCVE-2025-47813 ]=C2= =A0Wing FTP Server Information Disclosure Vulnerability=C2=A0=20

    This type of vulnerability is frequent attack vector for malicious cyber ac= tors and poses significant risks to the federal enterprise.

    Binding Operational Directive (BOD) 22-01: Reducing the Significant Risk of=
    Known Exploited Vulnerabilities [ https://www.cisa.gov/binding-operational= -directive-22-01 ] established the KEV Catalog as a living list of known Co= mmon Vulnerabilities and Exposures (CVEs) that carry significant risk to th=
    e federal enterprise. BOD 22-01 requires Federal Civilian Executive Branch = (FCEB) agencies to remediate identified vulnerabilities by the due date to = protect FCEB networks against active threats. See the BOD 22-01 Fact Sheet =
    [ https://www.cisa.gov/sites/default/files/publications/Reducing_the_Signif= icant_Risk_of_Known_Exploited_Vulnerabilities_211103.pdf ] for more informa= tion.

    Although BOD 22-01 only applies to FCEB agencies, CISA strongly urges all o= rganizations to reduce their exposure to cyberattacks by prioritizing timel=
    y remediation of KEV Catalog vulnerabilities [ https://www.cisa.gov/known-e= xploited-vulnerabilities-catalog ] as part of their vulnerability managemen=
    t practice. CISA will continue to add vulnerabilities to the catalog that m= eet the specified criteria [ https://www.cisa.gov/known-exploited-vulnerabi= lities ].=C2=A0

    This product is provided subject to this=C2=A0Notification [ https://www.ci= sa.gov/notification ]=C2=A0and this=C2=A0Privacy & Use [ https://www.cisa.g= ov/privacy-policy ]=C2=A0policy.

    body { font-size: 1em; font-family: Arial, Verdana, sans-serif; font-weight=
    : normal; font-style: normal; color: #333333; }=20

    Having trouble viewing this message?=C2=A0View it as a webpage [ https://co= ntent.govdelivery.com/accounts/USDHSCISA/bulletins/40e89c9 ].=C2=A0 [ https= ://content.govdelivery.com/accounts/USDHS/bulletins/292141e ]

    You are subscribed to updates from the Cybersecurity and Infrastructure Sec= urity Agency [ https://www.cisa.gov ] (CISA)
    Manage Subscriptions [ https://public.govdelivery.com/accounts/USDHSCISA/su= bscriber/edit?preferences=3Dtrue#tab1 ]=C2=A0=C2=A0|=C2=A0=C2=A0Privacy Pol= icy [ https://www.cisa.gov/privacy-policy ]=C2=A0=C2=A0|=C2=A0 Help [ https= ://subscriberhelp.granicus.com/s/article/Subscriber-Help-Center ] [ https:/= /insights.govdelivery.com/Communications/Subscriber_Help_Center ]

    Connect with CISA:=20
    Facebook [ https://www.facebook.com/CISA ]=C2=A0 |=C2=A0 Twitter [ https://= twitter.com/CISAgov ]=C2=A0 |=C2=A0 Instagram [ https://Instagram.com/cisag=
    ov ]=C2=A0 |=C2=A0 LinkedIn [ https://www.linkedin.com/company/cybersecurit= y-and-infrastructure-security-agency ]=C2=A0 |=C2=A0=C2=A0 YouTube [ https:= //www.youtube.com/channel/UCxyq9roe-npgzrVwbpoAy0A ]

    ________________________________________________________________________

    This email was sent to cisa@toolazy.synchro.net using GovDelivery Communica= tions Cloud, on behalf of: Cybersecurity and Infrastructure Security Agency=
    =C2=B7 707 17th St, Suite 4000 =C2=B7 Denver, CO 80202 GovDelivery logo [ = https://subscriberhelp.granicus.com/ ]=20
    body .abe-column-block { min-height: 5px; } table.gd_combo_table img {margi= n-left:10px; margin-right:10px;} table.gd_combo_table div.govd_image_displa=
    y img, table.gd_combo_table td.gd_combo_image_cell img {margin-left:0px; ma= rgin-right:0px;}

    --===============4178886027756954635==
    Content-Type: text/html; charset="utf-8"
    MIME-Version: 1.0
    Content-Transfer-Encoding: quoted-printable

    <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
    "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
    <html xmlns=3D"http://www.w3.org/1999/xhtml" xml:lang=3D"en" lang=3D"en"> <head>
    <title> CISA Adds One Known Exploited Vulnerability to Catalog
    </title>


    </head>
    <body style=3D"">

    <table width=3D"700" border=3D"0" cellspacing=3D"0" cellpadding=3D"0"=
    align=3D"center">
    <tr>
    <td>

    <!--[if (gte mso 9)|(IE)]>
    <table style=3D"display:none"><tr><td><a name=3D"gd_top" id=3D"gd_top"></= a></td></tr></table>
    <![endif]-->
    <a name=3D"gd_top" id=3D"gd_top"></a>

    =20



    <p><img src=3D"https://content.govdelivery.com/attachments/fancy_images/U= SDHSCISA/2020/06/3486054/05152023-gov-delivery-banner-copy_original.png" al= t=3D"Cybersecurity and Infrastructure Security Agency (CISA)" title=3D"" wi= dth=3D"600" height=3D"100"></p>
    <p>You are subscribed to Cybersecurity Advisories for Cybersecurity and I= nfrastructure Security Agency. This information has recently been updated a=
    nd is now available.</p>
    <div class=3D"rss_item" style=3D"margin-bottom: 2em;">
    <div class=3D"rss_title" style=3D"font-weight: bold; font-size: 120%; margi=
    n: 0 0 0.3em; padding: 0;"><a href=3D"https://www.cisa.gov/news-events/aler= ts/2026/03/16/cisa-adds-one-known-exploited-vulnerability-catalog" target= =3D"_blank" title=3D"CISA Adds One Known Exploited Vulnerability to Catalog=
    " rel=3D"noopener">CISA Adds One Known Exploited Vulnerability to Catalog</= a></div>
    <div class=3D"rss_pub_date" style=3D"font-size: 90%; font-style: italic; co= lor: #666666; margin: 0 0 0.3em; padding: 0;">03/16/2026 1:00 PM EST</div>
    <div class=3D"rss_description" style=3D"margin: 0 0 0.3em; padding: 0;"> <p>CISA has added one new vulnerability to its <a href=3D"https://www.cisa.= gov/known-exploited-vulnerabilities-catalog" title=3D"Known Exploited Vulne= rabilities Catalog" data-entity-type=3D"node" data-entity-uuid=3D"79453b83-= 86b9-4e2f-b1ec-abf73c6eb291" data-entity-substitution=3D"canonical">Known E= xploited Vulnerabilities (KEV) Catalog</a>, based on evidence of active exp= loitation.</p>


    <a href=3D"https://www.cve.org/CVERecord?id=3DCVE-2025-47813" target=3D"_bl= ank" title=3D"CVE-2025-47813" class=3D"ext" data-extlink=3D"" rel=3D"noopen= er">CVE-2025-47813</a><span>=C2=A0</span>Wing FTP Server Information Disclo= sure Vulnerability=C2=A0</li>
    </ul>
    <p>This type of vulnerability is frequent attack vector for malicious cyber=
    actors and poses significant risks to the federal enterprise.</p>
    <p><a href=3D"https://www.cisa.gov/binding-operational-directive-22-01" tar= get=3D"_blank" title=3D"Binding Operational Directive (BOD) 22-01: Reducing=
    the Significant Risk of Known Exploited Vulnerabilities" rel=3D"noopener">= Binding Operational Directive (BOD) 22-01: Reducing the Significant Risk of=
    Known Exploited Vulnerabilities</a> established the KEV Catalog as a livin=
    g list of known Common Vulnerabilities and Exposures (CVEs) that carry sign= ificant risk to the federal enterprise. BOD 22-01 requires Federal Civilian=
    Executive Branch (FCEB) agencies to remediate identified vulnerabilities b=
    y the due date to protect FCEB networks against active threats. See the <a = href=3D"https://www.cisa.gov/sites/default/files/publications/Reducing_the_= Significant_Risk_of_Known_Exploited_Vulnerabilities_211103.pdf">BOD 22-01 F= act Sheet</a> for more information.</p>
    <p>Although BOD 22-01 only applies to FCEB agencies, CISA strongly urges al=
    l organizations to reduce their exposure to cyberattacks by prioritizing ti= mely remediation of <a href=3D"https://www.cisa.gov/known-exploited-vulnera= bilities-catalog" title=3D"Known Exploited Vulnerabilities Catalog" data-en= tity-type=3D"node" data-entity-uuid=3D"79453b83-86b9-4e2f-b1ec-abf73c6eb291=
    " data-entity-substitution=3D"canonical">KEV Catalog vulnerabilities</a> as=
    part of their vulnerability management practice. CISA will continue to add=
    vulnerabilities to the catalog that meet the <a href=3D"https://www.cisa.g= ov/known-exploited-vulnerabilities" title=3D"Reducing the Significant Risk =
    of Known Exploited Vulnerabilities" data-entity-type=3D"node" data-entity-u= uid=3D"f2adba9a-0404-494c-a90c-4363a4a5c934" data-entity-substitution=3D"ca= nonical">specified criteria</a>.=C2=A0</p>
    <p><span>This product is provided subject to this=C2=A0</span><a href=3D"ht= tps://www.cisa.gov/notification" target=3D"_blank" title=3D"Notification" r= el=3D"noopener">Notification</a><span>=C2=A0and this=C2=A0</span><a href=3D= "https://www.cisa.gov/privacy-policy" target=3D"_blank" title=3D"Privacy &a= mp; Use" rel=3D"noopener">Privacy &amp; Use</a><span>=C2=A0policy.</span></=

    </div>
    </div>
    <style>body {
    font-size: 1em; font-family: Arial, Verdana, sans-serif; font-weight: norma=
    l; font-style: normal; color: #333333;
    }
    </style>
    =20


    <div id=3D"mail_footer">
    <p style=3D"text-align: center;"><span style=3D"font-size: 10.0pt; colo=
    r: #757575;">Having trouble viewing this message?=C2=A0</span><a href=3D"ht= tps://content.govdelivery.com/accounts/USDHSCISA/bulletins/40e89c9" target= =3D"_blank" rel=3D"noopener">View it as a webpage</a>.=C2=A0<a href=3D"http= s://content.govdelivery.com/accounts/USDHS/bulletins/292141e" target=3D"_bl= ank" rel=3D"noopener"></a><span style=3D"font-size: 10.0pt; color: #757575;= "></span></p>
    <p style=3D"text-align: center;"><span style=3D"font-size: 10.0pt; color: #= 757575;">You are subscribed to updates from the </span><a href=3D"https://w= ww.cisa.gov"><span style=3D"font-size: 10.0pt;">Cybersecurity and Infrastru= cture Security Agency</span></a><span style=3D"font-size: 10.0pt; color: #7= 57575;"> (CISA)<br></span><a href=3D"https://public.govdelivery.com/account= s/USDHSCISA/subscriber/edit?preferences=3Dtrue#tab1" target=3D"_blank" rel= =3D"noopener"><span style=3D"font-size: 10.0pt; color: #00568c;">Manage Sub= scriptions</span></a>=C2=A0=C2=A0<span style=3D"font-size: 10.0pt; color: #= 757575;">|=C2=A0=C2=A0</span><a href=3D"https://www.cisa.gov/privacy-policy=
    " target=3D"_blank" rel=3D"noopener"><span style=3D"font-size: 10.0pt; colo=
    r: #00568c;">Privacy Policy</span></a><span style=3D"font-size: 10.0pt; col= or: #757575;">=C2=A0=C2=A0|=C2=A0 <a href=3D"https://subscriberhelp.granicu= s.com/s/article/Subscriber-Help-Center" target=3D"_blank" rel=3D"noopener">= Help</a><a href=3D"https://insights.govdelivery.com/Communications/Subscrib= er_Help_Center" target=3D"_blank" rel=3D"noopener"></a></span><span style= =3D"font-size: 10.0pt; color: #757575;"></span></p>
    <p style=3D"text-align: center;"><span style=3D"font-size: 10.0pt; color: #= 757575;">Connect with CISA: <br></span><a href=3D"https://www.facebook.com/= CISA" target=3D"_blank" rel=3D"noopener"><span style=3D"font-size: 10.0pt; = color: #00568c;">Facebook</span></a><span style=3D"font-size: 10.0pt; color=
    : #757575;">=C2=A0 |=C2=A0 </span><a href=3D"https://twitter.com/CISAgov" t= arget=3D"_blank" rel=3D"noopener"><span style=3D"font-size: 10.0pt; color: = #00568c;">Twitter</span></a><span style=3D"font-size: 10.0pt; color: #75757= 5;">=C2=A0 |=C2=A0 </span><a href=3D"https://Instagram.com/cisagov" target= =3D"_blank" rel=3D"noopener"><span style=3D"font-size: 10.0pt; color: #0056= 8c;">Instagram</span></a><span style=3D"font-size: 10.0pt; color: #757575;"= >=C2=A0 |=C2=A0 </span><a href=3D"https://www.linkedin.com/company/cybersec= urity-and-infrastructure-security-agency" target=3D"_blank" rel=3D"noopener= "><span style=3D"font-size: 10.0pt; color: #00568c;">LinkedIn</span></a><sp=
    an style=3D"font-size: 10.0pt; color: #757575;">=C2=A0 |=C2=A0=C2=A0 </span= ><a href=3D"https://www.youtube.com/channel/UCxyq9roe-npgzrVwbpoAy0A" targe= t=3D"_self"><span style=3D"font-size: 10.0pt; color: #00568c;">YouTube</spa= n></a><span style=3D"font-size: 10.0pt; color: #757575;"></span></p>

    </div>
    <div id=3D"tagline">
    <hr>
    <table style=3D"width: 100%;" border=3D"0" cellspacing=3D"0" cellpadding=3D=

    <tbody>

    <td style=3D"color: #757575; font-size: 10px; font-family: Arial;" width=3D= "89%">This email was sent to cisa@toolazy.synchro.net using GovDelivery Com= munications Cloud, on behalf of: Cybersecurity and Infrastructure Security = Agency =C2=B7 707 17th St, Suite 4000 =C2=B7 Denver, CO 80202</td>
    <td align=3D"right" width=3D"11%"><a href=3D"https://subscriberhelp.granicu= s.com/" target=3D"_blank" rel=3D"noopener"><img src=3D"https://content.govd= elivery.com/images/govd-logo-dark.png" border=3D"0" alt=3D"GovDelivery logo=
    " width=3D"115"></a></td>
    </tr>
    </tbody>
    </table>
    <style type=3D"text/css">body .abe-column-block { min-height: 5px; } table.= gd_combo_table img {margin-left:10px; margin-right:10px;} table.gd_combo_ta= ble div.govd_image_display img, table.gd_combo_table td.gd_combo_image_cell=
    img {margin-left:0px; margin-right:0px;}</style>

    </div>
    </td>
    </tr>
    </table>

    <img alt=3D"" src=3D"https://links-2.govdelivery.com/CI0/0101019cf79a1f17-9= 57f5f8f-03fa-4e83-aa68-9c1de9a49eb1-000000/ks_9yQAEJESFJRciTR05rBdwna_mOkos= ODznV0C7AXQ=3D448" style=3D"display: none; width: 1px; height: 1px;">
    </body>
    </html>

    --===============4178886027756954635==--

    --===============7662366384662824957==--


  • From CISA@cisa@messages.cisa.gov to cisa@toolazy.synchro.net on Wed Mar 18 18:04:04 2026
    --===============0314911239677068569==
    Content-Type: multipart/alternative; boundary="===============6016163425022504088=="
    MIME-Version: 1.0

    --===============6016163425022504088==
    Content-Type: text/plain; charset="utf-8"
    MIME-Version: 1.0
    Content-Transfer-Encoding: quoted-printable

    Cybersecurity and Infrastructure Security Agency (CISA)

    You are subscribed to Cybersecurity Advisories for Cybersecurity and Infras= tructure Security Agency. This information has recently been updated and is=
    now available.

    CISA Adds One Known Exploited Vulnerability to Catalog [ https://www.cisa.g= ov/news-events/alerts/2026/03/18/cisa-adds-one-known-exploited-vulnerabilit= y-catalog ] 03/18/2026 2:00 PM EST=20

    CISA has added one new vulnerability to its Known Exploited Vulnerabilities=
    (KEV) Catalog [ https://www.cisa.gov/known-exploited-vulnerabilities-catal=
    og ], based on evidence of active exploitation.


    * CVE-2025-66376 [ https://www.cve.org/CVERecord?id=3DCVE-2025-66376 ] Sy= nacor Zimbra Collaboration Suite (ZCS) Cross-Site Scripting Vulnerability=20

    This type of vulnerability is frequent attack vector for malicious cyber ac= tors and poses significant risks to the federal enterprise.

    Binding Operational Directive (BOD) 22-01: Reducing the Significant Risk of=
    Known Exploited Vulnerabilities [ https://www.cisa.gov/binding-operational= -directive-22-01 ] established the KEV Catalog as a living list of known Co= mmon Vulnerabilities and Exposures (CVEs) that carry significant risk to th=
    e federal enterprise. BOD 22-01 requires Federal Civilian Executive Branch = (FCEB) agencies to remediate identified vulnerabilities by the due date to = protect FCEB networks against active threats. See the BOD 22-01 Fact Sheet =
    [ https://www.cisa.gov/sites/default/files/publications/Reducing_the_Signif= icant_Risk_of_Known_Exploited_Vulnerabilities_211103.pdf ] for more informa= tion.

    Although BOD 22-01 only applies to FCEB agencies, CISA strongly urges all o= rganizations to reduce their exposure to cyberattacks by prioritizing timel=
    y remediation of KEV Catalog vulnerabilities [ https://www.cisa.gov/known-e= xploited-vulnerabilities-catalog ] as part of their vulnerability managemen=
    t practice. CISA will continue to add vulnerabilities to the catalog that m= eet the specified criteria [ https://www.cisa.gov/known-exploited-vulnerabi= lities ].=C2=A0

    This product is provided subject to this=C2=A0Notification [ https://www.ci= sa.gov/notification ]=C2=A0and this=C2=A0Privacy & Use [ https://www.cisa.g= ov/privacy-policy ]=C2=A0policy.

    body { font-size: 1em; font-family: Arial, Verdana, sans-serif; font-weight=
    : normal; font-style: normal; color: #333333; }=20

    Having trouble viewing this message?=C2=A0View it as a webpage [ https://co= ntent.govdelivery.com/accounts/USDHSCISA/bulletins/40ee708 ].=C2=A0 [ https= ://content.govdelivery.com/accounts/USDHS/bulletins/292141e ]

    You are subscribed to updates from the Cybersecurity and Infrastructure Sec= urity Agency [ https://www.cisa.gov ] (CISA)
    Manage Subscriptions [ https://public.govdelivery.com/accounts/USDHSCISA/su= bscriber/edit?preferences=3Dtrue#tab1 ]=C2=A0=C2=A0|=C2=A0=C2=A0Privacy Pol= icy [ https://www.cisa.gov/privacy-policy ]=C2=A0=C2=A0|=C2=A0 Help [ https= ://subscriberhelp.granicus.com/s/article/Subscriber-Help-Center ] [ https:/= /insights.govdelivery.com/Communications/Subscriber_Help_Center ]

    Connect with CISA:=20
    Facebook [ https://www.facebook.com/CISA ]=C2=A0 |=C2=A0 Twitter [ https://= twitter.com/CISAgov ]=C2=A0 |=C2=A0 Instagram [ https://Instagram.com/cisag=
    ov ]=C2=A0 |=C2=A0 LinkedIn [ https://www.linkedin.com/company/cybersecurit= y-and-infrastructure-security-agency ]=C2=A0 |=C2=A0=C2=A0 YouTube [ https:= //www.youtube.com/channel/UCxyq9roe-npgzrVwbpoAy0A ]

    ________________________________________________________________________

    This email was sent to cisa@toolazy.synchro.net using GovDelivery Communica= tions Cloud, on behalf of: Cybersecurity and Infrastructure Security Agency=
    =C2=B7 707 17th St, Suite 4000 =C2=B7 Denver, CO 80202 GovDelivery logo [ = https://subscriberhelp.granicus.com/ ]=20
    body .abe-column-block { min-height: 5px; } table.gd_combo_table img {margi= n-left:10px; margin-right:10px;} table.gd_combo_table div.govd_image_displa=
    y img, table.gd_combo_table td.gd_combo_image_cell img {margin-left:0px; ma= rgin-right:0px;}

    --===============6016163425022504088==
    Content-Type: text/html; charset="utf-8"
    MIME-Version: 1.0
    Content-Transfer-Encoding: quoted-printable

    <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
    "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
    <html xmlns=3D"http://www.w3.org/1999/xhtml" xml:lang=3D"en" lang=3D"en"> <head>
    <title> CISA Adds One Known Exploited Vulnerability to Catalog
    </title>


    </head>
    <body style=3D"">

    <table width=3D"700" border=3D"0" cellspacing=3D"0" cellpadding=3D"0"=
    align=3D"center">
    <tr>
    <td>

    <!--[if (gte mso 9)|(IE)]>
    <table style=3D"display:none"><tr><td><a name=3D"gd_top" id=3D"gd_top"></= a></td></tr></table>
    <![endif]-->
    <a name=3D"gd_top" id=3D"gd_top"></a>

    =20



    <p><img src=3D"https://content.govdelivery.com/attachments/fancy_images/U= SDHSCISA/2020/06/3486054/05152023-gov-delivery-banner-copy_original.png" al= t=3D"Cybersecurity and Infrastructure Security Agency (CISA)" title=3D"" wi= dth=3D"600" height=3D"100"></p>
    <p>You are subscribed to Cybersecurity Advisories for Cybersecurity and I= nfrastructure Security Agency. This information has recently been updated a=
    nd is now available.</p>
    <div class=3D"rss_item" style=3D"margin-bottom: 2em;">
    <div class=3D"rss_title" style=3D"font-weight: bold; font-size: 120%; margi=
    n: 0 0 0.3em; padding: 0;"><a href=3D"https://www.cisa.gov/news-events/aler= ts/2026/03/18/cisa-adds-one-known-exploited-vulnerability-catalog" target= =3D"_blank" title=3D"CISA Adds One Known Exploited Vulnerability to Catalog=
    " rel=3D"noopener">CISA Adds One Known Exploited Vulnerability to Catalog</= a></div>
    <div class=3D"rss_pub_date" style=3D"font-size: 90%; font-style: italic; co= lor: #666666; margin: 0 0 0.3em; padding: 0;">03/18/2026 2:00 PM EST</div>
    <div class=3D"rss_description" style=3D"margin: 0 0 0.3em; padding: 0;"> <p>CISA has added one new vulnerability to its <a href=3D"https://www.cisa.= gov/known-exploited-vulnerabilities-catalog" title=3D"Known Exploited Vulne= rabilities Catalog" data-entity-type=3D"node" data-entity-uuid=3D"79453b83-= 86b9-4e2f-b1ec-abf73c6eb291" data-entity-substitution=3D"canonical">Known E= xploited Vulnerabilities (KEV) Catalog</a>, based on evidence of active exp= loitation.</p>


    <a href=3D"https://www.cve.org/CVERecord?id=3DCVE-2025-66376" target=3D"_bl= ank" title=3D"CVE-2025-66376" class=3D"ext" data-extlink=3D"" rel=3D"noopen= er">CVE-2025-66376</a><span> Synacor Zimbra Collaboration Suite (ZCS) Cross= -Site Scripting Vulnerability</span>
    </li>
    </ul>
    <p>This type of vulnerability is frequent attack vector for malicious cyber=
    actors and poses significant risks to the federal enterprise.</p>
    <p><a href=3D"https://www.cisa.gov/binding-operational-directive-22-01" tar= get=3D"_blank" title=3D"Binding Operational Directive (BOD) 22-01: Reducing=
    the Significant Risk of Known Exploited Vulnerabilities" rel=3D"noopener">= Binding Operational Directive (BOD) 22-01: Reducing the Significant Risk of=
    Known Exploited Vulnerabilities</a> established the KEV Catalog as a livin=
    g list of known Common Vulnerabilities and Exposures (CVEs) that carry sign= ificant risk to the federal enterprise. BOD 22-01 requires Federal Civilian=
    Executive Branch (FCEB) agencies to remediate identified vulnerabilities b=
    y the due date to protect FCEB networks against active threats. See the <a = href=3D"https://www.cisa.gov/sites/default/files/publications/Reducing_the_= Significant_Risk_of_Known_Exploited_Vulnerabilities_211103.pdf">BOD 22-01 F= act Sheet</a> for more information.</p>
    <p>Although BOD 22-01 only applies to FCEB agencies, CISA strongly urges al=
    l organizations to reduce their exposure to cyberattacks by prioritizing ti= mely remediation of <a href=3D"https://www.cisa.gov/known-exploited-vulnera= bilities-catalog" title=3D"Known Exploited Vulnerabilities Catalog" data-en= tity-type=3D"node" data-entity-uuid=3D"79453b83-86b9-4e2f-b1ec-abf73c6eb291=
    " data-entity-substitution=3D"canonical">KEV Catalog vulnerabilities</a> as=
    part of their vulnerability management practice. CISA will continue to add=
    vulnerabilities to the catalog that meet the <a href=3D"https://www.cisa.g= ov/known-exploited-vulnerabilities" title=3D"Reducing the Significant Risk =
    of Known Exploited Vulnerabilities" data-entity-type=3D"node" data-entity-u= uid=3D"f2adba9a-0404-494c-a90c-4363a4a5c934" data-entity-substitution=3D"ca= nonical">specified criteria</a>.=C2=A0</p>
    <p><span>This product is provided subject to this=C2=A0</span><a href=3D"ht= tps://www.cisa.gov/notification" target=3D"_blank" title=3D"Notification" r= el=3D"noopener">Notification</a><span>=C2=A0and this=C2=A0</span><a href=3D= "https://www.cisa.gov/privacy-policy" target=3D"_blank" title=3D"Privacy &a= mp; Use" rel=3D"noopener">Privacy &amp; Use</a><span>=C2=A0policy.</span></=

    </div>
    </div>
    <style>body {
    font-size: 1em; font-family: Arial, Verdana, sans-serif; font-weight: norma=
    l; font-style: normal; color: #333333;
    }
    </style>
    =20


    <div id=3D"mail_footer">
    <p style=3D"text-align: center;"><span style=3D"font-size: 10.0pt; colo=
    r: #757575;">Having trouble viewing this message?=C2=A0</span><a href=3D"ht= tps://content.govdelivery.com/accounts/USDHSCISA/bulletins/40ee708" target= =3D"_blank" rel=3D"noopener">View it as a webpage</a>.=C2=A0<a href=3D"http= s://content.govdelivery.com/accounts/USDHS/bulletins/292141e" target=3D"_bl= ank" rel=3D"noopener"></a><span style=3D"font-size: 10.0pt; color: #757575;= "></span></p>
    <p style=3D"text-align: center;"><span style=3D"font-size: 10.0pt; color: #= 757575;">You are subscribed to updates from the </span><a href=3D"https://w= ww.cisa.gov"><span style=3D"font-size: 10.0pt;">Cybersecurity and Infrastru= cture Security Agency</span></a><span style=3D"font-size: 10.0pt; color: #7= 57575;"> (CISA)<br></span><a href=3D"https://public.govdelivery.com/account= s/USDHSCISA/subscriber/edit?preferences=3Dtrue#tab1" target=3D"_blank" rel= =3D"noopener"><span style=3D"font-size: 10.0pt; color: #00568c;">Manage Sub= scriptions</span></a>=C2=A0=C2=A0<span style=3D"font-size: 10.0pt; color: #= 757575;">|=C2=A0=C2=A0</span><a href=3D"https://www.cisa.gov/privacy-policy=
    " target=3D"_blank" rel=3D"noopener"><span style=3D"font-size: 10.0pt; colo=
    r: #00568c;">Privacy Policy</span></a><span style=3D"font-size: 10.0pt; col= or: #757575;">=C2=A0=C2=A0|=C2=A0 <a href=3D"https://subscriberhelp.granicu= s.com/s/article/Subscriber-Help-Center" target=3D"_blank" rel=3D"noopener">= Help</a><a href=3D"https://insights.govdelivery.com/Communications/Subscrib= er_Help_Center" target=3D"_blank" rel=3D"noopener"></a></span><span style= =3D"font-size: 10.0pt; color: #757575;"></span></p>
    <p style=3D"text-align: center;"><span style=3D"font-size: 10.0pt; color: #= 757575;">Connect with CISA: <br></span><a href=3D"https://www.facebook.com/= CISA" target=3D"_blank" rel=3D"noopener"><span style=3D"font-size: 10.0pt; = color: #00568c;">Facebook</span></a><span style=3D"font-size: 10.0pt; color=
    : #757575;">=C2=A0 |=C2=A0 </span><a href=3D"https://twitter.com/CISAgov" t= arget=3D"_blank" rel=3D"noopener"><span style=3D"font-size: 10.0pt; color: = #00568c;">Twitter</span></a><span style=3D"font-size: 10.0pt; color: #75757= 5;">=C2=A0 |=C2=A0 </span><a href=3D"https://Instagram.com/cisagov" target= =3D"_blank" rel=3D"noopener"><span style=3D"font-size: 10.0pt; color: #0056= 8c;">Instagram</span></a><span style=3D"font-size: 10.0pt; color: #757575;"= >=C2=A0 |=C2=A0 </span><a href=3D"https://www.linkedin.com/company/cybersec= urity-and-infrastructure-security-agency" target=3D"_blank" rel=3D"noopener= "><span style=3D"font-size: 10.0pt; color: #00568c;">LinkedIn</span></a><sp=
    an style=3D"font-size: 10.0pt; color: #757575;">=C2=A0 |=C2=A0=C2=A0 </span= ><a href=3D"https://www.youtube.com/channel/UCxyq9roe-npgzrVwbpoAy0A" targe= t=3D"_self"><span style=3D"font-size: 10.0pt; color: #00568c;">YouTube</spa= n></a><span style=3D"font-size: 10.0pt; color: #757575;"></span></p>

    </div>
    <div id=3D"tagline">
    <hr>
    <table style=3D"width: 100%;" border=3D"0" cellspacing=3D"0" cellpadding=3D=

    <tbody>

    <td style=3D"color: #757575; font-size: 10px; font-family: Arial;" width=3D= "89%">This email was sent to cisa@toolazy.synchro.net using GovDelivery Com= munications Cloud, on behalf of: Cybersecurity and Infrastructure Security = Agency =C2=B7 707 17th St, Suite 4000 =C2=B7 Denver, CO 80202</td>
    <td align=3D"right" width=3D"11%"><a href=3D"https://subscriberhelp.granicu= s.com/" target=3D"_blank" rel=3D"noopener"><img src=3D"https://content.govd= elivery.com/images/govd-logo-dark.png" border=3D"0" alt=3D"GovDelivery logo=
    " width=3D"115"></a></td>
    </tr>
    </tbody>
    </table>
    <style type=3D"text/css">body .abe-column-block { min-height: 5px; } table.= gd_combo_table img {margin-left:10px; margin-right:10px;} table.gd_combo_ta= ble div.govd_image_display img, table.gd_combo_table td.gd_combo_image_cell=
    img {margin-left:0px; margin-right:0px;}</style>

    </div>
    </td>
    </tr>
    </table>

    <img alt=3D"" src=3D"https://links-2.govdelivery.com/CI0/0101019d021e7664-1= 2d3d955-6188-4373-994d-44ca6eb296aa-000000/ijx2Q0zdRPaXqfgcMJ1znNp_6y-4xcuU= mLXrTGJKGDM=3D449" style=3D"display: none; width: 1px; height: 1px;">
    </body>
    </html>

    --===============6016163425022504088==--

    --===============0314911239677068569==--


  • From CISA@cisa@messages.cisa.gov to cisa@toolazy.synchro.net on Wed Mar 18 19:54:59 2026
    --===============7814182039953543850==
    Content-Type: multipart/alternative; boundary="===============3485274395444186017=="
    MIME-Version: 1.0

    --===============3485274395444186017==
    Content-Type: text/plain; charset="utf-8"
    MIME-Version: 1.0
    Content-Transfer-Encoding: quoted-printable

    Cybersecurity and Infrastructure Security Agency (CISA)

    You are subscribed to Cybersecurity Advisories for Cybersecurity and Infras= tructure Security Agency. This information has recently been updated and is=
    now available.

    CISA Adds One Known Exploited Vulnerability to Catalog [ https://www.cisa.g= ov/news-events/alerts/2026/03/18/cisa-adds-one-known-exploited-vulnerabilit= y-catalog-0 ] 03/18/2026 4:00 PM EST=20

    CISA has added one new vulnerability to its Known Exploited Vulnerabilities=
    (KEV) Catalog [ https://www.cisa.gov/known-exploited-vulnerabilities-catal=
    og ], based on evidence of active exploitation.


    * CVE-2026-20963 [ https://www.cve.org/CVERecord?id=3DCVE-2026-20963 ] Mi= crosoft SharePoint Deserialization of Untrusted Data Vulnerability=20

    This type of vulnerability is frequent attack vector for malicious cyber ac= tors and poses significant risks to the federal enterprise.

    Binding Operational Directive (BOD) 22-01: Reducing the Significant Risk of=
    Known Exploited Vulnerabilities [ https://www.cisa.gov/binding-operational= -directive-22-01 ] established the KEV Catalog as a living list of known Co= mmon Vulnerabilities and Exposures (CVEs) that carry significant risk to th=
    e federal enterprise. BOD 22-01 requires Federal Civilian Executive Branch = (FCEB) agencies to remediate identified vulnerabilities by the due date to = protect FCEB networks against active threats. See the BOD 22-01 Fact Sheet =
    [ https://www.cisa.gov/sites/default/files/publications/Reducing_the_Signif= icant_Risk_of_Known_Exploited_Vulnerabilities_211103.pdf ] for more informa= tion.

    Although BOD 22-01 only applies to FCEB agencies, CISA strongly urges all o= rganizations to reduce their exposure to cyberattacks by prioritizing timel=
    y remediation of KEV Catalog vulnerabilities [ https://www.cisa.gov/known-e= xploited-vulnerabilities-catalog ] as part of their vulnerability managemen=
    t practice. CISA will continue to add vulnerabilities to the catalog that m= eet the specified criteria [ https://www.cisa.gov/known-exploited-vulnerabi= lities ].=C2=A0

    This product is provided subject to this=C2=A0Notification [ https://www.ci= sa.gov/notification ]=C2=A0and this=C2=A0Privacy & Use [ https://www.cisa.g= ov/privacy-policy ]=C2=A0policy.

    body { font-size: 1em; font-family: Arial, Verdana, sans-serif; font-weight=
    : normal; font-style: normal; color: #333333; }=20

    Having trouble viewing this message?=C2=A0View it as a webpage [ https://co= ntent.govdelivery.com/accounts/USDHSCISA/bulletins/40eeecc ].=C2=A0 [ https= ://content.govdelivery.com/accounts/USDHS/bulletins/292141e ]

    You are subscribed to updates from the Cybersecurity and Infrastructure Sec= urity Agency [ https://www.cisa.gov ] (CISA)
    Manage Subscriptions [ https://public.govdelivery.com/accounts/USDHSCISA/su= bscriber/edit?preferences=3Dtrue#tab1 ]=C2=A0=C2=A0|=C2=A0=C2=A0Privacy Pol= icy [ https://www.cisa.gov/privacy-policy ]=C2=A0=C2=A0|=C2=A0 Help [ https= ://subscriberhelp.granicus.com/s/article/Subscriber-Help-Center ] [ https:/= /insights.govdelivery.com/Communications/Subscriber_Help_Center ]

    Connect with CISA:=20
    Facebook [ https://www.facebook.com/CISA ]=C2=A0 |=C2=A0 Twitter [ https://= twitter.com/CISAgov ]=C2=A0 |=C2=A0 Instagram [ https://Instagram.com/cisag=
    ov ]=C2=A0 |=C2=A0 LinkedIn [ https://www.linkedin.com/company/cybersecurit= y-and-infrastructure-security-agency ]=C2=A0 |=C2=A0=C2=A0 YouTube [ https:= //www.youtube.com/channel/UCxyq9roe-npgzrVwbpoAy0A ]

    ________________________________________________________________________

    This email was sent to cisa@toolazy.synchro.net using GovDelivery Communica= tions Cloud, on behalf of: Cybersecurity and Infrastructure Security Agency=
    =C2=B7 707 17th St, Suite 4000 =C2=B7 Denver, CO 80202 GovDelivery logo [ = https://subscriberhelp.granicus.com/ ]=20
    body .abe-column-block { min-height: 5px; } table.gd_combo_table img {margi= n-left:10px; margin-right:10px;} table.gd_combo_table div.govd_image_displa=
    y img, table.gd_combo_table td.gd_combo_image_cell img {margin-left:0px; ma= rgin-right:0px;}

    --===============3485274395444186017==
    Content-Type: text/html; charset="utf-8"
    MIME-Version: 1.0
    Content-Transfer-Encoding: quoted-printable

    <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
    "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
    <html xmlns=3D"http://www.w3.org/1999/xhtml" xml:lang=3D"en" lang=3D"en"> <head>
    <title> CISA Adds One Known Exploited Vulnerability to Catalog
    </title>


    </head>
    <body style=3D"">

    <table width=3D"700" border=3D"0" cellspacing=3D"0" cellpadding=3D"0"=
    align=3D"center">
    <tr>
    <td>

    <!--[if (gte mso 9)|(IE)]>
    <table style=3D"display:none"><tr><td><a name=3D"gd_top" id=3D"gd_top"></= a></td></tr></table>
    <![endif]-->
    <a name=3D"gd_top" id=3D"gd_top"></a>

    =20



    <p><img src=3D"https://content.govdelivery.com/attachments/fancy_images/U= SDHSCISA/2020/06/3486054/05152023-gov-delivery-banner-copy_original.png" al= t=3D"Cybersecurity and Infrastructure Security Agency (CISA)" title=3D"" wi= dth=3D"600" height=3D"100"></p>
    <p>You are subscribed to Cybersecurity Advisories for Cybersecurity and I= nfrastructure Security Agency. This information has recently been updated a=
    nd is now available.</p>
    <div class=3D"rss_item" style=3D"margin-bottom: 2em;">
    <div class=3D"rss_title" style=3D"font-weight: bold; font-size: 120%; margi=
    n: 0 0 0.3em; padding: 0;"><a href=3D"https://www.cisa.gov/news-events/aler= ts/2026/03/18/cisa-adds-one-known-exploited-vulnerability-catalog-0" target= =3D"_blank" title=3D"CISA Adds One Known Exploited Vulnerability to Catalog=
    " rel=3D"noopener">CISA Adds One Known Exploited Vulnerability to Catalog</= a></div>
    <div class=3D"rss_pub_date" style=3D"font-size: 90%; font-style: italic; co= lor: #666666; margin: 0 0 0.3em; padding: 0;">03/18/2026 4:00 PM EST</div>
    <div class=3D"rss_description" style=3D"margin: 0 0 0.3em; padding: 0;"> <p>CISA has added one new vulnerability to its <a href=3D"https://www.cisa.= gov/known-exploited-vulnerabilities-catalog" title=3D"Known Exploited Vulne= rabilities Catalog" data-entity-type=3D"node" data-entity-uuid=3D"79453b83-= 86b9-4e2f-b1ec-abf73c6eb291" data-entity-substitution=3D"canonical">Known E= xploited Vulnerabilities (KEV) Catalog</a>, based on evidence of active exp= loitation.</p>


    <a href=3D"https://www.cve.org/CVERecord?id=3DCVE-2026-20963" target=3D"_bl= ank" title=3D"CVE-2026-20963" class=3D"ext" data-extlink=3D"" rel=3D"noopen= er">CVE-2026-20963</a><span> Microsoft SharePoint Deserialization of Untrus= ted Data Vulnerability </span>
    </li>
    </ul>
    <p>This type of vulnerability is frequent attack vector for malicious cyber=
    actors and poses significant risks to the federal enterprise.</p>
    <p><a href=3D"https://www.cisa.gov/binding-operational-directive-22-01" tar= get=3D"_blank" title=3D"Binding Operational Directive (BOD) 22-01: Reducing=
    the Significant Risk of Known Exploited Vulnerabilities" rel=3D"noopener">= Binding Operational Directive (BOD) 22-01: Reducing the Significant Risk of=
    Known Exploited Vulnerabilities</a> established the KEV Catalog as a livin=
    g list of known Common Vulnerabilities and Exposures (CVEs) that carry sign= ificant risk to the federal enterprise. BOD 22-01 requires Federal Civilian=
    Executive Branch (FCEB) agencies to remediate identified vulnerabilities b=
    y the due date to protect FCEB networks against active threats. See the <a = href=3D"https://www.cisa.gov/sites/default/files/publications/Reducing_the_= Significant_Risk_of_Known_Exploited_Vulnerabilities_211103.pdf">BOD 22-01 F= act Sheet</a> for more information.</p>
    <p>Although BOD 22-01 only applies to FCEB agencies, CISA strongly urges al=
    l organizations to reduce their exposure to cyberattacks by prioritizing ti= mely remediation of <a href=3D"https://www.cisa.gov/known-exploited-vulnera= bilities-catalog" title=3D"Known Exploited Vulnerabilities Catalog" data-en= tity-type=3D"node" data-entity-uuid=3D"79453b83-86b9-4e2f-b1ec-abf73c6eb291=
    " data-entity-substitution=3D"canonical">KEV Catalog vulnerabilities</a> as=
    part of their vulnerability management practice. CISA will continue to add=
    vulnerabilities to the catalog that meet the <a href=3D"https://www.cisa.g= ov/known-exploited-vulnerabilities" title=3D"Reducing the Significant Risk =
    of Known Exploited Vulnerabilities" data-entity-type=3D"node" data-entity-u= uid=3D"f2adba9a-0404-494c-a90c-4363a4a5c934" data-entity-substitution=3D"ca= nonical">specified criteria</a>.=C2=A0</p>
    <p><span>This product is provided subject to this=C2=A0</span><a href=3D"ht= tps://www.cisa.gov/notification" target=3D"_blank" title=3D"Notification" r= el=3D"noopener">Notification</a><span>=C2=A0and this=C2=A0</span><a href=3D= "https://www.cisa.gov/privacy-policy" target=3D"_blank" title=3D"Privacy &a= mp; Use" rel=3D"noopener">Privacy &amp; Use</a><span>=C2=A0policy.</span></=

    </div>
    </div>
    <style>body {
    font-size: 1em; font-family: Arial, Verdana, sans-serif; font-weight: norma=
    l; font-style: normal; color: #333333;
    }
    </style>
    =20


    <div id=3D"mail_footer">
    <p style=3D"text-align: center;"><span style=3D"font-size: 10.0pt; colo=
    r: #757575;">Having trouble viewing this message?=C2=A0</span><a href=3D"ht= tps://content.govdelivery.com/accounts/USDHSCISA/bulletins/40eeecc" target= =3D"_blank" rel=3D"noopener">View it as a webpage</a>.=C2=A0<a href=3D"http= s://content.govdelivery.com/accounts/USDHS/bulletins/292141e" target=3D"_bl= ank" rel=3D"noopener"></a><span style=3D"font-size: 10.0pt; color: #757575;= "></span></p>
    <p style=3D"text-align: center;"><span style=3D"font-size: 10.0pt; color: #= 757575;">You are subscribed to updates from the </span><a href=3D"https://w= ww.cisa.gov"><span style=3D"font-size: 10.0pt;">Cybersecurity and Infrastru= cture Security Agency</span></a><span style=3D"font-size: 10.0pt; color: #7= 57575;"> (CISA)<br></span><a href=3D"https://public.govdelivery.com/account= s/USDHSCISA/subscriber/edit?preferences=3Dtrue#tab1" target=3D"_blank" rel= =3D"noopener"><span style=3D"font-size: 10.0pt; color: #00568c;">Manage Sub= scriptions</span></a>=C2=A0=C2=A0<span style=3D"font-size: 10.0pt; color: #= 757575;">|=C2=A0=C2=A0</span><a href=3D"https://www.cisa.gov/privacy-policy=
    " target=3D"_blank" rel=3D"noopener"><span style=3D"font-size: 10.0pt; colo=
    r: #00568c;">Privacy Policy</span></a><span style=3D"font-size: 10.0pt; col= or: #757575;">=C2=A0=C2=A0|=C2=A0 <a href=3D"https://subscriberhelp.granicu= s.com/s/article/Subscriber-Help-Center" target=3D"_blank" rel=3D"noopener">= Help</a><a href=3D"https://insights.govdelivery.com/Communications/Subscrib= er_Help_Center" target=3D"_blank" rel=3D"noopener"></a></span><span style= =3D"font-size: 10.0pt; color: #757575;"></span></p>
    <p style=3D"text-align: center;"><span style=3D"font-size: 10.0pt; color: #= 757575;">Connect with CISA: <br></span><a href=3D"https://www.facebook.com/= CISA" target=3D"_blank" rel=3D"noopener"><span style=3D"font-size: 10.0pt; = color: #00568c;">Facebook</span></a><span style=3D"font-size: 10.0pt; color=
    : #757575;">=C2=A0 |=C2=A0 </span><a href=3D"https://twitter.com/CISAgov" t= arget=3D"_blank" rel=3D"noopener"><span style=3D"font-size: 10.0pt; color: = #00568c;">Twitter</span></a><span style=3D"font-size: 10.0pt; color: #75757= 5;">=C2=A0 |=C2=A0 </span><a href=3D"https://Instagram.com/cisagov" target= =3D"_blank" rel=3D"noopener"><span style=3D"font-size: 10.0pt; color: #0056= 8c;">Instagram</span></a><span style=3D"font-size: 10.0pt; color: #757575;"= >=C2=A0 |=C2=A0 </span><a href=3D"https://www.linkedin.com/company/cybersec= urity-and-infrastructure-security-agency" target=3D"_blank" rel=3D"noopener= "><span style=3D"font-size: 10.0pt; color: #00568c;">LinkedIn</span></a><sp=
    an style=3D"font-size: 10.0pt; color: #757575;">=C2=A0 |=C2=A0=C2=A0 </span= ><a href=3D"https://www.youtube.com/channel/UCxyq9roe-npgzrVwbpoAy0A" targe= t=3D"_self"><span style=3D"font-size: 10.0pt; color: #00568c;">YouTube</spa= n></a><span style=3D"font-size: 10.0pt; color: #757575;"></span></p>

    </div>
    <div id=3D"tagline">
    <hr>
    <table style=3D"width: 100%;" border=3D"0" cellspacing=3D"0" cellpadding=3D=

    <tbody>

    <td style=3D"color: #757575; font-size: 10px; font-family: Arial;" width=3D= "89%">This email was sent to cisa@toolazy.synchro.net using GovDelivery Com= munications Cloud, on behalf of: Cybersecurity and Infrastructure Security = Agency =C2=B7 707 17th St, Suite 4000 =C2=B7 Denver, CO 80202</td>
    <td align=3D"right" width=3D"11%"><a href=3D"https://subscriberhelp.granicu= s.com/" target=3D"_blank" rel=3D"noopener"><img src=3D"https://content.govd= elivery.com/images/govd-logo-dark.png" border=3D"0" alt=3D"GovDelivery logo=
    " width=3D"115"></a></td>
    </tr>
    </tbody>
    </table>
    <style type=3D"text/css">body .abe-column-block { min-height: 5px; } table.= gd_combo_table img {margin-left:10px; margin-right:10px;} table.gd_combo_ta= ble div.govd_image_display img, table.gd_combo_table td.gd_combo_image_cell=
    img {margin-left:0px; margin-right:0px;}</style>

    </div>
    </td>
    </tr>
    </table>

    <img alt=3D"" src=3D"https://links-2.govdelivery.com/CI0/0101019d02840519-a= d076a6c-6cab-41c0-a232-61fcaa5379c0-000000/muwJFWrap0Y9BSEPgbgZ4MtPiAq7v6MC= 79XVSV8-2nY=3D449" style=3D"display: none; width: 1px; height: 1px;">
    </body>
    </html>

    --===============3485274395444186017==--

    --===============7814182039953543850==--


  • From CISA@cisa@messages.cisa.gov to cisa@toolazy.synchro.net on Thu Mar 19 15:38:52 2026
    --===============7714106847933306757==
    Content-Type: multipart/alternative; boundary="===============0582989379888339452=="
    MIME-Version: 1.0

    --===============0582989379888339452==
    Content-Type: text/plain; charset="utf-8"
    MIME-Version: 1.0
    Content-Transfer-Encoding: quoted-printable

    Cybersecurity and Infrastructure Security Agency (CISA)

    You are subscribed to Cybersecurity Advisories for Cybersecurity and Infras= tructure Security Agency. This information has recently been updated and is=
    now available.

    CISA Adds One Known Exploited Vulnerability to Catalog [ https://www.cisa.g= ov/news-events/alerts/2026/03/19/cisa-adds-one-known-exploited-vulnerabilit= y-catalog ] 03/19/2026 11:30 AM EST=20

    CISA has added one new vulnerability to its Known Exploited Vulnerabilities=
    (KEV) Catalog [ https://www.cisa.gov/known-exploited-vulnerabilities-catal=
    og ], based on evidence of active exploitation.


    * CVE-2026-20131 [ https://www.cve.org/CVERecord?id=3DCVE-2026-20131 ] Ci= sco Secure Firewall Management Center (FMC) Software and Cisco Security Clo=
    ud Control (SCC) Firewall Management Deserialization of Untrusted Data Vuln= erability=20

    This type of vulnerability is frequent attack vector for malicious cyber ac= tors and poses significant risks to the federal enterprise.

    Binding Operational Directive (BOD) 22-01: Reducing the Significant Risk of=
    Known Exploited Vulnerabilities [ https://www.cisa.gov/binding-operational= -directive-22-01 ] established the KEV Catalog as a living list of known Co= mmon Vulnerabilities and Exposures (CVEs) that carry significant risk to th=
    e federal enterprise. BOD 22-01 requires Federal Civilian Executive Branch = (FCEB) agencies to remediate identified vulnerabilities by the due date to = protect FCEB networks against active threats. See the BOD 22-01 Fact Sheet =
    [ https://www.cisa.gov/sites/default/files/publications/Reducing_the_Signif= icant_Risk_of_Known_Exploited_Vulnerabilities_211103.pdf ] for more informa= tion.

    Although BOD 22-01 only applies to FCEB agencies, CISA strongly urges all o= rganizations to reduce their exposure to cyberattacks by prioritizing timel=
    y remediation of KEV Catalog vulnerabilities [ https://www.cisa.gov/known-e= xploited-vulnerabilities-catalog ] as part of their vulnerability managemen=
    t practice. CISA will continue to add vulnerabilities to the catalog that m= eet the specified criteria [ https://www.cisa.gov/known-exploited-vulnerabi= lities ].=C2=A0

    This product is provided subject to this=C2=A0Notification [ https://www.ci= sa.gov/notification ]=C2=A0and this=C2=A0Privacy & Use [ https://www.cisa.g= ov/privacy-policy ]=C2=A0policy.

    body { font-size: 1em; font-family: Arial, Verdana, sans-serif; font-weight=
    : normal; font-style: normal; color: #333333; }=20

    Having trouble viewing this message?=C2=A0View it as a webpage [ https://co= ntent.govdelivery.com/accounts/USDHSCISA/bulletins/40f0f90 ].=C2=A0 [ https= ://content.govdelivery.com/accounts/USDHS/bulletins/292141e ]

    You are subscribed to updates from the Cybersecurity and Infrastructure Sec= urity Agency [ https://www.cisa.gov ] (CISA)
    Manage Subscriptions [ https://public.govdelivery.com/accounts/USDHSCISA/su= bscriber/edit?preferences=3Dtrue#tab1 ]=C2=A0=C2=A0|=C2=A0=C2=A0Privacy Pol= icy [ https://www.cisa.gov/privacy-policy ]=C2=A0=C2=A0|=C2=A0 Help [ https= ://subscriberhelp.granicus.com/s/article/Subscriber-Help-Center ] [ https:/= /insights.govdelivery.com/Communications/Subscriber_Help_Center ]

    Connect with CISA:=20
    Facebook [ https://www.facebook.com/CISA ]=C2=A0 |=C2=A0 Twitter [ https://= twitter.com/CISAgov ]=C2=A0 |=C2=A0 Instagram [ https://Instagram.com/cisag=
    ov ]=C2=A0 |=C2=A0 LinkedIn [ https://www.linkedin.com/company/cybersecurit= y-and-infrastructure-security-agency ]=C2=A0 |=C2=A0=C2=A0 YouTube [ https:= //www.youtube.com/channel/UCxyq9roe-npgzrVwbpoAy0A ]

    ________________________________________________________________________

    This email was sent to cisa@toolazy.synchro.net using GovDelivery Communica= tions Cloud, on behalf of: Cybersecurity and Infrastructure Security Agency=
    =C2=B7 707 17th St, Suite 4000 =C2=B7 Denver, CO 80202 GovDelivery logo [ = https://subscriberhelp.granicus.com/ ]=20
    body .abe-column-block { min-height: 5px; } table.gd_combo_table img {margi= n-left:10px; margin-right:10px;} table.gd_combo_table div.govd_image_displa=
    y img, table.gd_combo_table td.gd_combo_image_cell img {margin-left:0px; ma= rgin-right:0px;}

    --===============0582989379888339452==
    Content-Type: text/html; charset="utf-8"
    MIME-Version: 1.0
    Content-Transfer-Encoding: quoted-printable

    <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
    "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
    <html xmlns=3D"http://www.w3.org/1999/xhtml" xml:lang=3D"en" lang=3D"en"> <head>
    <title> CISA Adds One Known Exploited Vulnerability to Catalog
    </title>


    </head>
    <body style=3D"">

    <table width=3D"700" border=3D"0" cellspacing=3D"0" cellpadding=3D"0"=
    align=3D"center">
    <tr>
    <td>

    <!--[if (gte mso 9)|(IE)]>
    <table style=3D"display:none"><tr><td><a name=3D"gd_top" id=3D"gd_top"></= a></td></tr></table>
    <![endif]-->
    <a name=3D"gd_top" id=3D"gd_top"></a>

    =20



    <p><img src=3D"https://content.govdelivery.com/attachments/fancy_images/U= SDHSCISA/2020/06/3486054/05152023-gov-delivery-banner-copy_original.png" al= t=3D"Cybersecurity and Infrastructure Security Agency (CISA)" title=3D"" wi= dth=3D"600" height=3D"100"></p>
    <p>You are subscribed to Cybersecurity Advisories for Cybersecurity and I= nfrastructure Security Agency. This information has recently been updated a=
    nd is now available.</p>
    <div class=3D"rss_item" style=3D"margin-bottom: 2em;">
    <div class=3D"rss_title" style=3D"font-weight: bold; font-size: 120%; margi=
    n: 0 0 0.3em; padding: 0;"><a href=3D"https://www.cisa.gov/news-events/aler= ts/2026/03/19/cisa-adds-one-known-exploited-vulnerability-catalog" target= =3D"_blank" title=3D"CISA Adds One Known Exploited Vulnerability to Catalog=
    " rel=3D"noopener">CISA Adds One Known Exploited Vulnerability to Catalog</= a></div>
    <div class=3D"rss_pub_date" style=3D"font-size: 90%; font-style: italic; co= lor: #666666; margin: 0 0 0.3em; padding: 0;">03/19/2026 11:30 AM EST</div> <div class=3D"rss_description" style=3D"margin: 0 0 0.3em; padding: 0;"> <p>CISA has added one new vulnerability to its <a href=3D"https://www.cisa.= gov/known-exploited-vulnerabilities-catalog" title=3D"Known Exploited Vulne= rabilities Catalog" data-entity-type=3D"node" data-entity-uuid=3D"79453b83-= 86b9-4e2f-b1ec-abf73c6eb291" data-entity-substitution=3D"canonical">Known E= xploited Vulnerabilities (KEV) Catalog</a>, based on evidence of active exp= loitation.</p>


    <a href=3D"https://www.cve.org/CVERecord?id=3DCVE-2026-20131" target=3D"_bl= ank" title=3D"CVE-2026-20131" class=3D"ext" data-extlink=3D"" rel=3D"noopen= er">CVE-2026-20131</a><span> Cisco Secure Firewall Management Center (FMC) = Software and Cisco Security Cloud Control (SCC) Firewall Management Deseria= lization of Untrusted Data Vulnerability</span>
    </li>
    </ul>
    <p>This type of vulnerability is frequent attack vector for malicious cyber=
    actors and poses significant risks to the federal enterprise.</p>
    <p><a href=3D"https://www.cisa.gov/binding-operational-directive-22-01" tar= get=3D"_blank" title=3D"Binding Operational Directive (BOD) 22-01: Reducing=
    the Significant Risk of Known Exploited Vulnerabilities" rel=3D"noopener">= Binding Operational Directive (BOD) 22-01: Reducing the Significant Risk of=
    Known Exploited Vulnerabilities</a> established the KEV Catalog as a livin=
    g list of known Common Vulnerabilities and Exposures (CVEs) that carry sign= ificant risk to the federal enterprise. BOD 22-01 requires Federal Civilian=
    Executive Branch (FCEB) agencies to remediate identified vulnerabilities b=
    y the due date to protect FCEB networks against active threats. See the <a = href=3D"https://www.cisa.gov/sites/default/files/publications/Reducing_the_= Significant_Risk_of_Known_Exploited_Vulnerabilities_211103.pdf">BOD 22-01 F= act Sheet</a> for more information.</p>
    <p>Although BOD 22-01 only applies to FCEB agencies, CISA strongly urges al=
    l organizations to reduce their exposure to cyberattacks by prioritizing ti= mely remediation of <a href=3D"https://www.cisa.gov/known-exploited-vulnera= bilities-catalog" title=3D"Known Exploited Vulnerabilities Catalog" data-en= tity-type=3D"node" data-entity-uuid=3D"79453b83-86b9-4e2f-b1ec-abf73c6eb291=
    " data-entity-substitution=3D"canonical">KEV Catalog vulnerabilities</a> as=
    part of their vulnerability management practice. CISA will continue to add=
    vulnerabilities to the catalog that meet the <a href=3D"https://www.cisa.g= ov/known-exploited-vulnerabilities" title=3D"Reducing the Significant Risk =
    of Known Exploited Vulnerabilities" data-entity-type=3D"node" data-entity-u= uid=3D"f2adba9a-0404-494c-a90c-4363a4a5c934" data-entity-substitution=3D"ca= nonical">specified criteria</a>.=C2=A0</p>
    <p><span>This product is provided subject to this=C2=A0</span><a href=3D"ht= tps://www.cisa.gov/notification" target=3D"_blank" title=3D"Notification" r= el=3D"noopener">Notification</a><span>=C2=A0and this=C2=A0</span><a href=3D= "https://www.cisa.gov/privacy-policy" target=3D"_blank" title=3D"Privacy &a= mp; Use" rel=3D"noopener">Privacy &amp; Use</a><span>=C2=A0policy.</span></=

    </div>
    </div>
    <style>body {
    font-size: 1em; font-family: Arial, Verdana, sans-serif; font-weight: norma=
    l; font-style: normal; color: #333333;
    }
    </style>
    =20


    <div id=3D"mail_footer">
    <p style=3D"text-align: center;"><span style=3D"font-size: 10.0pt; colo=
    r: #757575;">Having trouble viewing this message?=C2=A0</span><a href=3D"ht= tps://content.govdelivery.com/accounts/USDHSCISA/bulletins/40f0f90" target= =3D"_blank" rel=3D"noopener">View it as a webpage</a>.=C2=A0<a href=3D"http= s://content.govdelivery.com/accounts/USDHS/bulletins/292141e" target=3D"_bl= ank" rel=3D"noopener"></a><span style=3D"font-size: 10.0pt; color: #757575;= "></span></p>
    <p style=3D"text-align: center;"><span style=3D"font-size: 10.0pt; color: #= 757575;">You are subscribed to updates from the </span><a href=3D"https://w= ww.cisa.gov"><span style=3D"font-size: 10.0pt;">Cybersecurity and Infrastru= cture Security Agency</span></a><span style=3D"font-size: 10.0pt; color: #7= 57575;"> (CISA)<br></span><a href=3D"https://public.govdelivery.com/account= s/USDHSCISA/subscriber/edit?preferences=3Dtrue#tab1" target=3D"_blank" rel= =3D"noopener"><span style=3D"font-size: 10.0pt; color: #00568c;">Manage Sub= scriptions</span></a>=C2=A0=C2=A0<span style=3D"font-size: 10.0pt; color: #= 757575;">|=C2=A0=C2=A0</span><a href=3D"https://www.cisa.gov/privacy-policy=
    " target=3D"_blank" rel=3D"noopener"><span style=3D"font-size: 10.0pt; colo=
    r: #00568c;">Privacy Policy</span></a><span style=3D"font-size: 10.0pt; col= or: #757575;">=C2=A0=C2=A0|=C2=A0 <a href=3D"https://subscriberhelp.granicu= s.com/s/article/Subscriber-Help-Center" target=3D"_blank" rel=3D"noopener">= Help</a><a href=3D"https://insights.govdelivery.com/Communications/Subscrib= er_Help_Center" target=3D"_blank" rel=3D"noopener"></a></span><span style= =3D"font-size: 10.0pt; color: #757575;"></span></p>
    <p style=3D"text-align: center;"><span style=3D"font-size: 10.0pt; color: #= 757575;">Connect with CISA: <br></span><a href=3D"https://www.facebook.com/= CISA" target=3D"_blank" rel=3D"noopener"><span style=3D"font-size: 10.0pt; = color: #00568c;">Facebook</span></a><span style=3D"font-size: 10.0pt; color=
    : #757575;">=C2=A0 |=C2=A0 </span><a href=3D"https://twitter.com/CISAgov" t= arget=3D"_blank" rel=3D"noopener"><span style=3D"font-size: 10.0pt; color: = #00568c;">Twitter</span></a><span style=3D"font-size: 10.0pt; color: #75757= 5;">=C2=A0 |=C2=A0 </span><a href=3D"https://Instagram.com/cisagov" target= =3D"_blank" rel=3D"noopener"><span style=3D"font-size: 10.0pt; color: #0056= 8c;">Instagram</span></a><span style=3D"font-size: 10.0pt; color: #757575;"= >=C2=A0 |=C2=A0 </span><a href=3D"https://www.linkedin.com/company/cybersec= urity-and-infrastructure-security-agency" target=3D"_blank" rel=3D"noopener= "><span style=3D"font-size: 10.0pt; color: #00568c;">LinkedIn</span></a><sp=
    an style=3D"font-size: 10.0pt; color: #757575;">=C2=A0 |=C2=A0=C2=A0 </span= ><a href=3D"https://www.youtube.com/channel/UCxyq9roe-npgzrVwbpoAy0A" targe= t=3D"_self"><span style=3D"font-size: 10.0pt; color: #00568c;">YouTube</spa= n></a><span style=3D"font-size: 10.0pt; color: #757575;"></span></p>

    </div>
    <div id=3D"tagline">
    <hr>
    <table style=3D"width: 100%;" border=3D"0" cellspacing=3D"0" cellpadding=3D=

    <tbody>

    <td style=3D"color: #757575; font-size: 10px; font-family: Arial;" width=3D= "89%">This email was sent to cisa@toolazy.synchro.net using GovDelivery Com= munications Cloud, on behalf of: Cybersecurity and Infrastructure Security = Agency =C2=B7 707 17th St, Suite 4000 =C2=B7 Denver, CO 80202</td>
    <td align=3D"right" width=3D"11%"><a href=3D"https://subscriberhelp.granicu= s.com/" target=3D"_blank" rel=3D"noopener"><img src=3D"https://content.govd= elivery.com/images/govd-logo-dark.png" border=3D"0" alt=3D"GovDelivery logo=
    " width=3D"115"></a></td>
    </tr>
    </tbody>
    </table>
    <style type=3D"text/css">body .abe-column-block { min-height: 5px; } table.= gd_combo_table img {margin-left:10px; margin-right:10px;} table.gd_combo_ta= ble div.govd_image_display img, table.gd_combo_table td.gd_combo_image_cell=
    img {margin-left:0px; margin-right:0px;}</style>

    </div>
    </td>
    </tr>
    </table>

    <img alt=3D"" src=3D"https://links-2.govdelivery.com/CI0/0101019d06bfe67e-4= 4b60dd7-dca9-4a9d-b0d4-138afee7baa1-000000/2OuykLMA56mLjSw9OXWUla9-73GX6n_t= ngDU1pYM0z4=3D449" style=3D"display: none; width: 1px; height: 1px;">
    </body>
    </html>

    --===============0582989379888339452==--

    --===============7714106847933306757==--


  • From CISA@cisa@messages.cisa.gov to cisa@toolazy.synchro.net on Wed Mar 25 18:14:07 2026
    --===============1588543842996720121==
    Content-Type: multipart/alternative; boundary="===============7259854484285155270=="
    MIME-Version: 1.0

    --===============7259854484285155270==
    Content-Type: text/plain; charset="utf-8"
    MIME-Version: 1.0
    Content-Transfer-Encoding: quoted-printable

    Cybersecurity and Infrastructure Security Agency (CISA)

    You are subscribed to Cybersecurity Advisories for Cybersecurity and Infras= tructure Security Agency. This information has recently been updated and is=
    now available.

    CISA Adds One Known Exploited Vulnerability to Catalog [ https://www.cisa.g= ov/news-events/alerts/2026/03/25/cisa-adds-one-known-exploited-vulnerabilit= y-catalog ] 03/25/2026 2:00 PM EST=20

    CISA has added one new vulnerability to its Known Exploited Vulnerabilities=
    (KEV) Catalog [ https://www.cisa.gov/known-exploited-vulnerabilities-catal=
    og ], based on evidence of active exploitation.


    * CVE-2026-33017 [ https://www.cve.org/CVERecord?id=3DCVE-2026-33017 ] La= ngflow Code Injection Vulnerability=20

    This type of vulnerability is frequent attack vector for malicious cyber ac= tors and poses significant risks to the federal enterprise.

    Binding Operational Directive (BOD) 22-01: Reducing the Significant Risk of=
    Known Exploited Vulnerabilities [ https://www.cisa.gov/binding-operational= -directive-22-01 ] established the KEV Catalog as a living list of known Co= mmon Vulnerabilities and Exposures (CVEs) that carry significant risk to th=
    e federal enterprise. BOD 22-01 requires Federal Civilian Executive Branch = (FCEB) agencies to remediate identified vulnerabilities by the due date to = protect FCEB networks against active threats. See the BOD 22-01 Fact Sheet =
    [ https://www.cisa.gov/sites/default/files/publications/Reducing_the_Signif= icant_Risk_of_Known_Exploited_Vulnerabilities_211103.pdf ] for more informa= tion.

    Although BOD 22-01 only applies to FCEB agencies, CISA strongly urges all o= rganizations to reduce their exposure to cyberattacks by prioritizing timel=
    y remediation of KEV Catalog vulnerabilities [ https://www.cisa.gov/known-e= xploited-vulnerabilities-catalog ] as part of their vulnerability managemen=
    t practice. CISA will continue to add vulnerabilities to the catalog that m= eet the specified criteria [ https://www.cisa.gov/known-exploited-vulnerabi= lities ].=C2=A0

    This product is provided subject to this=C2=A0Notification [ https://www.ci= sa.gov/notification ]=C2=A0and this=C2=A0Privacy & Use [ https://www.cisa.g= ov/privacy-policy ]=C2=A0policy.

    body { font-size: 1em; font-family: Arial, Verdana, sans-serif; font-weight=
    : normal; font-style: normal; color: #333333; }=20

    Having trouble viewing this message?=C2=A0View it as a webpage [ https://co= ntent.govdelivery.com/accounts/USDHSCISA/bulletins/40fea94 ].=C2=A0 [ https= ://content.govdelivery.com/accounts/USDHS/bulletins/292141e ]

    You are subscribed to updates from the Cybersecurity and Infrastructure Sec= urity Agency [ https://www.cisa.gov ] (CISA)
    Manage Subscriptions [ https://public.govdelivery.com/accounts/USDHSCISA/su= bscriber/edit?preferences=3Dtrue#tab1 ]=C2=A0=C2=A0|=C2=A0=C2=A0Privacy Pol= icy [ https://www.cisa.gov/privacy-policy ]=C2=A0=C2=A0|=C2=A0 Help [ https= ://subscriberhelp.granicus.com/s/article/Subscriber-Help-Center ] [ https:/= /insights.govdelivery.com/Communications/Subscriber_Help_Center ]

    Connect with CISA:=20
    Facebook [ https://www.facebook.com/CISA ]=C2=A0 |=C2=A0 Twitter [ https://= twitter.com/CISAgov ]=C2=A0 |=C2=A0 Instagram [ https://Instagram.com/cisag=
    ov ]=C2=A0 |=C2=A0 LinkedIn [ https://www.linkedin.com/company/cybersecurit= y-and-infrastructure-security-agency ]=C2=A0 |=C2=A0=C2=A0 YouTube [ https:= //www.youtube.com/channel/UCxyq9roe-npgzrVwbpoAy0A ]

    ________________________________________________________________________

    This email was sent to cisa@toolazy.synchro.net using GovDelivery Communica= tions Cloud, on behalf of: Cybersecurity and Infrastructure Security Agency=
    =C2=B7 707 17th St, Suite 4000 =C2=B7 Denver, CO 80202 GovDelivery logo [ = https://subscriberhelp.granicus.com/ ]=20
    body .abe-column-block { min-height: 5px; } table.gd_combo_table img {margi= n-left:10px; margin-right:10px;} table.gd_combo_table div.govd_image_displa=
    y img, table.gd_combo_table td.gd_combo_image_cell img {margin-left:0px; ma= rgin-right:0px;}

    --===============7259854484285155270==
    Content-Type: text/html; charset="utf-8"
    MIME-Version: 1.0
    Content-Transfer-Encoding: quoted-printable

    <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
    "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
    <html xmlns=3D"http://www.w3.org/1999/xhtml" xml:lang=3D"en" lang=3D"en"> <head>
    <title> CISA Adds One Known Exploited Vulnerability to Catalog
    </title>


    </head>
    <body style=3D"">

    <table width=3D"700" border=3D"0" cellspacing=3D"0" cellpadding=3D"0"=
    align=3D"center">
    <tr>
    <td>

    <!--[if (gte mso 9)|(IE)]>
    <table style=3D"display:none"><tr><td><a name=3D"gd_top" id=3D"gd_top"></= a></td></tr></table>
    <![endif]-->
    <a name=3D"gd_top" id=3D"gd_top"></a>

    =20



    <p><img src=3D"https://content.govdelivery.com/attachments/fancy_images/U= SDHSCISA/2020/06/3486054/05152023-gov-delivery-banner-copy_original.png" al= t=3D"Cybersecurity and Infrastructure Security Agency (CISA)" title=3D"" wi= dth=3D"600" height=3D"100"></p>
    <p>You are subscribed to Cybersecurity Advisories for Cybersecurity and I= nfrastructure Security Agency. This information has recently been updated a=
    nd is now available.</p>
    <div class=3D"rss_item" style=3D"margin-bottom: 2em;">
    <div class=3D"rss_title" style=3D"font-weight: bold; font-size: 120%; margi=
    n: 0 0 0.3em; padding: 0;"><a href=3D"https://www.cisa.gov/news-events/aler= ts/2026/03/25/cisa-adds-one-known-exploited-vulnerability-catalog" target= =3D"_blank" title=3D"CISA Adds One Known Exploited Vulnerability to Catalog=
    " rel=3D"noopener">CISA Adds One Known Exploited Vulnerability to Catalog</= a></div>
    <div class=3D"rss_pub_date" style=3D"font-size: 90%; font-style: italic; co= lor: #666666; margin: 0 0 0.3em; padding: 0;">03/25/2026 2:00 PM EST</div>
    <div class=3D"rss_description" style=3D"margin: 0 0 0.3em; padding: 0;"> <p>CISA has added one new vulnerability to its <a href=3D"https://www.cisa.= gov/known-exploited-vulnerabilities-catalog" title=3D"Known Exploited Vulne= rabilities Catalog" data-entity-type=3D"node" data-entity-uuid=3D"79453b83-= 86b9-4e2f-b1ec-abf73c6eb291" data-entity-substitution=3D"canonical">Known E= xploited Vulnerabilities (KEV) Catalog</a>, based on evidence of active exp= loitation.</p>


    <a href=3D"https://www.cve.org/CVERecord?id=3DCVE-2026-33017" target=3D"_bl= ank" title=3D"CVE-2026-33017" rel=3D"noopener">CVE-2026-33017</a> <span dat= a-teams=3D"true">Langflow Code Injection Vulnerability</span>
    </li>
    </ul>
    <p>This type of vulnerability is frequent attack vector for malicious cyber=
    actors and poses significant risks to the federal enterprise.</p>
    <p><a href=3D"https://www.cisa.gov/binding-operational-directive-22-01" tar= get=3D"_blank" title=3D"Binding Operational Directive (BOD) 22-01: Reducing=
    the Significant Risk of Known Exploited Vulnerabilities" rel=3D"noopener">= Binding Operational Directive (BOD) 22-01: Reducing the Significant Risk of=
    Known Exploited Vulnerabilities</a> established the KEV Catalog as a livin=
    g list of known Common Vulnerabilities and Exposures (CVEs) that carry sign= ificant risk to the federal enterprise. BOD 22-01 requires Federal Civilian=
    Executive Branch (FCEB) agencies to remediate identified vulnerabilities b=
    y the due date to protect FCEB networks against active threats. See the <a = href=3D"https://www.cisa.gov/sites/default/files/publications/Reducing_the_= Significant_Risk_of_Known_Exploited_Vulnerabilities_211103.pdf">BOD 22-01 F= act Sheet</a> for more information.</p>
    <p>Although BOD 22-01 only applies to FCEB agencies, CISA strongly urges al=
    l organizations to reduce their exposure to cyberattacks by prioritizing ti= mely remediation of <a href=3D"https://www.cisa.gov/known-exploited-vulnera= bilities-catalog" title=3D"Known Exploited Vulnerabilities Catalog" data-en= tity-type=3D"node" data-entity-uuid=3D"79453b83-86b9-4e2f-b1ec-abf73c6eb291=
    " data-entity-substitution=3D"canonical">KEV Catalog vulnerabilities</a> as=
    part of their vulnerability management practice. CISA will continue to add=
    vulnerabilities to the catalog that meet the <a href=3D"https://www.cisa.g= ov/known-exploited-vulnerabilities" title=3D"Reducing the Significant Risk =
    of Known Exploited Vulnerabilities" data-entity-type=3D"node" data-entity-u= uid=3D"f2adba9a-0404-494c-a90c-4363a4a5c934" data-entity-substitution=3D"ca= nonical">specified criteria</a>.=C2=A0</p>
    <p><span>This product is provided subject to this=C2=A0</span><a href=3D"ht= tps://www.cisa.gov/notification" target=3D"_blank" title=3D"Notification" r= el=3D"noopener">Notification</a><span>=C2=A0and this=C2=A0</span><a href=3D= "https://www.cisa.gov/privacy-policy" target=3D"_blank" title=3D"Privacy &a= mp; Use" rel=3D"noopener">Privacy &amp; Use</a><span>=C2=A0policy.</span></=

    </div>
    </div>
    <style>body {
    font-size: 1em; font-family: Arial, Verdana, sans-serif; font-weight: norma=
    l; font-style: normal; color: #333333;
    }
    </style>
    =20


    <div id=3D"mail_footer">
    <p style=3D"text-align: center;"><span style=3D"font-size: 10.0pt; colo=
    r: #757575;">Having trouble viewing this message?=C2=A0</span><a href=3D"ht= tps://content.govdelivery.com/accounts/USDHSCISA/bulletins/40fea94" target= =3D"_blank" rel=3D"noopener">View it as a webpage</a>.=C2=A0<a href=3D"http= s://content.govdelivery.com/accounts/USDHS/bulletins/292141e" target=3D"_bl= ank" rel=3D"noopener"></a><span style=3D"font-size: 10.0pt; color: #757575;= "></span></p>
    <p style=3D"text-align: center;"><span style=3D"font-size: 10.0pt; color: #= 757575;">You are subscribed to updates from the </span><a href=3D"https://w= ww.cisa.gov"><span style=3D"font-size: 10.0pt;">Cybersecurity and Infrastru= cture Security Agency</span></a><span style=3D"font-size: 10.0pt; color: #7= 57575;"> (CISA)<br></span><a href=3D"https://public.govdelivery.com/account= s/USDHSCISA/subscriber/edit?preferences=3Dtrue#tab1" target=3D"_blank" rel= =3D"noopener"><span style=3D"font-size: 10.0pt; color: #00568c;">Manage Sub= scriptions</span></a>=C2=A0=C2=A0<span style=3D"font-size: 10.0pt; color: #= 757575;">|=C2=A0=C2=A0</span><a href=3D"https://www.cisa.gov/privacy-policy=
    " target=3D"_blank" rel=3D"noopener"><span style=3D"font-size: 10.0pt; colo=
    r: #00568c;">Privacy Policy</span></a><span style=3D"font-size: 10.0pt; col= or: #757575;">=C2=A0=C2=A0|=C2=A0 <a href=3D"https://subscriberhelp.granicu= s.com/s/article/Subscriber-Help-Center" target=3D"_blank" rel=3D"noopener">= Help</a><a href=3D"https://insights.govdelivery.com/Communications/Subscrib= er_Help_Center" target=3D"_blank" rel=3D"noopener"></a></span><span style= =3D"font-size: 10.0pt; color: #757575;"></span></p>
    <p style=3D"text-align: center;"><span style=3D"font-size: 10.0pt; color: #= 757575;">Connect with CISA: <br></span><a href=3D"https://www.facebook.com/= CISA" target=3D"_blank" rel=3D"noopener"><span style=3D"font-size: 10.0pt; = color: #00568c;">Facebook</span></a><span style=3D"font-size: 10.0pt; color=
    : #757575;">=C2=A0 |=C2=A0 </span><a href=3D"https://twitter.com/CISAgov" t= arget=3D"_blank" rel=3D"noopener"><span style=3D"font-size: 10.0pt; color: = #00568c;">Twitter</span></a><span style=3D"font-size: 10.0pt; color: #75757= 5;">=C2=A0 |=C2=A0 </span><a href=3D"https://Instagram.com/cisagov" target= =3D"_blank" rel=3D"noopener"><span style=3D"font-size: 10.0pt; color: #0056= 8c;">Instagram</span></a><span style=3D"font-size: 10.0pt; color: #757575;"= >=C2=A0 |=C2=A0 </span><a href=3D"https://www.linkedin.com/company/cybersec= urity-and-infrastructure-security-agency" target=3D"_blank" rel=3D"noopener= "><span style=3D"font-size: 10.0pt; color: #00568c;">LinkedIn</span></a><sp=
    an style=3D"font-size: 10.0pt; color: #757575;">=C2=A0 |=C2=A0=C2=A0 </span= ><a href=3D"https://www.youtube.com/channel/UCxyq9roe-npgzrVwbpoAy0A" targe= t=3D"_self"><span style=3D"font-size: 10.0pt; color: #00568c;">YouTube</spa= n></a><span style=3D"font-size: 10.0pt; color: #757575;"></span></p>

    </div>
    <div id=3D"tagline">
    <hr>
    <table style=3D"width: 100%;" border=3D"0" cellspacing=3D"0" cellpadding=3D=

    <tbody>

    <td style=3D"color: #757575; font-size: 10px; font-family: Arial;" width=3D= "89%">This email was sent to cisa@toolazy.synchro.net using GovDelivery Com= munications Cloud, on behalf of: Cybersecurity and Infrastructure Security = Agency =C2=B7 707 17th St, Suite 4000 =C2=B7 Denver, CO 80202</td>
    <td align=3D"right" width=3D"11%"><a href=3D"https://subscriberhelp.granicu= s.com/" target=3D"_blank" rel=3D"noopener"><img src=3D"https://content.govd= elivery.com/images/govd-logo-dark.png" border=3D"0" alt=3D"GovDelivery logo=
    " width=3D"115"></a></td>
    </tr>
    </tbody>
    </table>
    <style type=3D"text/css">body .abe-column-block { min-height: 5px; } table.= gd_combo_table img {margin-left:10px; margin-right:10px;} table.gd_combo_ta= ble div.govd_image_display img, table.gd_combo_table td.gd_combo_image_cell=
    img {margin-left:0px; margin-right:0px;}</style>

    </div>
    </td>
    </tr>
    </table>

    <img alt=3D"" src=3D"https://links-2.govdelivery.com/CI0/0101019d26342ffa-8= 83a8e8e-4a98-4d09-83e1-82b4c8473fc9-000000/dzeERf3XMUfn6FWYDJA1OaDFFUlfwR8r= Hp3w5TC1Xrc=3D450" style=3D"display: none; width: 1px; height: 1px;">
    </body>
    </html>

    --===============7259854484285155270==--

    --===============1588543842996720121==--


  • From CISA@cisa@messages.cisa.gov to cisa@toolazy.synchro.net on Thu Mar 26 17:24:09 2026
    --===============4838269026307078466==
    Content-Type: multipart/alternative; boundary="===============8239203908211161053=="
    MIME-Version: 1.0

    --===============8239203908211161053==
    Content-Type: text/plain; charset="utf-8"
    MIME-Version: 1.0
    Content-Transfer-Encoding: quoted-printable

    Cybersecurity and Infrastructure Security Agency (CISA)

    You are subscribed to Cybersecurity Advisories for Cybersecurity and Infras= tructure Security Agency. This information has recently been updated and is=
    now available.

    CISA Adds One Known Exploited Vulnerability to Catalog [ https://www.cisa.g= ov/news-events/alerts/2026/03/26/cisa-adds-one-known-exploited-vulnerabilit= y-catalog ] 03/26/2026 1:30 PM EST=20

    CISA has added one new vulnerability to its Known Exploited Vulnerabilities=
    (KEV) Catalog [ https://www.cisa.gov/known-exploited-vulnerabilities-catal=
    og ], based on evidence of active exploitation.


    * CVE-2026-33634 [ https://www.cve.org/CVERecord?id=3DCVE-2026-33634 ] Aq=
    ua Security Trivy Embedded Malicious Code Vulnerability=20

    This type of vulnerability is frequent attack vector for malicious cyber ac= tors and poses significant risks to the federal enterprise.

    Binding Operational Directive (BOD) 22-01: Reducing the Significant Risk of=
    Known Exploited Vulnerabilities [ https://www.cisa.gov/binding-operational= -directive-22-01 ] established the KEV Catalog as a living list of known Co= mmon Vulnerabilities and Exposures (CVEs) that carry significant risk to th=
    e federal enterprise. BOD 22-01 requires Federal Civilian Executive Branch = (FCEB) agencies to remediate identified vulnerabilities by the due date to = protect FCEB networks against active threats. See the BOD 22-01 Fact Sheet =
    [ https://www.cisa.gov/sites/default/files/publications/Reducing_the_Signif= icant_Risk_of_Known_Exploited_Vulnerabilities_211103.pdf ] for more informa= tion.

    Although BOD 22-01 only applies to FCEB agencies, CISA strongly urges all o= rganizations to reduce their exposure to cyberattacks by prioritizing timel=
    y remediation of KEV Catalog vulnerabilities [ https://www.cisa.gov/known-e= xploited-vulnerabilities-catalog ] as part of their vulnerability managemen=
    t practice. CISA will continue to add vulnerabilities to the catalog that m= eet the specified criteria [ https://www.cisa.gov/known-exploited-vulnerabi= lities ].=C2=A0

    This product is provided subject to this=C2=A0Notification [ https://www.ci= sa.gov/notification ]=C2=A0and this=C2=A0Privacy & Use [ https://www.cisa.g= ov/privacy-policy ]=C2=A0policy.

    body { font-size: 1em; font-family: Arial, Verdana, sans-serif; font-weight=
    : normal; font-style: normal; color: #333333; }=20

    Having trouble viewing this message?=C2=A0View it as a webpage [ https://co= ntent.govdelivery.com/accounts/USDHSCISA/bulletins/4101765 ].=C2=A0 [ https= ://content.govdelivery.com/accounts/USDHS/bulletins/292141e ]

    You are subscribed to updates from the Cybersecurity and Infrastructure Sec= urity Agency [ https://www.cisa.gov ] (CISA)
    Manage Subscriptions [ https://public.govdelivery.com/accounts/USDHSCISA/su= bscriber/edit?preferences=3Dtrue#tab1 ]=C2=A0=C2=A0|=C2=A0=C2=A0Privacy Pol= icy [ https://www.cisa.gov/privacy-policy ]=C2=A0=C2=A0|=C2=A0 Help [ https= ://subscriberhelp.granicus.com/s/article/Subscriber-Help-Center ] [ https:/= /insights.govdelivery.com/Communications/Subscriber_Help_Center ]

    Connect with CISA:=20
    Facebook [ https://www.facebook.com/CISA ]=C2=A0 |=C2=A0 Twitter [ https://= twitter.com/CISAgov ]=C2=A0 |=C2=A0 Instagram [ https://Instagram.com/cisag=
    ov ]=C2=A0 |=C2=A0 LinkedIn [ https://www.linkedin.com/company/cybersecurit= y-and-infrastructure-security-agency ]=C2=A0 |=C2=A0=C2=A0 YouTube [ https:= //www.youtube.com/channel/UCxyq9roe-npgzrVwbpoAy0A ]

    ________________________________________________________________________

    This email was sent to cisa@toolazy.synchro.net using GovDelivery Communica= tions Cloud, on behalf of: Cybersecurity and Infrastructure Security Agency=
    =C2=B7 707 17th St, Suite 4000 =C2=B7 Denver, CO 80202 GovDelivery logo [ = https://subscriberhelp.granicus.com/ ]=20
    body .abe-column-block { min-height: 5px; } table.gd_combo_table img {margi= n-left:10px; margin-right:10px;} table.gd_combo_table div.govd_image_displa=
    y img, table.gd_combo_table td.gd_combo_image_cell img {margin-left:0px; ma= rgin-right:0px;}

    --===============8239203908211161053==
    Content-Type: text/html; charset="utf-8"
    MIME-Version: 1.0
    Content-Transfer-Encoding: quoted-printable

    <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
    "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
    <html xmlns=3D"http://www.w3.org/1999/xhtml" xml:lang=3D"en" lang=3D"en"> <head>
    <title> CISA Adds One Known Exploited Vulnerability to Catalog
    </title>


    </head>
    <body style=3D"">

    <table width=3D"700" border=3D"0" cellspacing=3D"0" cellpadding=3D"0"=
    align=3D"center">
    <tr>
    <td>

    <!--[if (gte mso 9)|(IE)]>
    <table style=3D"display:none"><tr><td><a name=3D"gd_top" id=3D"gd_top"></= a></td></tr></table>
    <![endif]-->
    <a name=3D"gd_top" id=3D"gd_top"></a>

    =20



    <p><img src=3D"https://content.govdelivery.com/attachments/fancy_images/U= SDHSCISA/2020/06/3486054/05152023-gov-delivery-banner-copy_original.png" al= t=3D"Cybersecurity and Infrastructure Security Agency (CISA)" title=3D"" wi= dth=3D"600" height=3D"100"></p>
    <p>You are subscribed to Cybersecurity Advisories for Cybersecurity and I= nfrastructure Security Agency. This information has recently been updated a=
    nd is now available.</p>
    <div class=3D"rss_item" style=3D"margin-bottom: 2em;">
    <div class=3D"rss_title" style=3D"font-weight: bold; font-size: 120%; margi=
    n: 0 0 0.3em; padding: 0;"><a href=3D"https://www.cisa.gov/news-events/aler= ts/2026/03/26/cisa-adds-one-known-exploited-vulnerability-catalog" target= =3D"_blank" title=3D"CISA Adds One Known Exploited Vulnerability to Catalog=
    " rel=3D"noopener">CISA Adds One Known Exploited Vulnerability to Catalog</= a></div>
    <div class=3D"rss_pub_date" style=3D"font-size: 90%; font-style: italic; co= lor: #666666; margin: 0 0 0.3em; padding: 0;">03/26/2026 1:30 PM EST</div>
    <div class=3D"rss_description" style=3D"margin: 0 0 0.3em; padding: 0;"> <p>CISA has added one new vulnerability to its <a href=3D"https://www.cisa.= gov/known-exploited-vulnerabilities-catalog" title=3D"Known Exploited Vulne= rabilities Catalog" data-entity-type=3D"node" data-entity-uuid=3D"79453b83-= 86b9-4e2f-b1ec-abf73c6eb291" data-entity-substitution=3D"canonical">Known E= xploited Vulnerabilities (KEV) Catalog</a>, based on evidence of active exp= loitation.</p>


    <a href=3D"https://www.cve.org/CVERecord?id=3DCVE-2026-33634" target=3D"_bl= ank" title=3D"CVE-2026-33634" rel=3D"noopener">CVE-2026-33634</a> Aqua Secu= rity Trivy Embedded Malicious Code Vulnerability</li>
    </ul>
    <p>This type of vulnerability is frequent attack vector for malicious cyber=
    actors and poses significant risks to the federal enterprise.</p>
    <p><a href=3D"https://www.cisa.gov/binding-operational-directive-22-01" tar= get=3D"_blank" title=3D"Binding Operational Directive (BOD) 22-01: Reducing=
    the Significant Risk of Known Exploited Vulnerabilities" rel=3D"noopener">= Binding Operational Directive (BOD) 22-01: Reducing the Significant Risk of=
    Known Exploited Vulnerabilities</a> established the KEV Catalog as a livin=
    g list of known Common Vulnerabilities and Exposures (CVEs) that carry sign= ificant risk to the federal enterprise. BOD 22-01 requires Federal Civilian=
    Executive Branch (FCEB) agencies to remediate identified vulnerabilities b=
    y the due date to protect FCEB networks against active threats. See the <a = href=3D"https://www.cisa.gov/sites/default/files/publications/Reducing_the_= Significant_Risk_of_Known_Exploited_Vulnerabilities_211103.pdf">BOD 22-01 F= act Sheet</a> for more information.</p>
    <p>Although BOD 22-01 only applies to FCEB agencies, CISA strongly urges al=
    l organizations to reduce their exposure to cyberattacks by prioritizing ti= mely remediation of <a href=3D"https://www.cisa.gov/known-exploited-vulnera= bilities-catalog" title=3D"Known Exploited Vulnerabilities Catalog" data-en= tity-type=3D"node" data-entity-uuid=3D"79453b83-86b9-4e2f-b1ec-abf73c6eb291=
    " data-entity-substitution=3D"canonical">KEV Catalog vulnerabilities</a> as=
    part of their vulnerability management practice. CISA will continue to add=
    vulnerabilities to the catalog that meet the <a href=3D"https://www.cisa.g= ov/known-exploited-vulnerabilities" title=3D"Reducing the Significant Risk =
    of Known Exploited Vulnerabilities" data-entity-type=3D"node" data-entity-u= uid=3D"f2adba9a-0404-494c-a90c-4363a4a5c934" data-entity-substitution=3D"ca= nonical">specified criteria</a>.=C2=A0</p>
    <p><span>This product is provided subject to this=C2=A0</span><a href=3D"ht= tps://www.cisa.gov/notification" target=3D"_blank" title=3D"Notification" r= el=3D"noopener">Notification</a><span>=C2=A0and this=C2=A0</span><a href=3D= "https://www.cisa.gov/privacy-policy" target=3D"_blank" title=3D"Privacy &a= mp; Use" rel=3D"noopener">Privacy &amp; Use</a><span>=C2=A0policy.</span></=

    </div>
    </div>
    <style>body {
    font-size: 1em; font-family: Arial, Verdana, sans-serif; font-weight: norma=
    l; font-style: normal; color: #333333;
    }
    </style>
    =20


    <div id=3D"mail_footer">
    <p style=3D"text-align: center;"><span style=3D"font-size: 10.0pt; colo=
    r: #757575;">Having trouble viewing this message?=C2=A0</span><a href=3D"ht= tps://content.govdelivery.com/accounts/USDHSCISA/bulletins/4101765" target= =3D"_blank" rel=3D"noopener">View it as a webpage</a>.=C2=A0<a href=3D"http= s://content.govdelivery.com/accounts/USDHS/bulletins/292141e" target=3D"_bl= ank" rel=3D"noopener"></a><span style=3D"font-size: 10.0pt; color: #757575;= "></span></p>
    <p style=3D"text-align: center;"><span style=3D"font-size: 10.0pt; color: #= 757575;">You are subscribed to updates from the </span><a href=3D"https://w= ww.cisa.gov"><span style=3D"font-size: 10.0pt;">Cybersecurity and Infrastru= cture Security Agency</span></a><span style=3D"font-size: 10.0pt; color: #7= 57575;"> (CISA)<br></span><a href=3D"https://public.govdelivery.com/account= s/USDHSCISA/subscriber/edit?preferences=3Dtrue#tab1" target=3D"_blank" rel= =3D"noopener"><span style=3D"font-size: 10.0pt; color: #00568c;">Manage Sub= scriptions</span></a>=C2=A0=C2=A0<span style=3D"font-size: 10.0pt; color: #= 757575;">|=C2=A0=C2=A0</span><a href=3D"https://www.cisa.gov/privacy-policy=
    " target=3D"_blank" rel=3D"noopener"><span style=3D"font-size: 10.0pt; colo=
    r: #00568c;">Privacy Policy</span></a><span style=3D"font-size: 10.0pt; col= or: #757575;">=C2=A0=C2=A0|=C2=A0 <a href=3D"https://subscriberhelp.granicu= s.com/s/article/Subscriber-Help-Center" target=3D"_blank" rel=3D"noopener">= Help</a><a href=3D"https://insights.govdelivery.com/Communications/Subscrib= er_Help_Center" target=3D"_blank" rel=3D"noopener"></a></span><span style= =3D"font-size: 10.0pt; color: #757575;"></span></p>
    <p style=3D"text-align: center;"><span style=3D"font-size: 10.0pt; color: #= 757575;">Connect with CISA: <br></span><a href=3D"https://www.facebook.com/= CISA" target=3D"_blank" rel=3D"noopener"><span style=3D"font-size: 10.0pt; = color: #00568c;">Facebook</span></a><span style=3D"font-size: 10.0pt; color=
    : #757575;">=C2=A0 |=C2=A0 </span><a href=3D"https://twitter.com/CISAgov" t= arget=3D"_blank" rel=3D"noopener"><span style=3D"font-size: 10.0pt; color: = #00568c;">Twitter</span></a><span style=3D"font-size: 10.0pt; color: #75757= 5;">=C2=A0 |=C2=A0 </span><a href=3D"https://Instagram.com/cisagov" target= =3D"_blank" rel=3D"noopener"><span style=3D"font-size: 10.0pt; color: #0056= 8c;">Instagram</span></a><span style=3D"font-size: 10.0pt; color: #757575;"= >=C2=A0 |=C2=A0 </span><a href=3D"https://www.linkedin.com/company/cybersec= urity-and-infrastructure-security-agency" target=3D"_blank" rel=3D"noopener= "><span style=3D"font-size: 10.0pt; color: #00568c;">LinkedIn</span></a><sp=
    an style=3D"font-size: 10.0pt; color: #757575;">=C2=A0 |=C2=A0=C2=A0 </span= ><a href=3D"https://www.youtube.com/channel/UCxyq9roe-npgzrVwbpoAy0A" targe= t=3D"_self"><span style=3D"font-size: 10.0pt; color: #00568c;">YouTube</spa= n></a><span style=3D"font-size: 10.0pt; color: #757575;"></span></p>

    </div>
    <div id=3D"tagline">
    <hr>
    <table style=3D"width: 100%;" border=3D"0" cellspacing=3D"0" cellpadding=3D=

    <tbody>

    <td style=3D"color: #757575; font-size: 10px; font-family: Arial;" width=3D= "89%">This email was sent to cisa@toolazy.synchro.net using GovDelivery Com= munications Cloud, on behalf of: Cybersecurity and Infrastructure Security = Agency =C2=B7 707 17th St, Suite 4000 =C2=B7 Denver, CO 80202</td>
    <td align=3D"right" width=3D"11%"><a href=3D"https://subscriberhelp.granicu= s.com/" target=3D"_blank" rel=3D"noopener"><img src=3D"https://content.govd= elivery.com/images/govd-logo-dark.png" border=3D"0" alt=3D"GovDelivery logo=
    " width=3D"115"></a></td>
    </tr>
    </tbody>
    </table>
    <style type=3D"text/css">body .abe-column-block { min-height: 5px; } table.= gd_combo_table img {margin-left:10px; margin-right:10px;} table.gd_combo_ta= ble div.govd_image_display img, table.gd_combo_table td.gd_combo_image_cell=
    img {margin-left:0px; margin-right:0px;}</style>

    </div>
    </td>
    </tr>
    </table>

    <img alt=3D"" src=3D"https://links-2.govdelivery.com/CI0/0101019d2b2ccacd-6= f4ff1cb-017e-45de-9622-fc658583afd6-000000/llfgWTzNfw9D5briciX0ryfbA_wftxA0= m0I7JZw4njs=3D450" style=3D"display: none; width: 1px; height: 1px;">
    </body>
    </html>

    --===============8239203908211161053==--

    --===============4838269026307078466==--


  • From CISA@cisa@messages.cisa.gov to cisa@toolazy.synchro.net on Fri Mar 27 20:12:05 2026
    --===============7940031295432346926==
    Content-Type: multipart/alternative; boundary="===============8374094728141343893=="
    MIME-Version: 1.0

    --===============8374094728141343893==
    Content-Type: text/plain; charset="utf-8"
    MIME-Version: 1.0
    Content-Transfer-Encoding: quoted-printable

    Cybersecurity and Infrastructure Security Agency (CISA)

    You are subscribed to Cybersecurity Advisories for Cybersecurity and Infras= tructure Security Agency. This information has recently been updated and is=
    now available.

    CISA Adds One Known Exploited Vulnerability to Catalog [ https://www.cisa.g= ov/news-events/alerts/2026/03/27/cisa-adds-one-known-exploited-vulnerabilit= y-catalog ] 03/27/2026 4:00 PM EST=20

    CISA has added one new vulnerability to its Known Exploited Vulnerabilities=
    (KEV) Catalog [ https://www.cisa.gov/known-exploited-vulnerabilities-catal=
    og ], based on evidence of active exploitation.


    * CVE-2025-53521 [ https://www.cve.org/CVERecord?id=3DCVE-2025-53521 ] F5=
    BIG-IP Remote Code Execution Vulnerability=20

    This type of vulnerability is frequent attack vector for malicious cyber ac= tors and poses significant risks to the federal enterprise.

    Binding Operational Directive (BOD) 22-01: Reducing the Significant Risk of=
    Known Exploited Vulnerabilities [ https://www.cisa.gov/binding-operational= -directive-22-01 ] established the KEV Catalog as a living list of known Co= mmon Vulnerabilities and Exposures (CVEs) that carry significant risk to th=
    e federal enterprise. BOD 22-01 requires Federal Civilian Executive Branch = (FCEB) agencies to remediate identified vulnerabilities by the due date to = protect FCEB networks against active threats. See the BOD 22-01 Fact Sheet =
    [ https://www.cisa.gov/sites/default/files/publications/Reducing_the_Signif= icant_Risk_of_Known_Exploited_Vulnerabilities_211103.pdf ] for more informa= tion.

    Although BOD 22-01 only applies to FCEB agencies, CISA strongly urges all o= rganizations to reduce their exposure to cyberattacks by prioritizing timel=
    y remediation of KEV Catalog vulnerabilities [ https://www.cisa.gov/known-e= xploited-vulnerabilities-catalog ] as part of their vulnerability managemen=
    t practice. CISA will continue to add vulnerabilities to the catalog that m= eet the specified criteria [ https://www.cisa.gov/known-exploited-vulnerabi= lities ].=C2=A0

    This product is provided subject to this=C2=A0Notification [ https://www.ci= sa.gov/notification ]=C2=A0and this=C2=A0Privacy & Use [ https://www.cisa.g= ov/privacy-policy ]=C2=A0policy.

    body { font-size: 1em; font-family: Arial, Verdana, sans-serif; font-weight=
    : normal; font-style: normal; color: #333333; }=20

    Having trouble viewing this message?=C2=A0View it as a webpage [ https://co= ntent.govdelivery.com/accounts/USDHSCISA/bulletins/41058d8 ].=C2=A0 [ https= ://content.govdelivery.com/accounts/USDHS/bulletins/292141e ]

    You are subscribed to updates from the Cybersecurity and Infrastructure Sec= urity Agency [ https://www.cisa.gov ] (CISA)
    Manage Subscriptions [ https://public.govdelivery.com/accounts/USDHSCISA/su= bscriber/edit?preferences=3Dtrue#tab1 ]=C2=A0=C2=A0|=C2=A0=C2=A0Privacy Pol= icy [ https://www.cisa.gov/privacy-policy ]=C2=A0=C2=A0|=C2=A0 Help [ https= ://subscriberhelp.granicus.com/s/article/Subscriber-Help-Center ] [ https:/= /insights.govdelivery.com/Communications/Subscriber_Help_Center ]

    Connect with CISA:=20
    Facebook [ https://www.facebook.com/CISA ]=C2=A0 |=C2=A0 Twitter [ https://= twitter.com/CISAgov ]=C2=A0 |=C2=A0 Instagram [ https://Instagram.com/cisag=
    ov ]=C2=A0 |=C2=A0 LinkedIn [ https://www.linkedin.com/company/cybersecurit= y-and-infrastructure-security-agency ]=C2=A0 |=C2=A0=C2=A0 YouTube [ https:= //www.youtube.com/channel/UCxyq9roe-npgzrVwbpoAy0A ]

    ________________________________________________________________________

    This email was sent to cisa@toolazy.synchro.net using GovDelivery Communica= tions Cloud, on behalf of: Cybersecurity and Infrastructure Security Agency=
    =C2=B7 707 17th St, Suite 4000 =C2=B7 Denver, CO 80202 GovDelivery logo [ = https://subscriberhelp.granicus.com/ ]=20
    body .abe-column-block { min-height: 5px; } table.gd_combo_table img {margi= n-left:10px; margin-right:10px;} table.gd_combo_table div.govd_image_displa=
    y img, table.gd_combo_table td.gd_combo_image_cell img {margin-left:0px; ma= rgin-right:0px;}

    --===============8374094728141343893==
    Content-Type: text/html; charset="utf-8"
    MIME-Version: 1.0
    Content-Transfer-Encoding: quoted-printable

    <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
    "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
    <html xmlns=3D"http://www.w3.org/1999/xhtml" xml:lang=3D"en" lang=3D"en"> <head>
    <title> CISA Adds One Known Exploited Vulnerability to Catalog
    </title>


    </head>
    <body style=3D"">

    <table width=3D"700" border=3D"0" cellspacing=3D"0" cellpadding=3D"0"=
    align=3D"center">
    <tr>
    <td>

    <!--[if (gte mso 9)|(IE)]>
    <table style=3D"display:none"><tr><td><a name=3D"gd_top" id=3D"gd_top"></= a></td></tr></table>
    <![endif]-->
    <a name=3D"gd_top" id=3D"gd_top"></a>

    =20



    <p><img src=3D"https://content.govdelivery.com/attachments/fancy_images/U= SDHSCISA/2020/06/3486054/05152023-gov-delivery-banner-copy_original.png" al= t=3D"Cybersecurity and Infrastructure Security Agency (CISA)" title=3D"" wi= dth=3D"600" height=3D"100"></p>
    <p>You are subscribed to Cybersecurity Advisories for Cybersecurity and I= nfrastructure Security Agency. This information has recently been updated a=
    nd is now available.</p>
    <div class=3D"rss_item" style=3D"margin-bottom: 2em;">
    <div class=3D"rss_title" style=3D"font-weight: bold; font-size: 120%; margi=
    n: 0 0 0.3em; padding: 0;"><a href=3D"https://www.cisa.gov/news-events/aler= ts/2026/03/27/cisa-adds-one-known-exploited-vulnerability-catalog" target= =3D"_blank" title=3D"CISA Adds One Known Exploited Vulnerability to Catalog=
    " rel=3D"noopener">CISA Adds One Known Exploited Vulnerability to Catalog</= a></div>
    <div class=3D"rss_pub_date" style=3D"font-size: 90%; font-style: italic; co= lor: #666666; margin: 0 0 0.3em; padding: 0;">03/27/2026 4:00 PM EST</div>
    <div class=3D"rss_description" style=3D"margin: 0 0 0.3em; padding: 0;"> <p>CISA has added one new vulnerability to its <a href=3D"https://www.cisa.= gov/known-exploited-vulnerabilities-catalog" title=3D"Known Exploited Vulne= rabilities Catalog" data-entity-type=3D"node" data-entity-uuid=3D"79453b83-= 86b9-4e2f-b1ec-abf73c6eb291" data-entity-substitution=3D"canonical">Known E= xploited Vulnerabilities (KEV) Catalog</a>, based on evidence of active exp= loitation.</p>


    <a href=3D"https://www.cve.org/CVERecord?id=3DCVE-2025-53521" target=3D"_bl= ank" title=3D"CVE-2025-53521" rel=3D"noopener">CVE-2025-53521</a> F5 BIG-IP=
    Remote Code Execution Vulnerability</li>
    </ul>
    <p>This type of vulnerability is frequent attack vector for malicious cyber=
    actors and poses significant risks to the federal enterprise.</p>
    <p><a href=3D"https://www.cisa.gov/binding-operational-directive-22-01" tar= get=3D"_blank" title=3D"Binding Operational Directive (BOD) 22-01: Reducing=
    the Significant Risk of Known Exploited Vulnerabilities" rel=3D"noopener">= Binding Operational Directive (BOD) 22-01: Reducing the Significant Risk of=
    Known Exploited Vulnerabilities</a> established the KEV Catalog as a livin=
    g list of known Common Vulnerabilities and Exposures (CVEs) that carry sign= ificant risk to the federal enterprise. BOD 22-01 requires Federal Civilian=
    Executive Branch (FCEB) agencies to remediate identified vulnerabilities b=
    y the due date to protect FCEB networks against active threats. See the <a = href=3D"https://www.cisa.gov/sites/default/files/publications/Reducing_the_= Significant_Risk_of_Known_Exploited_Vulnerabilities_211103.pdf">BOD 22-01 F= act Sheet</a> for more information.</p>
    <p>Although BOD 22-01 only applies to FCEB agencies, CISA strongly urges al=
    l organizations to reduce their exposure to cyberattacks by prioritizing ti= mely remediation of <a href=3D"https://www.cisa.gov/known-exploited-vulnera= bilities-catalog" title=3D"Known Exploited Vulnerabilities Catalog" data-en= tity-type=3D"node" data-entity-uuid=3D"79453b83-86b9-4e2f-b1ec-abf73c6eb291=
    " data-entity-substitution=3D"canonical">KEV Catalog vulnerabilities</a> as=
    part of their vulnerability management practice. CISA will continue to add=
    vulnerabilities to the catalog that meet the <a href=3D"https://www.cisa.g= ov/known-exploited-vulnerabilities" title=3D"Reducing the Significant Risk =
    of Known Exploited Vulnerabilities" data-entity-type=3D"node" data-entity-u= uid=3D"f2adba9a-0404-494c-a90c-4363a4a5c934" data-entity-substitution=3D"ca= nonical">specified criteria</a>.=C2=A0</p>
    <p><span>This product is provided subject to this=C2=A0</span><a href=3D"ht= tps://www.cisa.gov/notification" target=3D"_blank" title=3D"Notification" r= el=3D"noopener">Notification</a><span>=C2=A0and this=C2=A0</span><a href=3D= "https://www.cisa.gov/privacy-policy" target=3D"_blank" title=3D"Privacy &a= mp; Use" rel=3D"noopener">Privacy &amp; Use</a><span>=C2=A0policy.</span></=

    </div>
    </div>
    <style>body {
    font-size: 1em; font-family: Arial, Verdana, sans-serif; font-weight: norma=
    l; font-style: normal; color: #333333;
    }
    </style>
    =20


    <div id=3D"mail_footer">
    <p style=3D"text-align: center;"><span style=3D"font-size: 10.0pt; colo=
    r: #757575;">Having trouble viewing this message?=C2=A0</span><a href=3D"ht= tps://content.govdelivery.com/accounts/USDHSCISA/bulletins/41058d8" target= =3D"_blank" rel=3D"noopener">View it as a webpage</a>.=C2=A0<a href=3D"http= s://content.govdelivery.com/accounts/USDHS/bulletins/292141e" target=3D"_bl= ank" rel=3D"noopener"></a><span style=3D"font-size: 10.0pt; color: #757575;= "></span></p>
    <p style=3D"text-align: center;"><span style=3D"font-size: 10.0pt; color: #= 757575;">You are subscribed to updates from the </span><a href=3D"https://w= ww.cisa.gov"><span style=3D"font-size: 10.0pt;">Cybersecurity and Infrastru= cture Security Agency</span></a><span style=3D"font-size: 10.0pt; color: #7= 57575;"> (CISA)<br></span><a href=3D"https://public.govdelivery.com/account= s/USDHSCISA/subscriber/edit?preferences=3Dtrue#tab1" target=3D"_blank" rel= =3D"noopener"><span style=3D"font-size: 10.0pt; color: #00568c;">Manage Sub= scriptions</span></a>=C2=A0=C2=A0<span style=3D"font-size: 10.0pt; color: #= 757575;">|=C2=A0=C2=A0</span><a href=3D"https://www.cisa.gov/privacy-policy=
    " target=3D"_blank" rel=3D"noopener"><span style=3D"font-size: 10.0pt; colo=
    r: #00568c;">Privacy Policy</span></a><span style=3D"font-size: 10.0pt; col= or: #757575;">=C2=A0=C2=A0|=C2=A0 <a href=3D"https://subscriberhelp.granicu= s.com/s/article/Subscriber-Help-Center" target=3D"_blank" rel=3D"noopener">= Help</a><a href=3D"https://insights.govdelivery.com/Communications/Subscrib= er_Help_Center" target=3D"_blank" rel=3D"noopener"></a></span><span style= =3D"font-size: 10.0pt; color: #757575;"></span></p>
    <p style=3D"text-align: center;"><span style=3D"font-size: 10.0pt; color: #= 757575;">Connect with CISA: <br></span><a href=3D"https://www.facebook.com/= CISA" target=3D"_blank" rel=3D"noopener"><span style=3D"font-size: 10.0pt; = color: #00568c;">Facebook</span></a><span style=3D"font-size: 10.0pt; color=
    : #757575;">=C2=A0 |=C2=A0 </span><a href=3D"https://twitter.com/CISAgov" t= arget=3D"_blank" rel=3D"noopener"><span style=3D"font-size: 10.0pt; color: = #00568c;">Twitter</span></a><span style=3D"font-size: 10.0pt; color: #75757= 5;">=C2=A0 |=C2=A0 </span><a href=3D"https://Instagram.com/cisagov" target= =3D"_blank" rel=3D"noopener"><span style=3D"font-size: 10.0pt; color: #0056= 8c;">Instagram</span></a><span style=3D"font-size: 10.0pt; color: #757575;"= >=C2=A0 |=C2=A0 </span><a href=3D"https://www.linkedin.com/company/cybersec= urity-and-infrastructure-security-agency" target=3D"_blank" rel=3D"noopener= "><span style=3D"font-size: 10.0pt; color: #00568c;">LinkedIn</span></a><sp=
    an style=3D"font-size: 10.0pt; color: #757575;">=C2=A0 |=C2=A0=C2=A0 </span= ><a href=3D"https://www.youtube.com/channel/UCxyq9roe-npgzrVwbpoAy0A" targe= t=3D"_self"><span style=3D"font-size: 10.0pt; color: #00568c;">YouTube</spa= n></a><span style=3D"font-size: 10.0pt; color: #757575;"></span></p>

    </div>
    <div id=3D"tagline">
    <hr>
    <table style=3D"width: 100%;" border=3D"0" cellspacing=3D"0" cellpadding=3D=

    <tbody>

    <td style=3D"color: #757575; font-size: 10px; font-family: Arial;" width=3D= "89%">This email was sent to cisa@toolazy.synchro.net using GovDelivery Com= munications Cloud, on behalf of: Cybersecurity and Infrastructure Security = Agency =C2=B7 707 17th St, Suite 4000 =C2=B7 Denver, CO 80202</td>
    <td align=3D"right" width=3D"11%"><a href=3D"https://subscriberhelp.granicu= s.com/" target=3D"_blank" rel=3D"noopener"><img src=3D"https://content.govd= elivery.com/images/govd-logo-dark.png" border=3D"0" alt=3D"GovDelivery logo=
    " width=3D"115"></a></td>
    </tr>
    </tbody>
    </table>
    <style type=3D"text/css">body .abe-column-block { min-height: 5px; } table.= gd_combo_table img {margin-left:10px; margin-right:10px;} table.gd_combo_ta= ble div.govd_image_display img, table.gd_combo_table td.gd_combo_image_cell=
    img {margin-left:0px; margin-right:0px;}</style>

    </div>
    </td>
    </tr>
    </table>

    <img alt=3D"" src=3D"https://links-2.govdelivery.com/CI0/0101019d30ece837-4= 600fd37-950a-452e-8abe-9852eaee6a67-000000/21Ipbbf9fCoLZKAZedyw-Rn5bvPbV2Iw= xAWGN3qCQdM=3D450" style=3D"display: none; width: 1px; height: 1px;">
    </body>
    </html>

    --===============8374094728141343893==--

    --===============7940031295432346926==--


  • From CISA@cisa@messages.cisa.gov to cisa@toolazy.synchro.net on Mon Mar 30 19:08:47 2026
    --===============3201272281295516364==
    Content-Type: multipart/alternative; boundary="===============5076048393779454294=="
    MIME-Version: 1.0

    --===============5076048393779454294==
    Content-Type: text/plain; charset="utf-8"
    MIME-Version: 1.0
    Content-Transfer-Encoding: quoted-printable

    Cybersecurity and Infrastructure Security Agency (CISA)

    You are subscribed to Cybersecurity Advisories for Cybersecurity and Infras= tructure Security Agency. This information has recently been updated and is=
    now available.

    CISA Adds One Known Exploited Vulnerability to Catalog [ https://www.cisa.g= ov/news-events/alerts/2026/03/30/cisa-adds-one-known-exploited-vulnerabilit= y-catalog ] 03/30/2026 3:00 PM EST=20

    CISA has added one new vulnerability to its Known Exploited Vulnerabilities=
    (KEV) Catalog [ https://www.cisa.gov/known-exploited-vulnerabilities-catal=
    og ], based on evidence of active exploitation.


    * CVE-2026-3055 [ https://www.cve.org/CVERecord?id=3DCVE-2026-3055 ] Citr=
    ix NetScaler Out-of-Bounds Read Vulnerability=20

    This type of vulnerability is frequent attack vector for malicious cyber ac= tors and poses significant risks to the federal enterprise.

    Binding Operational Directive (BOD) 22-01: Reducing the Significant Risk of=
    Known Exploited Vulnerabilities [ https://www.cisa.gov/binding-operational= -directive-22-01 ] established the KEV Catalog as a living list of known Co= mmon Vulnerabilities and Exposures (CVEs) that carry significant risk to th=
    e federal enterprise. BOD 22-01 requires Federal Civilian Executive Branch = (FCEB) agencies to remediate identified vulnerabilities by the due date to = protect FCEB networks against active threats. See the BOD 22-01 Fact Sheet =
    [ https://www.cisa.gov/sites/default/files/publications/Reducing_the_Signif= icant_Risk_of_Known_Exploited_Vulnerabilities_211103.pdf ] for more informa= tion.

    Although BOD 22-01 only applies to FCEB agencies, CISA strongly urges all o= rganizations to reduce their exposure to cyberattacks by prioritizing timel=
    y remediation of KEV Catalog vulnerabilities [ https://www.cisa.gov/known-e= xploited-vulnerabilities-catalog ] as part of their vulnerability managemen=
    t practice. CISA will continue to add vulnerabilities to the catalog that m= eet the specified criteria [ https://www.cisa.gov/known-exploited-vulnerabi= lities ].=C2=A0

    This product is provided subject to this=C2=A0Notification [ https://www.ci= sa.gov/notification ]=C2=A0and this=C2=A0Privacy & Use [ https://www.cisa.g= ov/privacy-policy ]=C2=A0policy.

    body { font-size: 1em; font-family: Arial, Verdana, sans-serif; font-weight=
    : normal; font-style: normal; color: #333333; }=20

    Having trouble viewing this message?=C2=A0View it as a webpage [ https://co= ntent.govdelivery.com/accounts/USDHSCISA/bulletins/410b3d2 ].=C2=A0 [ https= ://content.govdelivery.com/accounts/USDHS/bulletins/292141e ]

    You are subscribed to updates from the Cybersecurity and Infrastructure Sec= urity Agency [ https://www.cisa.gov ] (CISA)
    Manage Subscriptions [ https://public.govdelivery.com/accounts/USDHSCISA/su= bscriber/edit?preferences=3Dtrue#tab1 ]=C2=A0=C2=A0|=C2=A0=C2=A0Privacy Pol= icy [ https://www.cisa.gov/privacy-policy ]=C2=A0=C2=A0|=C2=A0 Help [ https= ://subscriberhelp.granicus.com/s/article/Subscriber-Help-Center ] [ https:/= /insights.govdelivery.com/Communications/Subscriber_Help_Center ]

    Connect with CISA:=20
    Facebook [ https://www.facebook.com/CISA ]=C2=A0 |=C2=A0 Twitter [ https://= twitter.com/CISAgov ]=C2=A0 |=C2=A0 Instagram [ https://Instagram.com/cisag=
    ov ]=C2=A0 |=C2=A0 LinkedIn [ https://www.linkedin.com/company/cybersecurit= y-and-infrastructure-security-agency ]=C2=A0 |=C2=A0=C2=A0 YouTube [ https:= //www.youtube.com/channel/UCxyq9roe-npgzrVwbpoAy0A ]

    ________________________________________________________________________

    This email was sent to cisa@toolazy.synchro.net using GovDelivery Communica= tions Cloud, on behalf of: Cybersecurity and Infrastructure Security Agency=
    =C2=B7 707 17th St, Suite 4000 =C2=B7 Denver, CO 80202 GovDelivery logo [ = https://subscriberhelp.granicus.com/ ]=20
    body .abe-column-block { min-height: 5px; } table.gd_combo_table img {margi= n-left:10px; margin-right:10px;} table.gd_combo_table div.govd_image_displa=
    y img, table.gd_combo_table td.gd_combo_image_cell img {margin-left:0px; ma= rgin-right:0px;}

    --===============5076048393779454294==
    Content-Type: text/html; charset="utf-8"
    MIME-Version: 1.0
    Content-Transfer-Encoding: quoted-printable

    <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
    "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
    <html xmlns=3D"http://www.w3.org/1999/xhtml" xml:lang=3D"en" lang=3D"en"> <head>
    <title> CISA Adds One Known Exploited Vulnerability to Catalog
    </title>


    </head>
    <body style=3D"">

    <table width=3D"700" border=3D"0" cellspacing=3D"0" cellpadding=3D"0"=
    align=3D"center">
    <tr>
    <td>

    <!--[if (gte mso 9)|(IE)]>
    <table style=3D"display:none"><tr><td><a name=3D"gd_top" id=3D"gd_top"></= a></td></tr></table>
    <![endif]-->
    <a name=3D"gd_top" id=3D"gd_top"></a>

    =20



    <p><img src=3D"https://content.govdelivery.com/attachments/fancy_images/U= SDHSCISA/2020/06/3486054/05152023-gov-delivery-banner-copy_original.png" al= t=3D"Cybersecurity and Infrastructure Security Agency (CISA)" title=3D"" wi= dth=3D"600" height=3D"100"></p>
    <p>You are subscribed to Cybersecurity Advisories for Cybersecurity and I= nfrastructure Security Agency. This information has recently been updated a=
    nd is now available.</p>
    <div class=3D"rss_item" style=3D"margin-bottom: 2em;">
    <div class=3D"rss_title" style=3D"font-weight: bold; font-size: 120%; margi=
    n: 0 0 0.3em; padding: 0;"><a href=3D"https://www.cisa.gov/news-events/aler= ts/2026/03/30/cisa-adds-one-known-exploited-vulnerability-catalog" target= =3D"_blank" title=3D"CISA Adds One Known Exploited Vulnerability to Catalog=
    " rel=3D"noopener">CISA Adds One Known Exploited Vulnerability to Catalog</= a></div>
    <div class=3D"rss_pub_date" style=3D"font-size: 90%; font-style: italic; co= lor: #666666; margin: 0 0 0.3em; padding: 0;">03/30/2026 3:00 PM EST</div>
    <div class=3D"rss_description" style=3D"margin: 0 0 0.3em; padding: 0;"> <p>CISA has added one new vulnerability to its <a href=3D"https://www.cisa.= gov/known-exploited-vulnerabilities-catalog" title=3D"Known Exploited Vulne= rabilities Catalog" data-entity-type=3D"node" data-entity-uuid=3D"79453b83-= 86b9-4e2f-b1ec-abf73c6eb291" data-entity-substitution=3D"canonical">Known E= xploited Vulnerabilities (KEV) Catalog</a>, based on evidence of active exp= loitation.</p>


    <a href=3D"https://www.cve.org/CVERecord?id=3DCVE-2026-3055" target=3D"_bla= nk" title=3D"CVE-2026-3055" rel=3D"noopener">CVE-2026-3055</a> Citrix NetSc= aler Out-of-Bounds Read Vulnerability</li>
    </ul>
    <p>This type of vulnerability is frequent attack vector for malicious cyber=
    actors and poses significant risks to the federal enterprise.</p>
    <p><a href=3D"https://www.cisa.gov/binding-operational-directive-22-01" tar= get=3D"_blank" title=3D"Binding Operational Directive (BOD) 22-01: Reducing=
    the Significant Risk of Known Exploited Vulnerabilities" rel=3D"noopener">= Binding Operational Directive (BOD) 22-01: Reducing the Significant Risk of=
    Known Exploited Vulnerabilities</a> established the KEV Catalog as a livin=
    g list of known Common Vulnerabilities and Exposures (CVEs) that carry sign= ificant risk to the federal enterprise. BOD 22-01 requires Federal Civilian=
    Executive Branch (FCEB) agencies to remediate identified vulnerabilities b=
    y the due date to protect FCEB networks against active threats. See the <a = href=3D"https://www.cisa.gov/sites/default/files/publications/Reducing_the_= Significant_Risk_of_Known_Exploited_Vulnerabilities_211103.pdf">BOD 22-01 F= act Sheet</a> for more information.</p>
    <p>Although BOD 22-01 only applies to FCEB agencies, CISA strongly urges al=
    l organizations to reduce their exposure to cyberattacks by prioritizing ti= mely remediation of <a href=3D"https://www.cisa.gov/known-exploited-vulnera= bilities-catalog" title=3D"Known Exploited Vulnerabilities Catalog" data-en= tity-type=3D"node" data-entity-uuid=3D"79453b83-86b9-4e2f-b1ec-abf73c6eb291=
    " data-entity-substitution=3D"canonical">KEV Catalog vulnerabilities</a> as=
    part of their vulnerability management practice. CISA will continue to add=
    vulnerabilities to the catalog that meet the <a href=3D"https://www.cisa.g= ov/known-exploited-vulnerabilities" title=3D"Reducing the Significant Risk =
    of Known Exploited Vulnerabilities" data-entity-type=3D"node" data-entity-u= uid=3D"f2adba9a-0404-494c-a90c-4363a4a5c934" data-entity-substitution=3D"ca= nonical">specified criteria</a>.=C2=A0</p>
    <p><span>This product is provided subject to this=C2=A0</span><a href=3D"ht= tps://www.cisa.gov/notification" target=3D"_blank" title=3D"Notification" r= el=3D"noopener">Notification</a><span>=C2=A0and this=C2=A0</span><a href=3D= "https://www.cisa.gov/privacy-policy" target=3D"_blank" title=3D"Privacy &a= mp; Use" rel=3D"noopener">Privacy &amp; Use</a><span>=C2=A0policy.</span></=

    </div>
    </div>
    <style>body {
    font-size: 1em; font-family: Arial, Verdana, sans-serif; font-weight: norma=
    l; font-style: normal; color: #333333;
    }
    </style>
    =20


    <div id=3D"mail_footer">
    <p style=3D"text-align: center;"><span style=3D"font-size: 10.0pt; colo=
    r: #757575;">Having trouble viewing this message?=C2=A0</span><a href=3D"ht= tps://content.govdelivery.com/accounts/USDHSCISA/bulletins/410b3d2" target= =3D"_blank" rel=3D"noopener">View it as a webpage</a>.=C2=A0<a href=3D"http= s://content.govdelivery.com/accounts/USDHS/bulletins/292141e" target=3D"_bl= ank" rel=3D"noopener"></a><span style=3D"font-size: 10.0pt; color: #757575;= "></span></p>
    <p style=3D"text-align: center;"><span style=3D"font-size: 10.0pt; color: #= 757575;">You are subscribed to updates from the </span><a href=3D"https://w= ww.cisa.gov"><span style=3D"font-size: 10.0pt;">Cybersecurity and Infrastru= cture Security Agency</span></a><span style=3D"font-size: 10.0pt; color: #7= 57575;"> (CISA)<br></span><a href=3D"https://public.govdelivery.com/account= s/USDHSCISA/subscriber/edit?preferences=3Dtrue#tab1" target=3D"_blank" rel= =3D"noopener"><span style=3D"font-size: 10.0pt; color: #00568c;">Manage Sub= scriptions</span></a>=C2=A0=C2=A0<span style=3D"font-size: 10.0pt; color: #= 757575;">|=C2=A0=C2=A0</span><a href=3D"https://www.cisa.gov/privacy-policy=
    " target=3D"_blank" rel=3D"noopener"><span style=3D"font-size: 10.0pt; colo=
    r: #00568c;">Privacy Policy</span></a><span style=3D"font-size: 10.0pt; col= or: #757575;">=C2=A0=C2=A0|=C2=A0 <a href=3D"https://subscriberhelp.granicu= s.com/s/article/Subscriber-Help-Center" target=3D"_blank" rel=3D"noopener">= Help</a><a href=3D"https://insights.govdelivery.com/Communications/Subscrib= er_Help_Center" target=3D"_blank" rel=3D"noopener"></a></span><span style= =3D"font-size: 10.0pt; color: #757575;"></span></p>
    <p style=3D"text-align: center;"><span style=3D"font-size: 10.0pt; color: #= 757575;">Connect with CISA: <br></span><a href=3D"https://www.facebook.com/= CISA" target=3D"_blank" rel=3D"noopener"><span style=3D"font-size: 10.0pt; = color: #00568c;">Facebook</span></a><span style=3D"font-size: 10.0pt; color=
    : #757575;">=C2=A0 |=C2=A0 </span><a href=3D"https://twitter.com/CISAgov" t= arget=3D"_blank" rel=3D"noopener"><span style=3D"font-size: 10.0pt; color: = #00568c;">Twitter</span></a><span style=3D"font-size: 10.0pt; color: #75757= 5;">=C2=A0 |=C2=A0 </span><a href=3D"https://Instagram.com/cisagov" target= =3D"_blank" rel=3D"noopener"><span style=3D"font-size: 10.0pt; color: #0056= 8c;">Instagram</span></a><span style=3D"font-size: 10.0pt; color: #757575;"= >=C2=A0 |=C2=A0 </span><a href=3D"https://www.linkedin.com/company/cybersec= urity-and-infrastructure-security-agency" target=3D"_blank" rel=3D"noopener= "><span style=3D"font-size: 10.0pt; color: #00568c;">LinkedIn</span></a><sp=
    an style=3D"font-size: 10.0pt; color: #757575;">=C2=A0 |=C2=A0=C2=A0 </span= ><a href=3D"https://www.youtube.com/channel/UCxyq9roe-npgzrVwbpoAy0A" targe= t=3D"_self"><span style=3D"font-size: 10.0pt; color: #00568c;">YouTube</spa= n></a><span style=3D"font-size: 10.0pt; color: #757575;"></span></p>

    </div>
    <div id=3D"tagline">
    <hr>
    <table style=3D"width: 100%;" border=3D"0" cellspacing=3D"0" cellpadding=3D=

    <tbody>

    <td style=3D"color: #757575; font-size: 10px; font-family: Arial;" width=3D= "89%">This email was sent to cisa@toolazy.synchro.net using GovDelivery Com= munications Cloud, on behalf of: Cybersecurity and Infrastructure Security = Agency =C2=B7 707 17th St, Suite 4000 =C2=B7 Denver, CO 80202</td>
    <td align=3D"right" width=3D"11%"><a href=3D"https://subscriberhelp.granicu= s.com/" target=3D"_blank" rel=3D"noopener"><img src=3D"https://content.govd= elivery.com/images/govd-logo-dark.png" border=3D"0" alt=3D"GovDelivery logo=
    " width=3D"115"></a></td>
    </tr>
    </tbody>
    </table>
    <style type=3D"text/css">body .abe-column-block { min-height: 5px; } table.= gd_combo_table img {margin-left:10px; margin-right:10px;} table.gd_combo_ta= ble div.govd_image_display img, table.gd_combo_table td.gd_combo_image_cell=
    img {margin-left:0px; margin-right:0px;}</style>

    </div>
    </td>
    </tr>
    </table>

    <img alt=3D"" src=3D"https://links-2.govdelivery.com/CI0/0101019d402609bb-3= 90c0eb3-e9de-40d7-b17a-baf666d3c6d4-000000/ZOSxTCCpBV0iXR8hitUsQYsXWG-jcho4= IJfJ8dMMJ1Q=3D450" style=3D"display: none; width: 1px; height: 1px;">
    </body>
    </html>

    --===============5076048393779454294==--

    --===============3201272281295516364==--


  • From CISA@cisa@messages.cisa.gov to cisa@toolazy.synchro.net on Wed Apr 8 17:24:48 2026
    --===============2183862565607718149==
    Content-Type: multipart/alternative; boundary="===============9103850029977264298=="
    MIME-Version: 1.0

    --===============9103850029977264298==
    Content-Type: text/plain; charset="utf-8"
    MIME-Version: 1.0
    Content-Transfer-Encoding: quoted-printable

    Cybersecurity and Infrastructure Security Agency (CISA)

    You are subscribed to Cybersecurity Advisories for Cybersecurity and Infras= tructure Security Agency. This information has recently been updated and is=
    now available.

    CISA Adds One Known Exploited Vulnerability to Catalog [ https://www.cisa.g= ov/news-events/alerts/2026/04/08/cisa-adds-one-known-exploited-vulnerabilit= y-catalog ] 04/08/2026 1:15 PM EST=20

    CISA has added one new vulnerability to its Known Exploited Vulnerabilities=
    (KEV) Catalog [ https://www.cisa.gov/known-exploited-vulnerabilities-catal=
    og ], based on evidence of active exploitation.


    * CVE-2026-1340 [ https://www.cve.org/CVERecord?id=3DCVE-2026-1340 ] Ivan=
    ti Endpoint Manager Mobile (EPMM) Code Injection Vulnerability=20

    This type of vulnerability is frequent attack vector for malicious cyber ac= tors and poses significant risks to the federal enterprise.

    Binding Operational Directive (BOD) 22-01: Reducing the Significant Risk of=
    Known Exploited Vulnerabilities [ https://www.cisa.gov/binding-operational= -directive-22-01 ] established the KEV Catalog as a living list of known Co= mmon Vulnerabilities and Exposures (CVEs) that carry significant risk to th=
    e federal enterprise. BOD 22-01 requires Federal Civilian Executive Branch = (FCEB) agencies to remediate identified vulnerabilities by the due date to = protect FCEB networks against active threats. See the BOD 22-01 Fact Sheet =
    [ https://www.cisa.gov/sites/default/files/publications/Reducing_the_Signif= icant_Risk_of_Known_Exploited_Vulnerabilities_211103.pdf ] for more informa= tion.

    Although BOD 22-01 only applies to FCEB agencies, CISA strongly urges all o= rganizations to reduce their exposure to cyberattacks by prioritizing timel=
    y remediation of KEV Catalog vulnerabilities [ https://www.cisa.gov/known-e= xploited-vulnerabilities-catalog ] as part of their vulnerability managemen=
    t practice. CISA will continue to add vulnerabilities to the catalog that m= eet the specified criteria [ https://www.cisa.gov/known-exploited-vulnerabi= lities ].=C2=A0

    This product is provided subject to this=C2=A0Notification [ https://www.ci= sa.gov/notification ]=C2=A0and this=C2=A0Privacy & Use [ https://www.cisa.g= ov/privacy-policy ]=C2=A0policy.

    body { font-size: 1em; font-family: Arial, Verdana, sans-serif; font-weight=
    : normal; font-style: normal; color: #333333; }=20

    Having trouble viewing this message?=C2=A0View it as a webpage [ https://co= ntent.govdelivery.com/accounts/USDHSCISA/bulletins/412139d ].=C2=A0 [ https= ://content.govdelivery.com/accounts/USDHS/bulletins/292141e ]

    You are subscribed to updates from the Cybersecurity and Infrastructure Sec= urity Agency [ https://www.cisa.gov ] (CISA)
    Manage Subscriptions [ https://public.govdelivery.com/accounts/USDHSCISA/su= bscriber/edit?preferences=3Dtrue#tab1 ]=C2=A0=C2=A0|=C2=A0=C2=A0Privacy Pol= icy [ https://www.cisa.gov/privacy-policy ]=C2=A0=C2=A0|=C2=A0 Help [ https= ://subscriberhelp.granicus.com/s/article/Subscriber-Help-Center ] [ https:/= /insights.govdelivery.com/Communications/Subscriber_Help_Center ]

    Connect with CISA:=20
    Facebook [ https://www.facebook.com/CISA ]=C2=A0 |=C2=A0 Twitter [ https://= twitter.com/CISAgov ]=C2=A0 |=C2=A0 Instagram [ https://Instagram.com/cisag=
    ov ]=C2=A0 |=C2=A0 LinkedIn [ https://www.linkedin.com/company/cybersecurit= y-and-infrastructure-security-agency ]=C2=A0 |=C2=A0=C2=A0 YouTube [ https:= //www.youtube.com/channel/UCxyq9roe-npgzrVwbpoAy0A ]

    ________________________________________________________________________

    This email was sent to cisa@toolazy.synchro.net using GovDelivery Communica= tions Cloud, on behalf of: Cybersecurity and Infrastructure Security Agency=
    =C2=B7 707 17th St, Suite 4000 =C2=B7 Denver, CO 80202 GovDelivery logo [ = https://subscriberhelp.granicus.com/ ]=20
    body .abe-column-block { min-height: 5px; } table.gd_combo_table img {margi= n-left:10px; margin-right:10px;} table.gd_combo_table div.govd_image_displa=
    y img, table.gd_combo_table td.gd_combo_image_cell img {margin-left:0px; ma= rgin-right:0px;}

    --===============9103850029977264298==
    Content-Type: text/html; charset="utf-8"
    MIME-Version: 1.0
    Content-Transfer-Encoding: quoted-printable

    <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
    "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
    <html xmlns=3D"http://www.w3.org/1999/xhtml" xml:lang=3D"en" lang=3D"en"> <head>
    <title> CISA Adds One Known Exploited Vulnerability to Catalog
    </title>


    </head>
    <body style=3D"">

    <table width=3D"700" border=3D"0" cellspacing=3D"0" cellpadding=3D"0"=
    align=3D"center">
    <tr>
    <td>

    <!--[if (gte mso 9)|(IE)]>
    <table style=3D"display:none"><tr><td><a name=3D"gd_top" id=3D"gd_top"></= a></td></tr></table>
    <![endif]-->
    <a name=3D"gd_top" id=3D"gd_top"></a>

    =20



    <p><img src=3D"https://content.govdelivery.com/attachments/fancy_images/U= SDHSCISA/2020/06/3486054/05152023-gov-delivery-banner-copy_original.png" al= t=3D"Cybersecurity and Infrastructure Security Agency (CISA)" title=3D"" wi= dth=3D"600" height=3D"100"></p>
    <p>You are subscribed to Cybersecurity Advisories for Cybersecurity and I= nfrastructure Security Agency. This information has recently been updated a=
    nd is now available.</p>
    <div class=3D"rss_item" style=3D"margin-bottom: 2em;">
    <div class=3D"rss_title" style=3D"font-weight: bold; font-size: 120%; margi=
    n: 0 0 0.3em; padding: 0;"><a href=3D"https://www.cisa.gov/news-events/aler= ts/2026/04/08/cisa-adds-one-known-exploited-vulnerability-catalog" target= =3D"_blank" title=3D"CISA Adds One Known Exploited Vulnerability to Catalog=
    " rel=3D"noopener">CISA Adds One Known Exploited Vulnerability to Catalog</= a></div>
    <div class=3D"rss_pub_date" style=3D"font-size: 90%; font-style: italic; co= lor: #666666; margin: 0 0 0.3em; padding: 0;">04/08/2026 1:15 PM EST</div>
    <div class=3D"rss_description" style=3D"margin: 0 0 0.3em; padding: 0;"> <p>CISA has added one new vulnerability to its <a href=3D"https://www.cisa.= gov/known-exploited-vulnerabilities-catalog" title=3D"Known Exploited Vulne= rabilities Catalog" data-entity-type=3D"node" data-entity-uuid=3D"79453b83-= 86b9-4e2f-b1ec-abf73c6eb291" data-entity-substitution=3D"canonical">Known E= xploited Vulnerabilities (KEV) Catalog</a>, based on evidence of active exp= loitation.</p>


    <span data-teams=3D"true"><a id=3D"menurjg7" href=3D"https://www.cve.org/CV= ERecord?id=3DCVE-2026-1340" target=3D"_blank" title=3D"https://www.cve.org/= cverecord?id=3Dcve-2026-1340" class=3D"fui-Link ___1q1shib f2hkw1w f3rmtva = f1ewtqcl fyind8e f1k6fduh f1w7gpdv fk6fouc fjoy568 figsok6 f1s184ao f1mk8la=
    i fnbmjn9 f1o700av f13mvf36 f1cmlufx f9n3di6 f1ids18y f1tx3yz7 f1deo86v f1e= h06m1 f1iescvh fhgqx19 f1olyrje f1p93eir f1nev41a f1h8hb77 f1lqvz6u f10aw75=
    t fsle3fq f17ae5zn" aria-label=3D"Link CVE-2026-1340" rel=3D"noopener">CVE-= 2026-1340</a></span> <span data-teams=3D"true">Ivanti Endpoint Manager Mobi=
    le (EPMM) Code Injection Vulnerability</span>
    </li>
    </ul>
    <p>This type of vulnerability is frequent attack vector for malicious cyber=
    actors and poses significant risks to the federal enterprise.</p>
    <p><a href=3D"https://www.cisa.gov/binding-operational-directive-22-01" tar= get=3D"_blank" title=3D"Binding Operational Directive (BOD) 22-01: Reducing=
    the Significant Risk of Known Exploited Vulnerabilities" rel=3D"noopener">= Binding Operational Directive (BOD) 22-01: Reducing the Significant Risk of=
    Known Exploited Vulnerabilities</a> established the KEV Catalog as a livin=
    g list of known Common Vulnerabilities and Exposures (CVEs) that carry sign= ificant risk to the federal enterprise. BOD 22-01 requires Federal Civilian=
    Executive Branch (FCEB) agencies to remediate identified vulnerabilities b=
    y the due date to protect FCEB networks against active threats. See the <a = href=3D"https://www.cisa.gov/sites/default/files/publications/Reducing_the_= Significant_Risk_of_Known_Exploited_Vulnerabilities_211103.pdf">BOD 22-01 F= act Sheet</a> for more information.</p>
    <p>Although BOD 22-01 only applies to FCEB agencies, CISA strongly urges al=
    l organizations to reduce their exposure to cyberattacks by prioritizing ti= mely remediation of <a href=3D"https://www.cisa.gov/known-exploited-vulnera= bilities-catalog" title=3D"Known Exploited Vulnerabilities Catalog" data-en= tity-type=3D"node" data-entity-uuid=3D"79453b83-86b9-4e2f-b1ec-abf73c6eb291=
    " data-entity-substitution=3D"canonical">KEV Catalog vulnerabilities</a> as=
    part of their vulnerability management practice. CISA will continue to add=
    vulnerabilities to the catalog that meet the <a href=3D"https://www.cisa.g= ov/known-exploited-vulnerabilities" title=3D"Reducing the Significant Risk =
    of Known Exploited Vulnerabilities" data-entity-type=3D"node" data-entity-u= uid=3D"f2adba9a-0404-494c-a90c-4363a4a5c934" data-entity-substitution=3D"ca= nonical">specified criteria</a>.=C2=A0</p>
    <p><span>This product is provided subject to this=C2=A0</span><a href=3D"ht= tps://www.cisa.gov/notification" target=3D"_blank" title=3D"Notification" r= el=3D"noopener">Notification</a><span>=C2=A0and this=C2=A0</span><a href=3D= "https://www.cisa.gov/privacy-policy" target=3D"_blank" title=3D"Privacy &a= mp; Use" rel=3D"noopener">Privacy &amp; Use</a><span>=C2=A0policy.</span></=

    </div>
    </div>
    <style>body {
    font-size: 1em; font-family: Arial, Verdana, sans-serif; font-weight: norma=
    l; font-style: normal; color: #333333;
    }
    </style>
    =20


    <div id=3D"mail_footer">
    <p style=3D"text-align: center;"><span style=3D"font-size: 10.0pt; colo=
    r: #757575;">Having trouble viewing this message?=C2=A0</span><a href=3D"ht= tps://content.govdelivery.com/accounts/USDHSCISA/bulletins/412139d" target= =3D"_blank" rel=3D"noopener">View it as a webpage</a>.=C2=A0<a href=3D"http= s://content.govdelivery.com/accounts/USDHS/bulletins/292141e" target=3D"_bl= ank" rel=3D"noopener"></a><span style=3D"font-size: 10.0pt; color: #757575;= "></span></p>
    <p style=3D"text-align: center;"><span style=3D"font-size: 10.0pt; color: #= 757575;">You are subscribed to updates from the </span><a href=3D"https://w= ww.cisa.gov"><span style=3D"font-size: 10.0pt;">Cybersecurity and Infrastru= cture Security Agency</span></a><span style=3D"font-size: 10.0pt; color: #7= 57575;"> (CISA)<br></span><a href=3D"https://public.govdelivery.com/account= s/USDHSCISA/subscriber/edit?preferences=3Dtrue#tab1" target=3D"_blank" rel= =3D"noopener"><span style=3D"font-size: 10.0pt; color: #00568c;">Manage Sub= scriptions</span></a>=C2=A0=C2=A0<span style=3D"font-size: 10.0pt; color: #= 757575;">|=C2=A0=C2=A0</span><a href=3D"https://www.cisa.gov/privacy-policy=
    " target=3D"_blank" rel=3D"noopener"><span style=3D"font-size: 10.0pt; colo=
    r: #00568c;">Privacy Policy</span></a><span style=3D"font-size: 10.0pt; col= or: #757575;">=C2=A0=C2=A0|=C2=A0 <a href=3D"https://subscriberhelp.granicu= s.com/s/article/Subscriber-Help-Center" target=3D"_blank" rel=3D"noopener">= Help</a><a href=3D"https://insights.govdelivery.com/Communications/Subscrib= er_Help_Center" target=3D"_blank" rel=3D"noopener"></a></span><span style= =3D"font-size: 10.0pt; color: #757575;"></span></p>
    <p style=3D"text-align: center;"><span style=3D"font-size: 10.0pt; color: #= 757575;">Connect with CISA: <br></span><a href=3D"https://www.facebook.com/= CISA" target=3D"_blank" rel=3D"noopener"><span style=3D"font-size: 10.0pt; = color: #00568c;">Facebook</span></a><span style=3D"font-size: 10.0pt; color=
    : #757575;">=C2=A0 |=C2=A0 </span><a href=3D"https://twitter.com/CISAgov" t= arget=3D"_blank" rel=3D"noopener"><span style=3D"font-size: 10.0pt; color: = #00568c;">Twitter</span></a><span style=3D"font-size: 10.0pt; color: #75757= 5;">=C2=A0 |=C2=A0 </span><a href=3D"https://Instagram.com/cisagov" target= =3D"_blank" rel=3D"noopener"><span style=3D"font-size: 10.0pt; color: #0056= 8c;">Instagram</span></a><span style=3D"font-size: 10.0pt; color: #757575;"= >=C2=A0 |=C2=A0 </span><a href=3D"https://www.linkedin.com/company/cybersec= urity-and-infrastructure-security-agency" target=3D"_blank" rel=3D"noopener= "><span style=3D"font-size: 10.0pt; color: #00568c;">LinkedIn</span></a><sp=
    an style=3D"font-size: 10.0pt; color: #757575;">=C2=A0 |=C2=A0=C2=A0 </span= ><a href=3D"https://www.youtube.com/channel/UCxyq9roe-npgzrVwbpoAy0A" targe= t=3D"_self"><span style=3D"font-size: 10.0pt; color: #00568c;">YouTube</spa= n></a><span style=3D"font-size: 10.0pt; color: #757575;"></span></p>

    </div>
    <div id=3D"tagline">
    <hr>
    <table style=3D"width: 100%;" border=3D"0" cellspacing=3D"0" cellpadding=3D=

    <tbody>

    <td style=3D"color: #757575; font-size: 10px; font-family: Arial;" width=3D= "89%">This email was sent to cisa@toolazy.synchro.net using GovDelivery Com= munications Cloud, on behalf of: Cybersecurity and Infrastructure Security = Agency =C2=B7 707 17th St, Suite 4000 =C2=B7 Denver, CO 80202</td>
    <td align=3D"right" width=3D"11%"><a href=3D"https://subscriberhelp.granicu= s.com/" target=3D"_blank" rel=3D"noopener"><img src=3D"https://content.govd= elivery.com/images/govd-logo-dark.png" border=3D"0" alt=3D"GovDelivery logo=
    " width=3D"115"></a></td>
    </tr>
    </tbody>
    </table>
    <style type=3D"text/css">body .abe-column-block { min-height: 5px; } table.= gd_combo_table img {margin-left:10px; margin-right:10px;} table.gd_combo_ta= ble div.govd_image_display img, table.gd_combo_table td.gd_combo_image_cell=
    img {margin-left:0px; margin-right:0px;}</style>

    </div>
    </td>
    </tr>
    </table>

    <img alt=3D"" src=3D"https://links-2.govdelivery.com/CI0/0101019d6e201052-a= 2e205fe-6b41-4b4e-8ab2-5512309134b4-000000/clXUPO7AY60WScdyHTUs7ty_baMJ6CqD= 65K2mRcJp0g=3D452" style=3D"display: none; width: 1px; height: 1px;">
    </body>
    </html>

    --===============9103850029977264298==--

    --===============2183862565607718149==--