Senators take another swing at vulnerability disclosure policy bill for federal contractorsCyberScoop·May 23, 18:49 UTC · May 23, 2025Vulnerability in the wild60
CISA directive orders federal civilian agencies to regularly report software vulnerabilitiesCyberScoop·Oct 3, 22:43 UTC · Oct 3, 2022Vulnerability in the wild60
CISA to require federal agencies to patch some cyber vulnerabilities within 3 daysThe Record·Jun 10, 19:56 UTC · Jun 10, 2026Vulnerability in the wild60
CISA issues emergency directive for federal agencies to patch Ivanti VPN vulnerabilitiesCyberScoop·Jan 19, 22:13 UTC · Jan 19, 2024Vulnerability in the wild60
US CISA shares a catalog of 306 actively exploited vulnerabilitiesSecurity Affairs·Nov 4, 11:37 UTC · Nov 4, 2021Vulnerability in the wildCVE-2010-532660
CISA orders federal agencies to patch exploited SolarWinds, Apple, Microsoft bugs within weeksThe Record·Feb 13, 14:58 UTC · Feb 13, 2026Vulnerability in the wildCVE-2025-40536CVE-2026-20700CVE-2025-14174+5 CVEs160
Experts found hundreds of devices within federal networks having internetSecurity Affairs·Jun 27, 14:07 UTC · Jun 27, 2023Vulnerability in the wild60
CISA Orders Federal Agencies to Patch FlawsInfosecurity Magazine·Nov 3, 17:20 UTC · Nov 3, 2021Vulnerability in the wild60
Federal agencies given one day to patch exploited Cisco firewall bugsThe Record·Apr 27, 00:00 UTC · Apr 27, 2026VulnerabilityCVE-2025-20333CVE-2025-20362CVE-2025-3033360
U.S. Federal Agencies Ordered to Patch Hundreds of Actively Exploited FlawsThe Hacker News·Nov 5, 11:44 UTC · Nov 5, 2021Vulnerability in the wild60
US Federal Agency Compromised by CyberInfosecurity Magazine·Sep 25, 19:54 UTC · Sep 25, 2020VulnerabilityCVE-2019-1151060
CISA tells federal agencies to patch Citrix NetScaler bug by ThursdayThe Record·Mar 31, 13:06 UTC · Mar 31, 2026VulnerabilityCVE-2026-3055CVE-2025-577760
Federal agencies now only have one more day to patch React2Shell bugThe Record·Dec 11, 19:54 UTC · Dec 11, 2025Vulnerability in the wildCVE-2025-5518260
Multiple Hacker Groups Exploit 3-Year-Old Vulnerability to Breach U.S. Federal AgencyThe Hacker News·Mar 15, 00:00 UTC · Mar 15, 2023Vulnerability in the wildCVE-2019-18935CVE-2017-11317CVE-2017-1135760
CISA Orders Federal Agencies to Patch Actively Exploited Windows VulnerabilityThe Hacker News·Feb 7, 05:03 UTC · Feb 7, 2022Vulnerability in the wildCVE-2022-21882CVE-2021-173260
CISA directive orders agencies to prioritize vulnerability patching in a new wayCyberScoop·Jun 10, 18:10 UTC · Jun 10, 2026Vulnerability in the wild60
CISA orders all federal agencies to patch exploited bug in Cisco SDThe Record·May 15, 13:20 UTC · May 15, 2026VulnerabilityCVE-2026-2018260
Federal agencies must patch cPanel bug by Sunday, CISA saysThe Record·May 1, 16:25 UTC · May 1, 2026VulnerabilityCVE-2026-4194060
CISA shortens patch deadline for critical Ivanti, SolarWinds bugsThe Record·Mar 10, 13:52 UTC · Mar 10, 2026Vulnerability in the wildCVE-2025-26399CVE-2026-160360
CISA orders federal agencies to patch exploited SolarWinds bug by FridayThe Record·Feb 3, 20:59 UTC · Feb 3, 2026Vulnerability in the wildCVE-2025-40551CVE-2024-2898660
CISA gives federal agencies one week to patch exploited Fortinet bugThe Record·Nov 17, 13:33 UTC · Nov 17, 2025Vulnerability in the wildCVE-2025-64446160
"Patched" but still exposed: US federal agencies must remediate Cisco flaws (again)Help Net Security·Nov 13, 00:00 UTC · Nov 13, 2025Vulnerability in the wildCVE-2025-20333CVE-2025-20362CVE-2025-12480+2 CVEs60
CISA orders federal gov to patch critical Fortra file transfer bugThe Record·Sep 30, 17:33 UTC · Sep 30, 2025Vulnerability in the wildCVE-2025-10035CVE-2023-066960
Dems want watchdog study of two troubled federally-funded vulnerability tracking initiativesCyberScoop·Jun 11, 17:18 UTC · Jun 11, 2025Vulnerability in the wild60
Patch actively exploited Microsoft SharePoint bug, CISA orders federal agencies (CVE-2023-24955)Help Net Security·Mar 28, 00:00 UTC · Mar 28, 2024Vulnerability in the wildCVE-2023-24955CVE-2023-29357160
VMware issues critical fixes, CISA orders federal agencies to act immediately (CVE-2022-22972)Help Net Security·Jan 11, 11:31 UTC · Jan 11, 2024Vulnerability in the wildCVE-2022-22972CVE-2022-22973CVE-2022-22954+1 CVEs60
CISA orders federal agencies to patch Windows bugThe Record·Jan 12, 00:00 UTC · Jan 12, 2023Vulnerability in the wildCVE-2022-2692560
NodeBB Patches Eight AI-Found Flaws Exposing Admin Access and Private ChatsThe Hacker News·Jul 24, 07:41 UTC · Jul 24, 2026VulnerabilityCVE-2026-5859360
FIRESTARTER Backdoor Hit Federal Cisco Firepower Device, Survives Security PatchesThe Hacker News·Apr 25, 08:20 UTC · Apr 25, 2026VulnerabilityCVE-2025-20333CVE-2025-2036260
Federal agencies ordered to patch Microsoft Desktop Windows Manager bugThe Record·Jan 14, 13:30 UTC · Jan 14, 2026Vulnerability in the wildCVE-2026-20805160
ThreatsDay Bulletin: Rootkit Patch, Federal Breach, OnePlus SMS Leak, TikTok Scandal & MoreThe Hacker News·Oct 2, 12:19 UTC · Oct 2, 2025VulnerabilityCVE-2025-10184CVE-2024-36401160
CISA Urges Federal Agencies to Patch Versa Director Vulnerability by SeptemberThe Hacker News·Aug 24, 07:03 UTC · Aug 24, 2024Vulnerability in the wildCVE-2024-39717CVE-2021-33044CVE-2021-33045+2 CVEs160
CISA Alerts Federal Agencies to Patch Actively Exploited Linux Kernel FlawThe Hacker News·May 30, 17:45 UTC · May 30, 2024Vulnerability in the wildCVE-2024-1086CVE-2024-2491960
Hackers Exploited ColdFusion Vulnerability to Breach Federal Agency ServersThe Hacker News·Dec 9, 05:09 UTC · Dec 9, 2023Vulnerability in the wildCVE-2023-2636060
CISA orders federal agencies to patch CVE-2022Security Affairs·Jul 4, 07:16 UTC · Jul 4, 2022Vulnerability in the wildCVE-2022-2692560
Cisco ‘Knowingly’ Sold Hackable Video Surveillance System to U.S. GovernmentThe Hacker News·Aug 1, 09:13 UTC · Aug 1, 2019VulnerabilityCVE-2013-3429CVE-2013-3430CVE-2013-343160
US, UK agencies warn hackers were hiding on Cisco firewalls long after patches were appliedCyberScoop·Apr 23, 20:25 UTC · Apr 23, 2026Vulnerability in the wildCVE-2025-20333CVE-2025-2036260
NIST narrows scope of CVE analysis to keep up with rising tide of vulnerabilitiesCyberScoop·Apr 15, 20:17 UTC · Apr 15, 2026Vulnerability in the wild60
CISA Issues Emergency Directive Over Exploited Cisco SDInfosecurity Magazine·Mar 12, 12:45 UTC · Mar 12, 2026VulnerabilityCVE-2026-2012760
CISA sunsets 10 emergency directives thanks to evolution of exploited vulnerabilities catalogThe Record·Jan 8, 22:02 UTC · Jan 8, 2026Vulnerability in the wildCVE-2020-0601CVE-2020-1350CVE-2020-1472+3 CVEs60