CISA Adds Four Critical Vulnerabilities to KEV Catalog Due to Active Exploitation

CISA Adds Four Critical Vulnerabilities to KEV Catalog Due to Active Exploitation

The U.S. CISA has added four vulnerabilities to its KEV catalog, with active exploitation noted for CVE-2019-9621 related to Earth Lusca. This highlights ongoing threats to various systems, including Citrix NetScaler ADC, which is currently targeted in the wild. #EarthLusca #CVE2019621 #CitrixBleed2

Keypoints

  • CISA has listed four security flaws in its KEV catalog, with some actively exploited in the wild.
  • The vulnerabilities include buffer overflow, command injection, path traversal, and SSRF issues.
  • Earth Lusca, a China-linked group, is known to exploit CVE-2019-9621 to deploy web shells and Cobalt Strike.
  • Citrix NetScaler ADC vulnerabilities CVE-2025-5777 and CVE-2025-6543 are actively exploited, risking sensitive data exposure.
  • FCEB agencies are advised to apply updates by July 28, 2025, to protect their networks from these threats.

Read More: https://thehackernews.com/2025/07/cisa-adds-four-critical-vulnerabilities.html