CISA Adds Two Known Exploited Vulnerabilities to Catalog

CISA Adds Two Known Exploited Vulnerabilities to Catalog

CISA has added two new actively exploited vulnerabilities related to Android Framework to its KEV Catalog. These vulnerabilities pose significant risks, prompting organizations to prioritize their remediation efforts. #CISA #AndroidVulnerabilities

Keypoints

  • CISA updates its KEV Catalog with newly exploited vulnerabilities.
  • Two Android Framework vulnerabilities are now listed: CVE-2025-48572 and CVE-2025-48633.
  • Vulnerabilities in the KEV Catalog are frequently targeted by malicious cyber actors.
  • Organizations are urged to prioritize timely remediation of KEV vulnerabilities.
  • CISA continues to add vulnerabilities to the catalog based on active exploitation evidence.

Read More: https://www.cisa.gov/news-events/alerts/2025/12/02/cisa-adds-two-known-exploited-vulnerabilities-catalog