CISA Adds One Known Exploited Vulnerability to Catalog

Summary

CISA has added CVE-2025-39682, a Linux Kernel vulnerability, to its Known Exploited Vulnerabilities (KEV) Catalog due to evidence of active exploitation. This inclusion is part of CISA's Binding Operational Directive (BOD) 26-04, which mandates federal agencies to prioritize the remediation of high-risk vulnerabilities listed in the KEV Catalog.

IFF Assessment

FOE

The article highlights a newly identified exploited vulnerability, which represents a direct threat and bad news for defenders as it requires immediate attention and remediation.

Severity

9.8 Critical

CISA KEV: Listed as actively exploited. Federal patch due: September 21, 2026. Known ransomware use: Unknown.

Defender Context

Defenders need to be aware of CVE-2025-39682 and prioritize its patching, especially if managing federal civilian executive branch (FCEB) systems, as it is now a known exploited vulnerability. This also underscores the importance of a robust vulnerability management program that prioritizes CISA's KEV catalog for timely remediation to mitigate active threats.

Read Full Story →