piyokango[verified]@piyokangoActive Exploitation
CISA confirmed exploitation of four CVEs and added them to its KEV catalog, while providing vendor advisories, CVSS details, and remediation links.
BotBauR[verified]@BotBauRActive Exploitation
CISA lists SolarWinds Web Help Desk CVE‑2025‑40551, FreePBX CVE‑2019‑19006, and CVE‑2025‑64328 as actively exploited; the post urges immediate patching or mitigation in Mexico.
キタきつね[verified]@foxbookActive Exploitation
CISA identified four CVEs that are already being exploited, including vulnerabilities in Sangoma FreePBX and SolarWinds. No PoC, exploit code, or patch details are provided in the announcement.
Ostorlab[verified]@OstorlabSecActive Exploitation
FreePBX authentication bypass CVE-2019-19006 is actively exploited; a public PoC exists, CVSS 9.8, and vendors must patch immediately.
ThreatSynop[verified]@ThreatSynopActive Exploitation
CISA has listed CVE‑2025‑40551 as actively exploited in its KEV catalog and is urging users to upgrade to WHD 2026.1 to mitigate the unauthenticated deserialization RCE.
ThreatSynop[verified]@ThreatSynopActive Exploitation
CISA identified four actively exploited vulnerabilities in SolarWinds Web Help Desk, GitLab, and FreePBX, adding them to the KEV catalog and imposing tight patch deadlines to curb real‑world takeover risks.
ThreatSynop[verified]@ThreatSynopActive Exploitation
CISA has added four actively exploited vulnerabilities to its KEV catalog, stressing real-world exploitation risk and urging rapid patching with specific deadlines.
Dark Web Informer@DarkWebInformerDisclosure
The tweet announces that CISA has added four CVEs to its KEV Catalog, providing only short vulnerability descriptions without any PoC, exploit details, or patch information.