Dossier
Known Exploited Vulnerabilities Catalog
Coverage of Known Exploited Vulnerabilities Catalog in the Nexus archive.
- Oracle WebLogic CVE-2024-21182 Added to KEV Catalog After Active Exploitation
CISA added a high-severity vulnerability (CVE-2024-21182) in Oracle WebLogic Server to its KEV Catalog due to evidence of active exploitation. The flaw allows unauthenticated attackers to take control of vulnerable servers.
- CISA to allow researchers to report vulnerabilities to exploited bugs catalog
CISA announced a new nomination form that allows researchers, vendors, and industry partners to report vulnerabilities for inclusion in the Known Exploited Vulnerabilities catalog. This initiative aims to streamline the process of identifying and tracking bugs that are actively being exploited in the wild.