About 50 results
Open links in new tab
  1. Known Exploited Vulnerabilities Catalog - CISA

    For the benefit of the cybersecurity community and network defenders—and to help every organization better manage vulnerabilities and keep pace with threat activity—CISA maintains the authoritative …

  2. The KEV Catalog - CISA

    A list of Known Exploited Vulnerabilities.

  3. CISA Adds Two Known Exploited Vulnerabilities to Catalog

    Jan 7, 2026 · Binding Operational Directive (BOD) 22-01: Reducing the Significant Risk of Known Exploited Vulnerabilities established the KEV Catalog as a living list of known Common …

  4. Reducing the Significant Risk of Known Exploited Vulnerabilities

    Learn about the importance of CISA's Known Exploited Vulnerability (KEV) catalog and how to use it to help build a collective resilience across the cybersecurity community.

  5. CISA Adds One Known Exploited Vulnerability to Catalog

    Jul 10, 2025 · CISA has added one new vulnerability to its Known Exploited Vulnerabilities (KEV) Catalog, based on evidence of active exploitation.

  6. Key Cyber Initiatives from CISA: KEV Catalog, CPGs, and PRNI

    Jan 7, 2025 · The KEV Catalog, CPGs, and PRNI exemplify CISA’s commitment to fostering collaboration across public and private sectors. These initiatives have helped to reshape …

  7. KEV Catalog Reaches 1000, What Does That Mean and What Have We …

    Sep 18, 2023 · The KEV should be easy to use – ideally incorporated into tools already being used to prioritize vulnerability management. Federal agencies are able to see their open KEVs in their …

  8. BOD 22-01: Reducing the Significant Risk of Known Exploited ...

    Nov 3, 2021 · As a reminder, the KEV is part of a risk-reduction action for federal civilian executive branch agencies as defined in BOD-22-01 (Binding Operational Directive 22-01 | CISA). This …

  9. CISA Adds One Known Exploited Vulnerability to Catalog

    Dec 9, 2025 · Although BOD 22-01 only applies to FCEB agencies, CISA strongly urges all organizations to reduce their exposure to cyberattacks by prioritizing timely remediation of KEV …

  10. CISA Adds Seven Known Exploited Vulnerabilities to Catalog

    Oct 6, 2025 · Oracle E-Business Suite Unspecified Vulnerability These types of vulnerabilities are frequent attack vector for malicious cyber actors and pose significant risks to the federal enterprise. …