The U.S. Cybersecurity and Infrastructure Security Agency (CISA) hasΒ addedΒ two vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog, based on evidence of active exploitation.
The two flaws are listed below -
CVE-2023-20963Β (CVSS score: 7.8) - Android Framework Privilege Escalation Vulnerability
CVE-2023-29492Β (CVSS score: TBD) - Novi Survey Insecure Deserialization Vulnerability
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) hasΒ addedΒ three security flaws to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation.
The list of vulnerabilities is below -
CVE-2022-35914Β (CVSS score: 9.8) - Teclib GLPI Remote Code Execution Vulnerability
CVE-2022-33891Β (CVSS score: 8.8) - Apache Spark Command Injection Vulnerability
CVE-