Skip to content

Commit cc71291

Browse files
Update KEV: Sat Apr 12 00:11:55 UTC 2025
Signed-off-by: AboutCode Automation <[email protected]>
1 parent f381447 commit cc71291

File tree

1 file changed

+4
-4
lines changed

1 file changed

+4
-4
lines changed

known_exploited_vulnerabilities.json

Lines changed: 4 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -1,7 +1,7 @@
11
{
22
"title": "CISA Catalog of Known Exploited Vulnerabilities",
3-
"catalogVersion": "2025.04.09",
4-
"dateReleased": "2025-04-09T18:01:15.7329Z",
3+
"catalogVersion": "2025.04.11",
4+
"dateReleased": "2025-04-11T17:52:01.5722Z",
55
"count": 1319,
66
"vulnerabilities": [
77
{
@@ -4559,10 +4559,10 @@
45594559
"vulnerabilityName": "HTTP\/2 Rapid Reset Attack Vulnerability",
45604560
"dateAdded": "2023-10-10",
45614561
"shortDescription": "HTTP\/2 contains a rapid reset vulnerability that allows for a distributed denial-of-service attack (DDoS).",
4562-
"requiredAction": "Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.",
4562+
"requiredAction": "Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.",
45634563
"dueDate": "2023-10-31",
45644564
"knownRansomwareCampaignUse": "Unknown",
4565-
"notes": "This vulnerability affects a common open-source component, third-party library, or a protocol used by different products. Please check with specific vendors for information on patching status. For more information, please see: https:\/\/blog.cloudflare.com\/technical-breakdown-http2-rapid-reset-ddos-attack\/ ; https:\/\/nvd.nist.gov\/vuln\/detail\/CVE-2023-44487",
4565+
"notes": "This vulnerability affects a common open-source component, third-party library, or protocol used by different products. For more information, please see: CVE: Common Vulnerabilities and Exposures; https:\/\/blog.cloudflare.com\/technical-breakdown-http2-rapid-reset-ddos-attack\/; https:\/\/nvd.nist.gov\/vuln\/detail\/CVE-2023-44487",
45664566
"cwes": [
45674567
"CWE-400"
45684568
]

0 commit comments

Comments
 (0)