Topic: federal compliance

  • CISA Warns of Active Dassault RCE Exploit—Patch Now

    CISA Warns of Active Dassault RCE Exploit—Patch Now

    A critical remote code execution vulnerability (CVE-2025-5086) is being actively exploited in Dassault Systèmes' DELMIA Apriso software, affecting versions from 2020 to 2025. The flaw, caused by unsafe deserialization, allows attackers to execute arbitrary code via malicious SOAP requests, with e...

    Read More »
  • CISA Warns of Critical Git Flaw Under Active Exploitation

    CISA Warns of Critical Git Flaw Under Active Exploitation

    CISA has issued an urgent warning about a critical vulnerability in Git (CVE-2025-48384) that allows arbitrary code execution and requires federal agencies to patch by September 15th. The flaw arises from improper handling of carriage return characters in configuration files, which attackers can ...

    Read More »