CISA added CVE-2025-41244 to KEV, mandating patching by November 20 The bug enables local privilege escalation via VMware Tools with SDMP enabled Chinese group UNC5174 exploited it for espionage ...
WASHINGTON – The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued an emergency directive compelling federal agencies to address major security flaws in software management ...