CISA Orders Urgent Patching After Chinese Hackers Exploit SharePoint Flaws in Live Attacks
The U.S. Cybersecurity and Infrastructure Security Agency (CISA),
on July 22, 2025, added two Microsoft SharePoint flaws,
CVE-2025-49704 and CVE-2025-49706, to its Known Exploited
Vulnerabilities (KEV) catalog, based on evidence of active
exploitation. To that end, Federal Civilian Executive Branch (FCEB)
agencies are required to remediate identified vulnerabilities by
July 23, 2025. "CISA is
Read more https://thehackernews.com/2025/07/cisa-orders-urgent-patching-after.html