CISA adds Samsung mobile device vulnerability to Known Exploited Vulnerabilities catalog
CISA added CVE-2025-21042, an out-of-bounds write flaw in Samsung mobile devices, to its Known Exploited Vulnerabilities catalog due to active exploitation.
Decision Insights Threat Desk • November 24, 2025
CISA added CVE-2025-21042, an out-of-bounds write flaw in Samsung mobile devices, to its Known Exploited Vulnerabilities catalog due to active exploitation.
Decision Insights Threat Desk • November 24, 2025
Cyber threat actors use commercial spyware to target messaging app users in the US, Middle East, and Europe employing phishing and zero-click exploits.
Decision Insights Threat Desk • November 24, 2025
Cyber threat actors use spyware with phishing and zero-click exploits to access messaging app users, targeting officials and civil society globally.
Decision Insights Threat Desk • November 24, 2025
Retell AI's API enables voice agents with excessive permissions, enabling large-scale phishing and social engineering exploits.
Decision Insights Threat Desk • November 24, 2025
Fluent Bit vulnerabilities allow authentication bypass, code execution, and DoS, patched in version 4.1.0 and later.
Decision Insights Threat Desk • November 21, 2025
A vulnerability in the expr-eval JavaScript library allows arbitrary code execution via crafted inputs.