CISA Alerts on Active Exploits in Citrix and Git Vulnerabilities

TL;DR
CISA has added three actively exploited vulnerabilities affecting Citrix Session Recording and Git to its KEV catalog, with patches already available for two of the Citrix flaws and a proof-of-concept exploit released for the Git vulnerability. Federal agencies are required to implement mitigations by September 15, 2025.
- CISA Adds Three Exploited Vulnerabilities to KEV Catalog Affecting Citrix and Git The Hacker News
- Organizations Warned of Exploited Git Vulnerability SecurityWeek
- CISA warns of actively exploited Git code execution flaw BleepingComputer
- Citrix patches trio of NetScaler bugs – after attackers beat them to it theregister.com
- Citrix Under Active Attack Again With Another Zero-Day Dark Reading
Want the full story? Read the original reporting
Read on The Hacker News