Knox Security Intelligence

Knox CVE Database

Actively exploited vulnerabilities from the CISA KEV catalog, tracked through the FedRAMP remediation lens — severity, exploitation status, and federal deadlines, updated as CISA adds them.

Latest vulnerabilities added to the CISA KEV catalog

No CVEs match your search

Try a different CVE ID, vendor, or product.

CVE ID
Severity
Score
Vendor
Product
Date added
Due date
Ransomware
CVE-2026-35273
Oracle PeopleSoft Enterprise PeopleTools contains a missing authentication for critical function vulnerability which could allow an unauthenticated attacker to obtain takeover of PeopleSoft Enterprise PeopleTools.
Critical
9.8
Oracle
PeopleSoft Enterprise PeopleTools
June 12, 2026
June 15, 2026
Known
CVE-2025-0282
Ivanti Connect Secure, Policy Secure, and ZTA Gateways contain a stack-based buffer overflow which can lead to unauthenticated remote code execution.
Critical
9.0
Ivanti
Connect Secure, Policy Secure, and ZTA Gateways
January 8, 2025
January 15, 2025
Known

Ready to achieve FedRAMP authorization in 90 days or less?

Schedule a meeting to discuss scope, parse readiness, and map your company’s accelerated path to FedRAMP authorization.

Book a Meeting