CISA Ask Federal Agencies To Patch 66 New Flaws Exploited By Attackers

March 29, 2022

U.S. Cybersecurity and Infrastructure Security Agency (CISA) has uncovered 66 new vulnerabilities that are exploited by attackers.

The agency urged federal agencies to apply available patches before April 15, 2022, to limit the risk of the bugs being exploited.

Based on evidence of active exploitation, the 66 bugs include current and older bugs in networking kit, several Windows bugs, and security appliances from D-Link, Cisco, Netgear, Citrix, Kuiper, Palo Alto, Sophos, Zyxel, and enterprise software from Oracle, OpenBSD, VMware, and others.

Some of the vulnerabilities identified vulnerabilities include a flaw affecting Watch Guard’s Firefox and XTM appliances (CVE-2022-26318), and another flaw impacting Mitel’s MiCollab, MiVoice Business Express Access Control Vulnerability (CVE-2022-26143).

Hackers exploited the Mitel bug to launch the TP240PhoneHome DDoS attack. A Windows Print Spooler Elevation of Privilege vulnerability, traced as CVE-2022-21999, has also been added to the list of bugs to be patched.

For more information read the original story in ZDNet.

Top Stories

Related Articles

December 23, 2025 South Korea will require facial recognition scans to open new mobile phone accounts. The new rule is more...

December 12, 2025 Former BlackBerry CEO Jim Balsillie is warning that Canada must quickly reassess its digital and economic policies more...

December 11, 2025 Travelers crossing coming into the United States could be required to submit their social media history under more...

August 18, 2025 The House of Commons has confirmed it was the target of a cyberattack that exposed personal and more...

Jim Love

Jim is an author and podcast host with over 40 years in technology.

Share:
Facebook
Twitter
LinkedIn