<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Vulnerability management &#8211; Noise</title>
	<atom:link href="https://noise.getoto.net/tag/vulnerability-management/feed/" rel="self" type="application/rss+xml" />
	<link>https://noise.getoto.net</link>
	<description>The collective thoughts of the interwebz</description>
	<lastBuildDate>Tue, 11 Nov 2025 20:58:18 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=6.8.2</generator>
	<item>
		<title>Patch Tuesday &#8211; November 2025</title>
		<link>https://noise.getoto.net/2025/11/11/patch-tuesday-november-2025/</link>
		
		<dc:creator><![CDATA[Adam Barnett]]></dc:creator>
		<pubDate>Tue, 11 Nov 2025 20:58:18 +0000</pubDate>
				<category><![CDATA[Patch Tuesday]]></category>
		<category><![CDATA[Vulnerability management]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=d49464cd41288f82fb0b055a7b79b5bc</guid>

					<description><![CDATA[Microsoft is publishing 66 new vulnerabilities today, which is far fewer than we’ve come to expect in recent months. There’s a lone exploited-in-the-wild zero-day vulnerability, which Microsoft assesses as critical severity, although there’s apparently...]]></description>
		
		
		<enclosure url="https://images.contentstack.io/v3/assets/blte4f029e766e6b253/blt76ee31e15f145bd9/6849a5d2dc186db607081f3e/patch-tuesday-repeated.webp" length="0" type="" />

			</item>
		<item>
		<title>Patch Tuesday &#8211; June 2025</title>
		<link>https://noise.getoto.net/2025/06/10/patch-tuesday-june-2025/</link>
		
		<dc:creator><![CDATA[Adam Barnett]]></dc:creator>
		<pubDate>Tue, 10 Jun 2025 20:08:55 +0000</pubDate>
				<category><![CDATA[Patch Tuesday]]></category>
		<category><![CDATA[Vulnerability management]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=0d05d5bcb47a89717ff3a706f0de9830</guid>

					<description><![CDATA[WebDAV &#38; SMB client zero-days. KDC Proxy Service &#38; Office critical RCEs.]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2025/06/patch-tuesday.jpeg" length="0" type="" />

			</item>
		<item>
		<title>Patch Tuesday &#8211; May 2025</title>
		<link>https://noise.getoto.net/2025/05/13/patch-tuesday-may-2025/</link>
		
		<dc:creator><![CDATA[Adam Barnett]]></dc:creator>
		<pubDate>Tue, 13 May 2025 20:58:33 +0000</pubDate>
				<category><![CDATA[Patch Tuesday]]></category>
		<category><![CDATA[Vulnerability management]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=10f4b9f370a422cc274bc892eed795c7</guid>

					<description><![CDATA[Seven zero-days: Window Scripting Engine, 2x CLFS, DWM, Visual Studio, AFD for Winsock, Defender for Identity.]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2025/05/patch-tuesday.jpeg" length="0" type="" />

			</item>
		<item>
		<title>Multiple vulnerabilities in SonicWall SMA 100 series (FIXED)</title>
		<link>https://noise.getoto.net/2025/05/07/multiple-vulnerabilities-in-sonicwall-sma-100-series-fixed/</link>
		
		<dc:creator><![CDATA[Ryan Emmons]]></dc:creator>
		<pubDate>Wed, 07 May 2025 20:18:06 +0000</pubDate>
				<category><![CDATA[research]]></category>
		<category><![CDATA[Vulnerability Disclosure]]></category>
		<category><![CDATA[Vulnerability management]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=377230f024bbf3b223a0859d375c98a2</guid>

					<description><![CDATA[Rapid7 is disclosing three new vulnerabilities in SonicWall SMA 100 series appliances (CVE-2025-32819, CVE-2025-32820, and CVE-2025-32821). An attacker with access to an SMA SSLVPN user account can chain these vulnerabilities for root-level code execution.]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2025/05/vuln-disclosure-banner.jpeg" length="0" type="" />

			</item>
		<item>
		<title>Exploring an Untethered, Unified Approach to CTEM</title>
		<link>https://noise.getoto.net/2025/05/07/exploring-an-untethered-unified-approach-to-ctem/</link>
		
		<dc:creator><![CDATA[Joel Alcon]]></dc:creator>
		<pubDate>Wed, 07 May 2025 13:00:00 +0000</pubDate>
				<category><![CDATA[Exposure Command]]></category>
		<category><![CDATA[Exposure Management]]></category>
		<category><![CDATA[Vulnerability management]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=804507d6f01f90c9075cd45071a54751</guid>

					<description><![CDATA[Unlike traditional standalone VM, CASM, EASM, SIEM, or EDR tools that rely on proprietary agents, Exposure Command from Rapid7 brings it all together into one platform.]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2025/04/GettyImages-1566680995.jpg" length="0" type="" />

			</item>
		<item>
		<title>Three Takeaways from the Gartner® Report: How to Grow Vulnerability Management Into Exposure Management</title>
		<link>https://noise.getoto.net/2025/04/30/three-takeaways-from-the-gartner-report-how-to-grow-vulnerability-management-into-exposure-management/</link>
		
		<dc:creator><![CDATA[Rapid7]]></dc:creator>
		<pubDate>Wed, 30 Apr 2025 13:00:00 +0000</pubDate>
				<category><![CDATA[Gartner]]></category>
		<category><![CDATA[Vulnerability management]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=6f0bc4636d34cafa615926cd83d7db45</guid>

					<description><![CDATA[Latest research from Gartner, How to Grow Vulnerability Management Into Exposure Management, highlights the need for security teams to move beyond simply tracking vulnerabilities and embrace a more comprehensive approach to exposure management.]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2025/04/GettyImages-2194784990.jpg" length="0" type="" />

			</item>
		<item>
		<title>Active exploitation of SAP NetWeaver Visual Composer CVE-2025-31324</title>
		<link>https://noise.getoto.net/2025/04/28/active-exploitation-of-sap-netweaver-visual-composer-cve-2025-31324/</link>
		
		<dc:creator><![CDATA[Caitlin Condon]]></dc:creator>
		<pubDate>Mon, 28 Apr 2025 11:57:12 +0000</pubDate>
				<category><![CDATA[Detection and Response]]></category>
		<category><![CDATA[Emergent Threat Response]]></category>
		<category><![CDATA[Vulnerability management]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=585e735948850f5c4503d5a7910daa78</guid>

					<description><![CDATA[A critical SAP NetWeaver zero-day vulnerability (CVE-2025-31324) that allows for full SAP server compromise is being actively exploited in the wild.]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2025/04/emergent-threat-banner-1.jpeg" length="0" type="" />

			</item>
		<item>
		<title>Following the News: MITRE’s Common Vulnerabilities and Exposures (CVE) Funding</title>
		<link>https://noise.getoto.net/2025/04/16/following-the-news-mitres-common-vulnerabilities-and-exposures-cve-funding/</link>
		
		<dc:creator><![CDATA[Rapid7]]></dc:creator>
		<pubDate>Wed, 16 Apr 2025 14:56:15 +0000</pubDate>
				<category><![CDATA[Vulnerability management]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=32417909e3877bb5d532e026ad72265e</guid>

					<description><![CDATA[Rapid7 continues to monitor both public and private discussions closely in its capacity as a CVE Numbering Authority (CNA) and as a longtime leader and participant in the CVE ecosystem.]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2025/04/GettyImages-2154249245--1-.jpg" length="0" type="" />

			</item>
		<item>
		<title>Patch Tuesday &#8211; April 2025</title>
		<link>https://noise.getoto.net/2025/04/08/patch-tuesday-april-2025/</link>
		
		<dc:creator><![CDATA[Adam Barnett]]></dc:creator>
		<pubDate>Tue, 08 Apr 2025 20:30:03 +0000</pubDate>
				<category><![CDATA[Patch Tuesday]]></category>
		<category><![CDATA[Vulnerability management]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=407d96185f5460b02189274f71324e38</guid>

					<description><![CDATA[CLFS zero-day. LDAP critical RCEs. RDS critical RCEs. Hyper-V critical RCE.]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2025/04/patch-tuesday.jpeg" length="0" type="" />

			</item>
		<item>
		<title>Ivanti Connect Secure CVE-2025-22457 exploited in the wild</title>
		<link>https://noise.getoto.net/2025/04/03/ivanti-connect-secure-cve-2025-22457-exploited-in-the-wild/</link>
		
		<dc:creator><![CDATA[Ryan Emmons]]></dc:creator>
		<pubDate>Thu, 03 Apr 2025 18:50:02 +0000</pubDate>
				<category><![CDATA[Emergent Threat Response]]></category>
		<category><![CDATA[Vulnerability management]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=ef69275a89bd044479527f9cd655f500</guid>

					<description><![CDATA[On April 3, 2025, Ivanti disclosed CVE-2025-22457, a critical a stack-based buffer overflow vulnerability that allows for remote code execution on affected devices.]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2025/04/emergent-threat-banner.jpeg" length="0" type="" />

			</item>
		<item>
		<title>Notable vulnerabilities in Next.js (CVE-2025-29927) and CrushFTP</title>
		<link>https://noise.getoto.net/2025/03/25/notable-vulnerabilities-in-next-js-cve-2025-29927-and-crushftp/</link>
		
		<dc:creator><![CDATA[Calum Hutton]]></dc:creator>
		<pubDate>Tue, 25 Mar 2025 15:12:56 +0000</pubDate>
				<category><![CDATA[Emergent Threat Response]]></category>
		<category><![CDATA[Vulnerability management]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=9924806a17d576a205aa3c898c619052</guid>

					<description><![CDATA[Rapid7 is warning customers of two notable vulnerabilities affecting Next.js (CVE-2025-29927) and file transfer software CrushFTP (no CVE).]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2025/03/emergent-threat-banner-2.jpeg" length="0" type="" />

			</item>
		<item>
		<title>Critical Veeam Backup &#038; Replication CVE-2025-23120</title>
		<link>https://noise.getoto.net/2025/03/19/critical-veeam-backup-replication-cve-2025-23120/</link>
		
		<dc:creator><![CDATA[Rapid7]]></dc:creator>
		<pubDate>Wed, 19 Mar 2025 19:51:26 +0000</pubDate>
				<category><![CDATA[Emergent Threat Response]]></category>
		<category><![CDATA[Vulnerability management]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=b083fb176c10f7073952ef5438d79569</guid>

					<description><![CDATA[<p>On Wednesday, March 19, 2025, backup and recovery software provider Veeam published a <a href="https://www.veeam.com/kb4724">security advisory</a> for a critical remote code execution vulnerability tracked as <a href="https://attackerkb.com/topics/dHwvvN9gfv/cve-2025-23120">CVE-2025-23120</a>. The vulnerability affects Backup &#38; Replication systems that are domain joined. Veeam explicitly mentions that domain-joined backup servers are against security and compliance best practices,</p>]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2025/03/emergent-threat-banner-1.jpeg" length="0" type="" />

			</item>
		<item>
		<title>Apache Tomcat CVE-2025-24813: What You Need to Know</title>
		<link>https://noise.getoto.net/2025/03/19/apache-tomcat-cve-2025-24813-what-you-need-to-know/</link>
		
		<dc:creator><![CDATA[Caitlin Condon]]></dc:creator>
		<pubDate>Wed, 19 Mar 2025 17:40:52 +0000</pubDate>
				<category><![CDATA[Emergent Threat Response]]></category>
		<category><![CDATA[Vulnerability management]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=0b6bdde08532a2c03d0cd0f384936118</guid>

					<description><![CDATA[<p>Here at Rapid7, our usual bar for calling a vulnerability an emergent threat is either known exploitation at scale, or likelihood of exploitation at scale. Apache Tomcat <a href="https://attackerkb.com/topics/4GajxQH17l/cve-2025-24813">CVE-2025-24813</a> fulfills neither of these criteria, despite a variety of news headlines alleging broad exploitation in the wild. Tomcat is widely deployed and</p>]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2025/03/etr-banner-2.jpeg" length="0" type="" />

			</item>
		<item>
		<title>Patch Tuesday &#8211; March 2025</title>
		<link>https://noise.getoto.net/2025/03/11/patch-tuesday-march-2025/</link>
		
		<dc:creator><![CDATA[Adam Barnett]]></dc:creator>
		<pubDate>Tue, 11 Mar 2025 20:16:15 +0000</pubDate>
				<category><![CDATA[Patch Tuesday]]></category>
		<category><![CDATA[Vulnerability management]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=6f335060bf9c8bbba9299b77ad914b29</guid>

					<description><![CDATA[Seven zero-days. Win32 EoP. Multiple filesystem driver attacks. MMC security feature bypass. Access (again). WSL magic email RCE. Malicious RDP server.]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2025/03/patch-tuesday.jpeg" length="0" type="" />

			</item>
		<item>
		<title>Multiple zero-day vulnerabilities in Broadcom VMware ESXi and other products</title>
		<link>https://noise.getoto.net/2025/03/04/multiple-zero-day-vulnerabilities-in-broadcom-vmware-esxi-and-other-products/</link>
		
		<dc:creator><![CDATA[Stephen Fewer]]></dc:creator>
		<pubDate>Tue, 04 Mar 2025 17:00:13 +0000</pubDate>
				<category><![CDATA[Emergent Threat Response]]></category>
		<category><![CDATA[Vulnerability management]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=172ef530764aad919e0f10cdce8bfbb9</guid>

					<description><![CDATA[On Tuesday, March 4, 2025, Broadcom published a critical security advisory (VMSA-2025-0004) on 3 new zero-day vulnerabilities affecting multiple VMware products, including ESXi, Workstation, and Fusion.]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2025/03/emergent-threat-banner.jpeg" length="0" type="" />

			</item>
		<item>
		<title>Patch Tuesday &#8211; February 2025</title>
		<link>https://noise.getoto.net/2025/02/11/patch-tuesday-february-2025/</link>
		
		<dc:creator><![CDATA[Adam Barnett]]></dc:creator>
		<pubDate>Tue, 11 Feb 2025 21:30:07 +0000</pubDate>
				<category><![CDATA[Patch Tuesday]]></category>
		<category><![CDATA[Vulnerability management]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=abe886caaf89ee91ecda13649a1befb3</guid>

					<description><![CDATA[Four zero-days: AFD EoP, Storage EoP, NTLMv2 disclosure, Surface container escape. Critical RCEs in LDAP, DHCP client, Excel.]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2025/02/patch-tuesday.jpeg" length="0" type="" />

			</item>
		<item>
		<title>Fortinet firewalls hit with new zero-day attack, older data leak</title>
		<link>https://noise.getoto.net/2025/01/16/fortinet-firewalls-hit-with-new-zero-day-attack-older-data-leak/</link>
		
		<dc:creator><![CDATA[Caitlin Condon]]></dc:creator>
		<pubDate>Thu, 16 Jan 2025 15:57:23 +0000</pubDate>
				<category><![CDATA[Detection and Response]]></category>
		<category><![CDATA[Emergent Threat Response]]></category>
		<category><![CDATA[Vulnerability management]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=ab31e768b64e3083f4d837e3621f409a</guid>

					<description><![CDATA[Rapid7 is responding to two separate events affecting Fortinet firewall customers: Zero-day exploitation of CVE-2024-55591 in FortiOS, and a large-scale data leak of older FortiGate firewall IPs, passwords, and configs.]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2025/01/emergent-threat-banner.jpeg" length="0" type="" />

			</item>
		<item>
		<title>Patch Tuesday &#8211; January 2025</title>
		<link>https://noise.getoto.net/2025/01/15/patch-tuesday-january-2025/</link>
		
		<dc:creator><![CDATA[Adam Barnett]]></dc:creator>
		<pubDate>Tue, 14 Jan 2025 22:12:23 +0000</pubDate>
				<category><![CDATA[Patch Tuesday]]></category>
		<category><![CDATA[Vulnerability management]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=20289f2ab25c6235f075b40340efeb24</guid>

					<description><![CDATA[Eight 0-days. Access: triple zero-day RCE; Hyper-V NT Kernel Integration VSP: triple zero-day EoP; Windows Themes: zero-day NTLM disclosure; Windows Installer: zero-day EoP; PGM: critical RCE; OLE: critical RCE.]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2025/01/patch-tuesday.jpeg" length="0" type="" />

			</item>
		<item>
		<title>CVE-2025-0282: Ivanti Connect Secure zero-day exploited in the wild</title>
		<link>https://noise.getoto.net/2025/01/08/cve-2025-0282-ivanti-connect-secure-zero-day-exploited-in-the-wild/</link>
		
		<dc:creator><![CDATA[Caitlin Condon]]></dc:creator>
		<pubDate>Wed, 08 Jan 2025 18:13:13 +0000</pubDate>
				<category><![CDATA[Emergent Threat Response]]></category>
		<category><![CDATA[Vulnerability management]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=01050d3f41f01c12c034a865ebd66d66</guid>

					<description><![CDATA[Two stack-based buffer overflow issues were disclosed in Ivanti Connect Secure, Policy Secure, and Neurons for ZTA. CVE-2025-0282, the more severe of the two issues, has been exploited in the wild against Ivanti Connect Secure devices.]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2025/01/emergent-threat-banner-1.jpeg" length="0" type="" />

			</item>
		<item>
		<title>Patch Tuesday &#8211; December 2024</title>
		<link>https://noise.getoto.net/2024/12/11/patch-tuesday-december-2024/</link>
		
		<dc:creator><![CDATA[Adam Barnett]]></dc:creator>
		<pubDate>Tue, 10 Dec 2024 22:15:31 +0000</pubDate>
				<category><![CDATA[Patch Tuesday]]></category>
		<category><![CDATA[Vulnerability management]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=12b7131b2e736a0fd97af7ebb187088c</guid>

					<description><![CDATA[1 zero-day. CLFS EoP. 16 critical RCEs. Hyper-V container escape. Multiple Remote Desktop Services RCE.]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2024/12/patch-tuesday.jpeg" length="0" type="" />

			</item>
	</channel>
</rss>

<!--
Performance optimized by W3 Total Cache. Learn more: https://www.boldgrid.com/w3-total-cache/

Object Caching 126/190 objects using Memcached
Page Caching using Disk: Enhanced 
Lazy Loading (feed)
Database Caching using Memcached

Served from: noise.getoto.net @ 2025-12-09 01:12:47 by W3 Total Cache
-->