logo

CISA Warns of Android 0-Day Vulnerability Exploited in Attacks

ID: 854bb5ed-d669-5db7-9421-bd46e52d639e

STIX ID: report--854bb5ed-d669-5db7-9421-bd46e52d639e

Feed Name: cybersecurityNews.com

Threat Score
75/100

Date Published: 2025-12-03

Date Updated: 2026-04-21

Author: Abinaya

...
...

**CISA has added two critical Android Framework vulnerabilities (CVE-2025-48572: privilege escalation; CVE-2025-48633: information disclosure) to its Known Exploited Vulnerabilities catalog, citing active exploitation and requiring federal agencies to apply patches by December 23, 2025 — organizations and users are urged to apply vendor patches, enable automatic updates, monitor for IOCs, and implement compensating controls if patching is not immediately possible.**

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.