CISA Warns of Android 0-Day Vulnerability Exploited in Attacks
ID: 854bb5ed-d669-5db7-9421-bd46e52d639e
STIX ID: report--854bb5ed-d669-5db7-9421-bd46e52d639e
Feed Name: cybersecurityNews.com
Threat Score
**CISA has added two critical Android Framework vulnerabilities (CVE-2025-48572: privilege escalation; CVE-2025-48633: information disclosure) to its Known Exploited Vulnerabilities catalog, citing active exploitation and requiring federal agencies to apply patches by December 23, 2025 — organizations and users are urged to apply vendor patches, enable automatic updates, monitor for IOCs, and implement compensating controls if patching is not immediately possible.**
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
