External Publication
Visit Post

CISA Adds CVE-2025-53521 to KEV After Active F5 BIG-IP APM Exploitation

The Hacker News | #1 Trusted Source for Cybersecurity News [Uno… March 28, 2026
Source
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Friday added a critical security flaw impacting F5 BIG-IP Access Policy Manager (APM) to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation. The vulnerability in question is CVE-2025-53521 (CVSS v4 score: 9.3), which could allow a threat actor to achieve remote code execution. "When a

Discussion in the ATmosphere

Loading comments...