CISA Adds One Known Exploited Vulnerability to Catalog
CISA has added CVE-2025-68613, an improper control of dynamically-managed code resources vulnerability in n8n, to its Known Exploited Vulnerabilities (KEV) Catalog due to evidence of active exploitation. This vulnerability type is a frequent attack vector used by malicious cyber actors and poses significant risks to federal enterprises. CISA urges all organizations to prioritize remediation of this and other KEV Catalog vulnerabilities as part of their vulnerability management practices.
Summary
CISA has added CVE-2025-68613, an improper control of dynamically-managed code resources vulnerability in n8n, to its Known Exploited Vulnerabilities (KEV) Catalog due to evidence of active exploitation. This vulnerability type is a frequent attack vector used by malicious cyber actors and poses significant risks to federal enterprises. CISA urges all organizations to prioritize remediation of this and other KEV Catalog vulnerabilities as part of their vulnerability management practices.
Indicators of Compromise
- cve — CVE-2025-68613