The U.S. Cybersecurity and Infrastructure Security Agency (CISA) added SonicWall SonicOS and Palo Alto PAN-OS vulnerabilities to its Known Exploited Vulnerabilities catalog.
CVE-2025-0108 Palo Alto PAN-OS Authentication Bypass Vulnerability and CVE-2024-53704 SonicWall SonicOS SSLVPN Improper Authentication Vulnerability were added to the catalog.
Threat actors have been observed exploiting the CVE-2025-0108 vulnerability in Palo Alto PAN-OS firewalls.
CISA orders federal agencies to fix the vulnerabilities by March 11, 2025.