The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Friday added a critical security flaw impacting F5 BIG-IP Access Policy Manager (APM) to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation. The vulnerability in question is CVE-2025-53521 (CVSS v4 score: 9.3), which could allow a threat actor to achieve remote code execution. "When a

source https://thehackernews.com/2026/03/cisa-adds-cve-2025-53521-to-kev-after.html

source https://thehackernews.com/2026/03/cisa-adds-cve-2025-53521-to-kev-after.html