News

CISA has warned that attackers are actively exploiting two security vulnerabilities in the SysAid IT service management (ITSM ...
CISA has added two recent SysAid flaws, CVE-2025-2776 and CVE-2025-2775, to its Known Exploited Vulnerabilities (KEV) catalog ...
The cybersecurity firm noted that the vulnerabilities could allow attackers to inject unsafe XML entities into the web ...
SysAid urged its customers to look for any signs of exploitation and to update their SysAid software to version 23.3.36, which the company released on November 8 to remediate the vulnerability.
CISA’s payout of $335,000 in 2023 “is not a lot,” Veracode’s Wysopal says. “That’s not a lot because they dealt with 2,000 vulnerabilities. So, we’re looking at what, $150 on average.” ...