3/16至3/22 Known Exploited Vulnerabilities Catalog(KEV)週報
- 發布單位:TWCERT/CC
- 更新日期:2026-04-01
- 點閱次數:320
- 內容說明
CISA於3/16至3/22在Known Exploited Vulnerabilities Catalog(KEV)中發布9個已遭駭客利用之漏洞。
- 影響平台
Craft CMS|Craft CMS
Laravel|Livewire
Apple|Multiple Products
Cisco|Secure Firewall Management Center (FMC)
Synacor|Zimbra Collaboration Suite (ZCS)
Microsoft|SharePoint
Wing FTP Server|Wing FTP Server
- 處置建議
修補說明請參考以下官方連結:
Craft CMS|Craft CMS
https://craftcms.com/knowledge-base/craft-cms-cve-2025-32432
https://github.com/craftcms/cms/security/advisories/GHSA-f3gw-9ww9-jmc3
Laravel|Livewire
https://github.com/livewire/livewire/security/advisories/GHSA-29cq-5w36-x7w3
https://github.com/livewire/livewire/commit/ef04be759da41b14d2d129e670533180a44987dc
Apple|Multiple Products
https://support.apple.com/en-us/124147
https://support.apple.com/en-us/124149
https://support.apple.com/en-us/124152
https://support.apple.com/en-us/124153
https://support.apple.com/en-us/124155
https://support.apple.com/en-us/125632
https://support.apple.com/en-us/125633
https://support.apple.com/en-us/125634
https://support.apple.com/en-us/125635
https://support.apple.com/en-us/125636
https://support.apple.com/en-us/125637
https://support.apple.com/en-us/125638
https://support.apple.com/en-us/125639
Cisco|Secure Firewall Management Center (FMC)
Synacor|Zimbra Collaboration Suite (ZCS)
https://wiki.zimbra.com/wiki/Zimbra_Security_Advisories
Microsoft|SharePoint
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20963
Wing FTP Server|Wing FTP Server
https://www.wftpserver.com/serverhistory.htm
- CVE編號
CVE-2025-31277
CVE-2025-32432
CVE-2025-43510
CVE-2025-43520
CVE-2025-47813
CVE-2025-54068
CVE-2025-66376
CVE-2026-20131
CVE-2026-20963
相關連結
- https://www.cisa.gov/known-exploited-vulnerabilities-catalog
- https://nvd.nist.gov/vuln/detail/CVE-2025-31277
- https://nvd.nist.gov/vuln/detail/CVE-2025-32432
- https://nvd.nist.gov/vuln/detail/CVE-2025-43510
- https://nvd.nist.gov/vuln/detail/CVE-2025-43520
- https://nvd.nist.gov/vuln/detail/CVE-2025-47813
- https://nvd.nist.gov/vuln/detail/CVE-2025-54068
- https://nvd.nist.gov/vuln/detail/CVE-2025-66376
- https://nvd.nist.gov/vuln/detail/CVE-2026-20131
- https://nvd.nist.gov/vuln/detail/CVE-2026-20963
