Sep 62025 CISA Orders Immediate Patch of Critical Sitecore Vulnerability Under Active Exploitation CVE-2025–53690, a critical Sitecore flaw (CVSS 9.0), exploited since Dec 2024, enables RCE and data theft.