Dec 122025 CISA Flags Actively Exploited GeoServer XXE Flaw in Updated KEV Catalog CISA reports active exploitation of GeoServer XXE flaw CVE-2025–58360 and directs immediate updates to secure affected systems.