June 25, 2026
- CISA flagged active exploitation of max-severity flaws in Ubiquiti UniFi OS and Lantronix EDS5000 serial-to-ethernet servers. The Lantronix bug, CVE-2025-67038 (CVSS 9.8), is a code-injection flaw FCEB agencies were ordered to patch by June 26. BleepingComputer (Ubiquiti), The Hacker News (Lantronix) · Vulnerabilities & Exploits