CISA orders federal agencies to patch Sitecore zero-day following hacking reports

Jonathan Greig reports: Federal civilian agencies have until September 25 to patch a vulnerability in popular content management system Sitecore after incident responders said they disrupted a recent attack involving the bug. Sitecore published a bulletin on Wednesday about CVE-2025-53690, which affects several of the company’s products. A key issue with the bug is the use of…[Source](https://databreaches.net/2025/09/07/cisa-orders-federal-agencies-to-patch-sitecore-zero-day-following-hacking-reports/?pk_campaign=feed&pk_kwd=cisa-orders-federal-agencies-to-patch-sitecore-zero-day-following-hacking-reports)![](https://analytics.hitsaru.com/piwik.php?idsite=11&rec=1&url=https%3A%2F%2Fdatabreaches.net%2F2025%2F09%2F07%2Fcisa-orders-federal-agencies-to-patch-sitecore-zero-day-following-hacking-reports%2F%3Fpk_campaign%3Dfeed%26pk_kwd%3Dcisa-orders-federal-agencies-to-patch-sitecore-zero-day-following-hacking-reports&action_name=CISA+orders+federal+agencies+to+patch+Sitecore+zero-day+following+hacking+reports&urlref=https%3A%2F%2Fdatabreaches.net%2Ffeed%2F)

Related Tags:
NAICS: 921 – Executive

Legislative

Other General Government Support

NAICS: 54 – Professional

Scientific

Technical Services

NAICS: 541 – Professional

Scientific

Technical Services

NAICS: 518 – Computing Infrastructure Providers

Data Processing

Web Hosting

Related Services

NAICS: 92 – Public Administration

NAICS: 51 – Information

Blog: DataBreaches

Exploitation for Client Execution

Associated Indicators: