CISA confirms ransomware gangs exploit an unauthenticated RCE in WatchGuard Firebox firewalls
On 10 September 2026, CISA updated the KEV entry for CVE-2025-14733 to confirm ransomware gangs are exploiting this unauthenticated RCE in the Firebox IKEv2 handler, 265 days after its first listing. Update Fireware OS and, if compromised, rotate every secret stored locally.