Cybersecurity and Infrastructure Security AgencyBio confirms exploitation of Oracle E-Business Suite CVE-2025-61884
Bottom line: the flaw was added to the Known Exploited Vulnerabilities catalog after confirmed in-the-wild abuse following the earlier zero-day campaign. Treat catalog additions as a patch deadline, not a notification.
Automated analysis from cited open sources.