
- WatchGuard patches critical RCE flaw (CVE‑2025‑14733) in Firebox firewalls, being actively exploited in the wild
- CISA added it to KEV; federal agencies must patch or stop use by December 26
- Workarounds include disabling dynamic peer BOVPNs and tightening firewall policies until fixes are applied
WatchGuard has patched a critical-severity zero-day vulnerability in its Firebox firewalls, and urged all users to apply the fix immediately.