Rapid responses
runZero’s Rapid Response program provides immediate detection and notification of emerging threats. Each Rapid Response includes a query to find matching assets, a trigger to analyze all inventories for exposure, and a corresponding blog post with the details of the issue. This program focuses on helping customers mitigate exposures before compromise.
Vulnerabilities covered by the Rapid Response program are replaced by more specific coverage as mitigations become available.
Latest Rapid Responses
| Date | Name | Type | Severity | Query | US SaaS Link | EU SaaS Link |
|---|---|---|---|---|---|---|
| 11/10/2025 | Rapid Response: Monsta FTP RCE (CVE-2025-34299) | services | Info | _asset.protocol:http AND protocol:http AND favicon.ico.image.mmh3:="1535999103" | Link | Link |
| 11/06/2025 | Rapid Response: CWP (Control Web Panel) OS Command Injection (CVE-2025-48703) | software | Info | vendor:="CentOS WebPanel" product:="CentOS Web Panel" | Link | Link |
| 11/03/2025 | Rapid Response: Veeam Backup & Replication RCE Multiple Vulnerabilities (2025-10) | software | Critical | vendor:=Veeam AND product:="Veeam Backup & Replication" AND (version:>0 AND version:>=12 AND version:<12.3.2.4165) | Link | Link |
| 10/31/2025 | Rapid Response: DNN Multiple Vulnerabilities (2025-10) | services | Info | _asset.protocol:http AND protocol:http AND http.head.setCookie:="%dnn_%Mobile%" | Link | Link |
| 10/24/2025 | Rapid Response: PowerDNS Recursor Multiple Vulnerabilities (2025-10) | software | High | vendor:=PowerDNS AND product:=Recursor AND (version:>0 AND ( (version:>=5.1 AND version:<5.1.8) OR (version:>=5.2 AND version:<5.2.6) OR (version:>=5.3 AND version:<5.3.1))) | Link | Link |
| 10/24/2025 | Rapid Response: Microsoft Windows Server Update Services (WSUS) RCE (CVE-2025-59287) | assets | Info | product:"Microsoft Windows Server Update Services" | Link | Link |
| 10/23/2025 | Rapid Response: ISC BIND Multiple Vulnerabilities (2025-10) | software | High | vendor:=ISC AND product:=BIND AND (version:>0 AND ( (version:>=9 AND version:<9.11.0) OR (version:>=9.11.0 AND version:<=9.16.50) OR (version:>=9.18.0 AND version:<=9.18.39) OR (version:>=9.20.0 AND version:<=9.20.13) OR (version:>=9.21.0 AND version:<=9.21.12) OR (version:>="9.11.3-S1" AND version:<="9.16.50-S1") OR (version:>="9.18.11-S1" AND version:<="9.18.39-S1") OR (version:>="9.20.9-S1" AND version:<="9.20.13-S1"))) | Link | Link |
| 10/21/2025 | Rapid Response: Squid Information Disclosure (CVE-2025-62168) | software | Critical | vendor:="Squid Cache" AND product:=Squid AND (version:>0 AND version:<7.2) | Link | Link |
| 10/15/2025 | Rapid Response: F5 CISA Emergency Directive (ED 26-01) | assets | Info | os:="F5%" | Link | Link |
| 10/15/2025 | Rapid Response: Fortinet FortiSwitch Manager (CVE-2025-49201) | software | Info | vendor:=Fortinet product:="FortiSwitchManager" | Link | Link |
| 10/15/2025 | Rapid Response: Fortinet FortiPAM (CVE-2025-49201) | assets | Info | os:="Fortinet FortiPAM%" | Link | Link |
| 10/10/2025 | Rapid Response: Ivanti Endpoint Manager Multiple Vulnerabilities (2025-10) | software | Info | vendor:=Ivanti product:="Endpoint Manager" | Link | Link |
| 10/08/2025 | Rapid Response: Oracle E-Business Suite RCE (CVE-2025-61882) | software | Info | vendor:=Oracle product:="E-Business Suite" | Link | Link |
| 10/06/2025 | Rapid Response: Redis Multiple Vulnerabilities (2025-10) | software | Critical | vendor:=Redis AND product:=Redis AND (version:>0 AND ( (version:>=6.2 AND version:<6.2.20) OR (version:>=7.2 AND version:<7.2.11) OR (version:>=7.4 AND version:<7.4.6) OR (version:>=8.0 AND version:<8.0.4) OR (version:>=8.2 AND version:<8.2.2))) | Link | Link |
| 10/06/2025 | Rapid Response: Valkey Multiple Vulnerabilities (2025-10) | software | Critical | (vendor:=valkey OR vendor:="Fedora Project") AND product:=valkey AND (version:>0 AND ( (version:>=7.2 AND version:<7.2.11) OR (version:>=8.0 AND version:<8.0.6) OR (version:>=8.1 AND version:<8.1.4))) | Link | Link |
| 10/04/2025 | Rapid Response: Smartbedded Meteobridge Command Injection (CVE-2025-4008) | services | Info | _asset.protocol:http AND protocol:http AND http.head.wwwAuthenticate:="Basic realm=%MeteoBridge%" | Link | Link |
Updated