The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a medium-severity security flaw, CVE-2025-24054 (CVSS score: 6.5), to its Known Exploited Vulnerabilities (KEV) catalog due to reports of its active exploitation. This vulnerability pertains to Windows New Technology LAN Manager (NTLM) hash disclosure. CISA’s action underscores the importance of addressing potential security risks in Microsoft Windows systems.