Aug 8, 2021 Cyber Threat Intelligence

Track daily vulnerability activity, KEV additions, public exploits, critical disclosures, and EPSS risk shifts.

Daily summary

  • 10 new critical disclosures — review patch status on exposed services.

Top threats today

Three highest-priority changes — analyst brief, not a CVE dump.

Critical exposure

CVE-2021-38190 An issue was discovered in the nalgebra crate before 0.27.1 for Rust.

  • CVSS 9.8

New critical Dimforge Nalgebra Out-of-Bounds Write (CVSS 9.8) — fresh disclosure window; early internet scanning often precedes mature exploit chains.

Critical exposure

CVE-2021-38197 Go-unarr Project Go-unarr Directory Traversal

  • CVSS 9.8

New critical Go-unarr Project Go-unarr Directory Traversal (CVSS 9.8) — fresh disclosure window; early internet scanning often precedes mature exploit chains.

Critical exposure

CVE-2020-36443 An issue was discovered in the libp2p-deflate crate before 0.27.1 for Rust.

  • CVSS 9.8

New critical disclosure (CVSS 9.8) — high severity with a short public awareness window before exploit material typically surfaces.

Active exploitation

CISA KEV — confirmed in-the-wild exploitation.

Nothing flagged in this category for this digest.

View KEV additions

Exploit & PoC activity

Nothing flagged in this category for this digest.

View new exploit links

Exploitation dynamics

Nothing flagged in this category for this digest.

See EPSS increases

New critical disclosures

CVE-2020-36443 CVSS 9.8

An issue was discovered in the libp2p-deflate crate before 0.27.1 for Rust.

CVE-2020-36452 CVSS 9.8

An issue was discovered in the array-tools crate before 0.3.2 for Rust.

CVE-2021-38187 CVSS 9.8

An issue was discovered in the anymap crate through 0.12.1 for Rust.

CVE-2021-38188 CVSS 9.8

An issue was discovered in the iced-x86 crate through 1.10.3 for Rust.

CVE-2021-38189 CVSS 9.8

An issue was discovered in the lettre crate before 0.9.6 for Rust.

CVE-2021-38190 CVSS 9.8

An issue was discovered in the nalgebra crate before 0.27.1 for Rust.

CVE-2021-38194 CVSS 9.8

An issue was discovered in the ark-r1cs-std crate before 0.3.1 for Rust.

CVE-2021-38195 CVSS 9.8

An issue was discovered in the libsecp256k1 crate before 0.5.0 for Rust.

CVE-2021-38196 CVSS 9.8

An issue was discovered in the better-macro crate through 2021-07-22 for Rust.

CVE-2021-38197 CVSS 9.8

unarr.go in go-unarr (aka Go bindings for unarr) 0.1.1 allows Directory Traversal via ../ in a pathname within a TAR archive.

View critical disclosures

cvelogic Threat Intelligence