May 31, 2022 Cyber Threat Intelligence
Track daily vulnerability activity, KEV additions, public exploits, critical disclosures, and EPSS risk shifts.
Daily summary
- 2 material risk changes today across KEV, exploits, critical disclosures, and EPSS movers.
Top threats today
Three highest-priority changes — analyst brief, not a CVE dump.
High-risk exposure
CVE-2022-31003
Sofia-SIP is an open-source Session Initiation Protocol (SIP) User-Agent library.
- CVSS 9.1
- Remote code execution exposure
New high-severity Debian Linux RCE — watch for exploit drops and scanner noise in the first 72 hours after disclosure.
High-risk exposure
CVE-2022-31013
Chat Server is the chat server for Vartalap, an open-source messaging application.
- CVSS 9.1
- Authentication bypass — unauthenticated access risk
New high-severity Chat Server Project Chat Server Auth Bypass — watch for exploit drops and scanner noise in the first 72 hours after disclosure.
Active exploitation
CISA KEV — confirmed in-the-wild exploitation.
Nothing flagged in this category for this digest.
View KEV additions
Exploitation dynamics
Nothing flagged in this category for this digest.
See EPSS increases
New critical disclosures
Sofia-SIP is an open-source Session Initiation Protocol (SIP) User-Agent library.
Chat Server is the chat server for Vartalap, an open-source messaging application.
View critical disclosures
cvelogic
Threat Intelligence