Dec 6, 2022 Cyber Threat Intelligence

Track daily vulnerability activity, KEV additions, public exploits, critical disclosures, and EPSS risk shifts.

Daily summary

  • 10 new critical disclosures — review patch status on exposed services.

Top threats today

Three highest-priority changes — analyst brief, not a CVE dump.

Critical exposure

CVE-2022-46161 pdfmake is an open source client/server side PDF printing in pure JavaScript.

  • CVSS 10
  • Remote code execution exposure

New critical Pdfmake RCE (CVSS 10) — fresh disclosure window; early internet scanning often precedes mature exploit chains.

Critical exposure

CVE-2020-6627 Seagate Stcg2000300 Firmware Command Injection

  • CVSS 9.8

New critical Seagate Stcg2000300 Firmware Command Injection (CVSS 9.8) — fresh disclosure window; early internet scanning often precedes mature exploit chains.

Critical exposure

CVE-2022-40918 Force1rc Discovery Wifi U818a Hd\+ Fpv Firmware RCE

  • CVSS 9.8
  • Remote code execution exposure

New critical Force1rc Discovery Wifi U818a Hd\+ Fpv Firmware RCE (CVSS 9.8) — fresh disclosure window; early internet scanning often precedes mature exploit chains.

Active exploitation

CISA KEV — confirmed in-the-wild exploitation.

Nothing flagged in this category for this digest.

View KEV additions

Exploit & PoC activity

Nothing flagged in this category for this digest.

View new exploit links

Exploitation dynamics

Nothing flagged in this category for this digest.

See EPSS increases

New critical disclosures

CVE-2020-6627 CVSS 9.8

The web-management application on Seagate Central NAS STCG2000300, STCG3000300, and STCG4000300 devices allows OS command injection via m...

CVE-2022-40918 CVSS 9.8

Buffer overflow in firmware lewei_cam binary version 2.0.10 in Force 1 Discovery Wifi U818A HD+ FPV Drone allows attacker to gain remote...

CVE-2022-41559 CVSS 9.3

The Web Client component of TIBCO Software Inc.'s TIBCO Nimbus contains an easily exploitable vulnerability that allows an unauthenticate...

CVE-2022-44900 CVSS 9.1

A directory traversal vulnerability in the SevenZipFile.extractall() function of the python library py7zr v0.20.0 and earlier allows atta...

CVE-2022-46161 CVSS 10

pdfmake is an open source client/server side PDF printing in pure JavaScript.

CVE-2022-46332 CVSS 9.6

The Admin Smart Search feature in Proofpoint Enterprise Protection (PPS/PoD) contains a stored cross-site scripting vulnerability that en...

CVE-2022-46383 CVSS 9.8

RackN Digital Rebar through 4.6.14, 4.7 through 4.7.22, 4.8 through 4.8.5, 4.9 through 4.9.12, and 4.10 through 4.10.8 has exposed a priv...

View critical disclosures

cvelogic Threat Intelligence