Jan 14, 2023 Cyber Threat Intelligence
Track daily vulnerability activity, KEV additions, public exploits, critical disclosures, and EPSS risk shifts.
Daily summary
- 4 new critical disclosures — review patch status on exposed services.
Top threats today
Three highest-priority changes — analyst brief, not a CVE dump.
Critical exposure
CVE-2022-1812
Integer Overflow or Wraparound in GitHub repository publify/publify prior to 9.2.10.
New critical disclosure (CVSS 9.8) — high severity with a short public awareness window before exploit material typically surfaces.
Critical exposure
CVE-2023-0297
Code Injection in GitHub repository pyload/pyload prior to 0.5.0b3.dev31.
New critical disclosure (CVSS 9.8) — high severity with a short public awareness window before exploit material typically surfaces.
Critical exposure
New critical disclosure (CVSS 9.8) — high severity with a short public awareness window before exploit material typically surfaces.
Active exploitation
CISA KEV — confirmed in-the-wild exploitation.
Nothing flagged in this category for this digest.
View KEV additions
Exploitation dynamics
Nothing flagged in this category for this digest.
See EPSS increases
New critical disclosures
Integer Overflow or Wraparound in GitHub repository publify/publify prior to 9.2.10.
Code Injection in GitHub repository pyload/pyload prior to 0.5.0b3.dev31.
Improper Input Validation in GitHub repository publify/publify prior to 9.2.10.
Izanami is a shared configuration service well-suited for micro-service architecture implementation.
View critical disclosures
cvelogic
Threat Intelligence