Nov 22, 2023 Cyber Threat Intelligence
Track daily vulnerability activity, KEV additions, public exploits, critical disclosures, and EPSS risk shifts.
Daily summary
- WordPress plugin RCE/exploit activity: 2 CVEs flagged today.
- 7 new critical disclosures — review patch status on exposed services.
Top threats today
Three highest-priority changes — analyst brief, not a CVE dump.
Critical exposure
CVE-2023-2437
Userproplugin Userpro Auth Bypass
- CVSS 9.8
- Internet-facing CMS deployments affected
New critical Userproplugin Userpro Auth Bypass (CVSS 9.8) — fresh disclosure window; early internet scanning often precedes mature exploit chains.
Critical exposure
CVE-2023-2889
Veom Service Tracking SQL Injection
New critical Veom Service Tracking SQL Injection (CVSS 9.8) — fresh disclosure window; early internet scanning often precedes mature exploit chains.
Critical exposure
CVE-2023-37924
Apache Software Foundation Apache Submarine has an SQL injection vulnerability when a user logs in.
New critical Apache Submarine SQL Injection (CVSS 9.8) — fresh disclosure window; early internet scanning often precedes mature exploit chains.
Active exploitation
CISA KEV — confirmed in-the-wild exploitation.
Nothing flagged in this category for this digest.
View KEV additions
Exploitation dynamics
Nothing flagged in this category for this digest.
See EPSS increases
New critical disclosures
The UserPro plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 5.1.1.
The UserPro plugin for WordPress is vulnerable to unauthorized password resets in versions up to, and including 5.1.1.
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Veon Computer Service Tracking Soft...
Apache Software Foundation Apache Submarine has an SQL injection vulnerability when a user logs in.
In the module "Chronopost Official" (chronopost) for PrestaShop, a guest can perform SQL injection.
In the module "Cross Selling in Modal Cart" (motivationsale) < 3.5.0 from MyPrestaModules for PrestaShop, a guest can perform SQL injection.
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in DRD Fleet Leasing DRDrive allows SQ...
View critical disclosures
cvelogic
Threat Intelligence