Dec 24, 2023 Cyber Threat Intelligence

Track daily vulnerability activity, KEV additions, public exploits, critical disclosures, and EPSS risk shifts.

Daily summary

  • 3 new critical disclosures — review patch status on exposed services.

Top threats today

Three highest-priority changes — analyst brief, not a CVE dump.

Critical exposure

CVE-2023-7095 Totolink A7100ru Firmware Buffer Overflow

  • CVSS 9.8

New critical Totolink A7100ru Firmware Buffer Overflow (CVSS 9.8) — fresh disclosure window; early internet scanning often precedes mature exploit chains.

Critical exposure

CVE-2023-51714 Debian Linux

  • CVSS 9.8

New critical disclosure (CVSS 9.8) — high severity with a short public awareness window before exploit material typically surfaces.

Critical exposure

CVE-2023-7102 Use of a Third Party library produced a vulnerability in Barracuda Networks Inc.

  • CVSS 9.8

New critical disclosure (CVSS 9.8) — high severity with a short public awareness window before exploit material typically surfaces.

Active exploitation

CISA KEV — confirmed in-the-wild exploitation.

Nothing flagged in this category for this digest.

View KEV additions

Exploit & PoC activity

Nothing flagged in this category for this digest.

View new exploit links

Exploitation dynamics

Nothing flagged in this category for this digest.

See EPSS increases

New critical disclosures

CVE-2023-51714 CVSS 9.8

An issue was discovered in the HTTP2 implementation in Qt before 5.15.17, 6.x before 6.2.11, 6.3.x through 6.5.x before 6.5.4, and 6.6.x...

CVE-2023-7095 CVSS 9.8

A vulnerability, which was classified as critical, has been found in Totolink A7100RU 7.4cu.2313_B20191024.

CVE-2023-7102 CVSS 9.8

Use of a Third Party library produced a vulnerability in Barracuda Networks Inc.

View critical disclosures

cvelogic Threat Intelligence