SonicWall SMA1000 Appliances Deserialization is on CISA KEV — confirmed in-the-wild exploitation. Expect continued targeting while the issue remains on the catalog.
Critical exposure
CVE-2025-22609Coolify is an open-source and self-hostable tool for managing servers, applications, and databases.
CVSS 10
Potential privilege escalation to admin/root
New critical Coollabs Coolify privilege escalation (CVSS 10) — fresh disclosure window; early internet scanning often precedes mature exploit chains.
Critical exposure
CVE-2025-22612Coolify is an open-source and self-hostable tool for managing servers, applications, and databases.
CVSS 10
Potential privilege escalation to admin/root
New critical Coollabs Coolify privilege escalation (CVSS 10) — fresh disclosure window; early internet scanning often precedes mature exploit chains.