Mar 25, 2025 Cyber Threat Intelligence

Track daily vulnerability activity, KEV additions, public exploits, critical disclosures, and EPSS risk shifts.

Daily summary

  • 10 new critical disclosures — review patch status on exposed services.

Top threats today

Three highest-priority changes — analyst brief, not a CVE dump.

Critical exposure

CVE-2024-55030 Nasa Fprime Command Injection

  • CVSS 9.8

New critical Nasa Fprime Command Injection (CVSS 9.8) — fresh disclosure window; early internet scanning often precedes mature exploit chains.

Critical exposure

CVE-2025-25373 Nasa Core Flight System RCE

  • CVSS 9.8
  • Remote code execution exposure

New critical Nasa Core Flight System RCE (CVSS 9.8) — fresh disclosure window; early internet scanning often precedes mature exploit chains.

Critical exposure

CVE-2025-27831 An issue was discovered in Artifex Ghostscript before 10.05.0.

  • CVSS 9.8

New critical Artifex Ghostscript Buffer Overflow (CVSS 9.8) — fresh disclosure window; early internet scanning often precedes mature exploit chains.

Active exploitation

CISA KEV — confirmed in-the-wild exploitation.

Nothing flagged in this category for this digest.

View KEV additions

Exploit & PoC activity

Nothing flagged in this category for this digest.

View new exploit links

Exploitation dynamics

Nothing flagged in this category for this digest.

See EPSS increases

New critical disclosures

CVE-2024-48818 CVSS 9.8

An issue in IIT Bombay, Mumbai, India Bodhitree of cs101 version allows a remote attacker to execute arbitrary code.

CVE-2024-55028 CVSS 9.8

A template injection vulnerability in the Dashboard of NASA Fprime v3.4.3 allows attackers to execute arbitrary code via uploading a craf...

CVE-2024-55030 CVSS 9.8

A command injection vulnerability in the Command Dispatcher Service of NASA Fprime v3.4.3 allows attackers to execute arbitrary commands.

CVE-2025-25373 CVSS 9.8

The Memory Management Module of NASA cFS (Core Flight System) Aquila has insecure permissions, which can be exploited to gain an RCE on t...

CVE-2025-27831 CVSS 9.8

An issue was discovered in Artifex Ghostscript before 10.05.0.

CVE-2025-27832 CVSS 9.8

An issue was discovered in Artifex Ghostscript before 10.05.0.

CVE-2025-27836 CVSS 9.8

An issue was discovered in Artifex Ghostscript before 10.05.0.

CVE-2025-27837 CVSS 9.8

An issue was discovered in Artifex Ghostscript before 10.05.0.

CVE-2025-30216 CVSS 9.4

CryptoLib provides a software-only solution using the CCSDS Space Data Link Security Protocol - Extended Procedures (SDLS-EP) to secure c...

View critical disclosures

cvelogic Threat Intelligence