Home
» Risk & Exploitation
» Daily threat intelligence
» Jun 4, 2025
Jun 4, 2025 Cyber Threat Intelligence
Track daily vulnerability activity, KEV additions, public exploits, critical disclosures, and EPSS risk shifts.
Daily summary
Mailenable Enterprise — exploitation likelihood rose sharply (EPSS 9.7% → 27% · rising (+17%)).
7 new critical disclosures — review patch status on exposed services.
Top threats today
Three highest-priority changes — analyst brief, not a CVE dump.
Emerging exploitation risk
Exploitation likelihood sharply increased
EPSS 9.7% → 27% · rising (+17%)
Mailenable Enterprise: EPSS 9.7% → 27% · rising (+17%) — EPSS is climbing faster than peer CVEs in this window, a leading indicator even before KEV or public exploit linkage.
Critical exposure
CVE-2021-42884
Totolink Ex1200t Firmware Command Injection
Exploitation likelihood sharply increased
CVSS 9.8
EPSS 6.4% → 22% · rising (+15%)
Totolink Ex1200t Firmware: EPSS 6.4% → 22% · rising (+15%) — EPSS is climbing faster than peer CVEs in this window, a leading indicator even before KEV or public exploit linkage.
Critical exposure
CVSS 10
Authentication bypass — unauthenticated access risk
New critical disclosure (CVSS 10) — high severity with a short public awareness window before exploit material typically surfaces.
Active exploitation
CISA KEV — confirmed in-the-wild exploitation.
Nothing flagged in this category for this digest.
View KEV additions
Exploitation dynamics
Mailenable Enterprise DoS
Totolink Ex1200t Firmware Command Injection
See EPSS increases
New critical disclosures
This vulnerability allows the successful attacker to gain unauthorized access to a configuration web page delivered by the integrated web...
New critical Cisco Identity Services Engine exposure disclosed.
The File Provider WordPress plugin through 1.2.3 does not properly sanitise and escape a parameter before using it in a SQL statement via...
billboard.js before 3.15.1 was discovered to contain a prototype pollution via the function generate, which could allow attackers to exec...
Improper Authentication vulnerability in WF Steuerungstechnik GmbH airleader MASTER allows Authentication Bypass.This issue affects airle...
Path Traversal vulnerability in WF Steuerungstechnik GmbH airleader MASTER allows Retrieve Embedded Sensitive Data.This issue affects air...
A vulnerability, which was classified as critical, has been found in TOTOLINK EX1200T 4.1.2cu.5232_B20210713.
View critical disclosures
cvelogic
Threat Intelligence