Track daily vulnerability activity, KEV additions, public exploits, critical disclosures, and EPSS risk shifts.
Daily summary
Google Chromium V8 added to CISA KEV — confirmed in-the-wild exploitation.
Vishalmathur Cloudclassroom-php Project: public exploit or PoC linked (SQL Injection)
8 new critical disclosures — review patch status on exposed services.
Top threats today
Three highest-priority changes — analyst brief, not a CVE dump.
Critical active threat
CVE-2025-5419Google Chromium V8 Out-of-Bounds Read and Write
Actively exploited (CISA KEV)
Listed on CISA KEV
Google Chromium V8 Out-of-Bounds Write is on CISA KEV — confirmed in-the-wild exploitation. Expect continued targeting while the issue remains on the catalog.