Jun 26, 2025 Cyber Threat Intelligence

Track daily vulnerability activity, KEV additions, public exploits, critical disclosures, and EPSS risk shifts.

Daily summary

  • Freesshd: public exploit or PoC linked (DoS)
  • 10 new critical disclosures — review patch status on exposed services.

Top threats today

Three highest-priority changes — analyst brief, not a CVE dump.

Active exploit activity

CVE-2019-9978 WordPress Social Warfare Plugin Cross-Site Scripting (XSS)

  • Public exploit or PoC available
  • Exploit activity linked
  • Internet-facing CMS deployments affected

WordPress plugin exposure with public exploit material — mass targeting of internet-facing CMS installs is common once PoCs circulate.

Active exploit activity

CVE-2024-0723 A vulnerability was found in freeSSHd 1.0.9 on Windows.

  • Public exploit or PoC available
  • Exploit activity linked

Freesshd DoS now has public exploit or PoC linkage — assume opportunistic scanning and targeted follow-on activity.

Critical exposure

CVE-2025-34046 An unauthenticated file upload vulnerability exists in the Fanwei E-Office <= v9.4 web management...

  • CVSS 10

New critical disclosure (CVSS 10) — high severity with a short public awareness window before exploit material typically surfaces.

Active exploitation

CISA KEV — confirmed in-the-wild exploitation.

Nothing flagged in this category for this digest.

View KEV additions

Exploit & PoC activity

CVE-2024-57708 Exploit

An issue in OneTrust SDK v.6.33.0 allows a local attacker to cause a denial of service via the Object.setPrototypeOf, __proto__, and Obje...

CVE-2025-49132 Exploit

Pterodactyl is a free, open-source game server management panel.

CVE-2025-47165 Exploit

Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

CVE-2025-5640 Exploit

A vulnerability was found in PX4-Autopilot 1.12.3.

CVE-2025-27218 Exploit

Sitecore Experience Manager (XM) and Experience Platform (XP) 10.4 before KB1002844 allow remote code execution through insecure deserial...

CVE-2024-0723 Exploit

A vulnerability was found in freeSSHd 1.0.9 on Windows.

CVE-2022-1257 Exploit

Insecure storage of sensitive information vulnerability in MA for Linux, macOS, and Windows prior to 5.7.6 allows a local user to gain ac...

CVE-2019-9978 Exploit

WordPress Social Warfare Plugin Cross-Site Scripting (XSS)

View new exploit links

Exploitation dynamics

Nothing flagged in this category for this digest.

See EPSS increases

New critical disclosures

CVE-2014-0468 CVSS 9.8

Vulnerability in fusionforge in the shipped Apache configuration, where the web server may execute scripts that the users would have uplo...

CVE-2014-7210 CVSS 9.8

pdns specific as packaged in Debian in version before 3.3.1-1 creates a too privileged MySQL user.

CVE-2015-0842 CVSS 9.8

yubiserver before 0.6 is prone to SQL injection issues, potentially leading to an authentication bypass.

CVE-2015-0843 CVSS 9.8

yubiserver before 0.6 is prone to buffer overflows due to misuse of sprintf.

CVE-2024-52928 CVSS 9.6

Arc before 1.26.1 on Windows has a bypass issue in the site settings that allows websites (with previously granted permissions) to add ne...

CVE-2025-30131 CVSS 9.8

An issue was discovered on IROAD Dashcam FX2 devices.

CVE-2025-34046 CVSS 10

An unauthenticated file upload vulnerability exists in the Fanwei E-Office <= v9.4 web management interface.

CVE-2025-34049 CVSS 9.4

An OS command injection vulnerability exists in the OptiLink ONT1GEW GPON router firmware version V2.1.11_X101 Build 1127.190306 and earl...

CVE-2025-3699 CVSS 9.8

Missing Authentication for Critical Function vulnerability in Mitsubishi Electric Corporation G-50 all versions, G-50-W all versions, G-5...

CVE-2025-49603 CVSS 9.1

Northern.tech Mender Server before 3.7.11 and 4.x before 4.0.1 has Incorrect Access Control.

View critical disclosures

cvelogic Threat Intelligence