Jul 30, 2025 Cyber Threat Intelligence

Track daily vulnerability activity, KEV additions, public exploits, critical disclosures, and EPSS risk shifts.

Daily summary

  • Mcafee Antivirus Engine — exploitation likelihood rose sharply (EPSS 5.4% → 23% · rising (+18%)).
  • 10 new critical disclosures — review patch status on exposed services.

Top threats today

Three highest-priority changes — analyst brief, not a CVE dump.

Emerging exploitation risk

CVE-2005-0643 Mcafee Antivirus Engine Buffer Overflow

  • Exploitation likelihood sharply increased
  • EPSS 5.4% → 23% · rising (+18%)

Mcafee Antivirus Engine: EPSS 5.4% → 23% · rising (+18%) — EPSS is climbing faster than peer CVEs in this window, a leading indicator even before KEV or public exploit linkage.

Critical exposure

CVE-2025-50578 Linuxserver Docker-heimdall open redirect

  • CVSS 9.8

New critical Linuxserver Docker-heimdall open redirect (CVSS 9.8) — fresh disclosure window; early internet scanning often precedes mature exploit chains.

Critical exposure

CVE-2025-43244 A race condition was addressed with improved state handling.

  • CVSS 9.8

New critical disclosure (CVSS 9.8) — high severity with a short public awareness window before exploit material typically surfaces.

Active exploitation

CISA KEV — confirmed in-the-wild exploitation.

Nothing flagged in this category for this digest.

View KEV additions

Exploit & PoC activity

Nothing flagged in this category for this digest.

View new exploit links

Exploitation dynamics

CVE-2005-0643 EPSS 5.4% → 23% · rising (+18%) CVSS 7.5

Mcafee Antivirus Engine Buffer Overflow

See EPSS increases

New critical disclosures

CVE-2025-43244 CVSS 9.8

A race condition was addressed with improved state handling.

CVE-2025-43245 CVSS 9.8

A downgrade issue was addressed with additional code-signing restrictions.

CVE-2025-43253 CVSS 9.8

This issue was addressed with improved input validation.

CVE-2025-43261 CVSS 9.8

A logic issue was addressed with improved checks.

CVE-2025-43273 CVSS 9.1

A permissions issue was addressed with additional sandbox restrictions.

CVE-2025-43275 CVSS 9.8

A race condition was addressed with additional validation.

CVE-2025-46811 CVSS 9.3

A Missing Authorization vulnerability in SUSE Linux Manager allows anyone with the ability to connect to port 443 of SUSE Manager is able...

CVE-2025-50578 CVSS 9.8

LinuxServer.io heimdall 2.6.3-ls307 contains a vulnerability in how it handles user-supplied HTTP headers, specifically `X-Forwarded-Host...

CVE-2025-54430 CVSS 9.1

dedupe is a python library that uses machine learning to perform fuzzy matching, deduplication and entity resolution quickly on structure...

CVE-2025-54576 CVSS 9.1

OAuth2-Proxy is an open-source tool that can act as either a standalone reverse proxy or a middleware component integrated into existing...

View critical disclosures

cvelogic Threat Intelligence