Aug 7, 2025 Cyber Threat Intelligence

Track daily vulnerability activity, KEV additions, public exploits, critical disclosures, and EPSS risk shifts.

Daily summary

  • 10 new critical disclosures — review patch status on exposed services.

Top threats today

Three highest-priority changes — analyst brief, not a CVE dump.

Critical exposure

CVE-2025-53767 Azure OpenAI Elevation of Privilege Vulnerability

  • CVSS 10
  • Potential privilege escalation to admin/root

New critical Microsoft Azure Openai privilege escalation (CVSS 10) — fresh disclosure window; early internet scanning often precedes mature exploit chains.

Critical exposure

CVE-2023-41530 Kishan0725 Hospital Management System SQL Injection

  • CVSS 9.8

New critical Kishan0725 Hospital Management System SQL Injection (CVSS 9.8) — fresh disclosure window; early internet scanning often precedes mature exploit chains.

Critical exposure

CVE-2025-50692 FoxCMS <=v1.2.5 is vulnerable to Code Execution in admin/template_file/editFile.html.

  • CVSS 9.8
  • Remote code execution exposure

New critical Foxcms Code Execution (CVSS 9.8) — fresh disclosure window; early internet scanning often precedes mature exploit chains.

Active exploitation

CISA KEV — confirmed in-the-wild exploitation.

Nothing flagged in this category for this digest.

View KEV additions

Exploit & PoC activity

Nothing flagged in this category for this digest.

View new exploit links

Exploitation dynamics

Nothing flagged in this category for this digest.

See EPSS increases

New critical disclosures

CVE-2023-41530 CVSS 9.8

Hospital Management System v4 was discovered to contain a SQL injection vulnerability via the app_contact parameter in appsearch.php.

CVE-2025-30404 CVSS 9.8

An integer overflow vulnerability in the loading of ExecuTorch models can cause overlapping allocations, potentially resulting in code ex...

CVE-2025-30405 CVSS 9.8

An integer overflow vulnerability in the loading of ExecuTorch models can cause objects to be placed outside their allocated memory area,...

CVE-2025-45765 CVSS 9.1

ruby-jwt v3.0.0.beta1 was discovered to contain weak encryption.

CVE-2025-50692 CVSS 9.8

FoxCMS <=v1.2.5 is vulnerable to Code Execution in admin/template_file/editFile.html.

CVE-2025-53767 CVSS 10

Azure OpenAI Elevation of Privilege Vulnerability

CVE-2025-53792 CVSS 9.1

Azure Portal Elevation of Privilege Vulnerability

CVE-2025-54949 CVSS 9.8

A heap buffer overflow vulnerability in the loading of ExecuTorch models can potentially result in code execution or other undesirable ef...

CVE-2025-54950 CVSS 9.8

An out-of-bounds access vulnerability in the loading of ExecuTorch models can cause the runtime to crash and potentially result in code e...

CVE-2025-54951 CVSS 9.8

A group of related buffer overflow vulnerabilities in the loading of ExecuTorch models can cause the runtime to crash and potentially res...

View critical disclosures

cvelogic Threat Intelligence